Jobs.ca
Jobs.ca
Language
Honeywell logo

Senior Advanced Cybersecurity Engineer – PKI & Key Management

Honeywellabout 16 hours ago
Remote
Senior Level
full_time

About the role

Job Description Join a cutting-edge aerospace product security team shaping the future of secure flight systems and defense technologies. We’re seeking an experienced and highly skilled security engineering minded software developer to help maintain and reinvent internal tools that support cybersecurity workflows, risk assessments, and technical collaboration. This role emphasizes crafting intuitive, robust solutions that empower engineers and cybersecurity analysts across product lifecycles—balancing usability, availability, compliance, and performance.

You’ll work directly with cybersecurity SMEs, systems engineers, and risk managers to design toolsets that reduce friction, elevate transparency, and accelerate decision-making in product security and compliance processes.

Honeywell is seeking a seasoned Public Key Infrastructure (PKI) and Key Management Services (KMS) expert to advance the security foundation of our aerospace technologies. As a Senior Advanced Individual Contributor, you will architect, implement, and govern robust cryptographic infrastructure across product platforms, engineering environments, and global tooling solutions.

This role is deeply hands-on and ideal for an expert passionate about securing mission-critical systems in high-assurance domains. You will collaborate with cybersecurity architects, systems engineers, and tooling teams to ensure secure software releases, identity management, and digital trust across complex ecosystems.

Responsibilities As a key member of our growing product security team, you'll leverage your proven experience and...

  • Design, implement, and maintain PKI and KMS solutions to support Honeywell Aerospace’s internal tooling, product development, and secure engineering operations
  • Define certificate lifecycle management policies, root CA/ICA hierarchy strategy, and revocation protocols for production and test environments
  • Integrate cryptographic functions into DevSecOps pipelines and software release processes to ensure code signing, secure configuration management, and secure boot
  • Support encryption, authentication, and identity validation across internal tools, CI/CD platforms, and engineering workflows
  • Lead technical investigations and audits related to certificate compromise, key misuse, or unauthorized access
  • Partner with risk, compliance, and cybersecurity teams to meet NIST, DO-326A, and other aerospace-relevant standards
  • Evaluate emerging crypto technologies and recommend modernization strategies for legacy tooling
  • Provide mentoring and guidance to junior engineers across cybersecurity and engineering functions

Qualifications YOU MUST HAVE:

  • Bachelor’s degree in Computer Science, Engineering, or a related field
  • 8+ years in cybersecurity and cryptographic services with direct PKI/KMS domain expertise
  • 3+ years experience with X.509, certificate authorities, OCSP, key rotation, HSM integration, and secure key storage

We Value

  • Hands-on experience with tooling integration: e.g., Smartcards, TPMs, encrypted containers, and automation platforms
  • Expertise in maintaining and providing code signing capabilities
  • Proven success designing secure architectures in regulated environment (e.g., aerospace, defense, critical infrastructure)
  • Expertise in secure software lifecycle practices and DevSecOps environments
  • Familiarity with regulatory requirements and cryptographic compliance standards (FIPS 140-2, NIST 800 series, DO178-C security addenda)
  • Experienced with Java/Groovy, LINUX OS, and Ansible
  • Experienced in assisting stakeholders with adoption and integration of PKI capabilities into product
  • Passion for working with development teams to make more secure, harder to defeat products
  • Good interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among project stakeholders
  • Hands-on experience with Black Duck Hub, secure Jira workflows, and release signing automation
  • Background in internal tooling development and secure engineering enablement
  • Experience in deploying HSMs and KMS solutions in cloud, hybrid and on-prem environments
  • Contributions to PKI governance models and enterprise crypto policies
  • Good interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among project stakeholders
  • Certifications in security and privacy for example Certified Encryption Specialist (ECES), GIAC Cryptography and Crypto Foundations (GCF)
  • Understanding of Agile software development practices

About Us Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments – powered by our Honeywell Forge software – that help make the world smarter, safer and more sustainable.

About Honeywell

Appliances, Electrical, and Electronics Manufacturing
10,000+

Honeywell is a Fortune 500 company that invents and manufactures technologies to address tough challenges linked to global macrotrends such as safety, security, and energy. With approximately 110,000 employees worldwide, including more than 19,000 engineers and scientists, we have an unrelenting focus on quality, delivery, value, and technology in everything we make and do.

For additional information on how Honeywell processes your personal information please visit https://www.honeywell.com/privacy-statement.