Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Engineer, Product Security

$110k - $190k

CHAOS Industries

CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage-domain dominance. The company's products are powered by Coherent Distributed Networks (CDN™), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats.


CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit

Role Overview:

We are seeking a Cybersecurity Engineer focused on Product Security to help design, assess, and secure our next-generation sensor platforms and supporting software ecosystems. This role will work closely with Software Engineering, Embedded Systems, Hardware Engineering, Infrastructure, and Program teams to ensure security is integrated throughout the product lifecycle - from architecture and development through deployment and operational support.


The ideal candidate has experience securing complex software and hardware systems within defense, aerospace, or other highly regulated environments. This individual will lead software security architecture efforts, perform threat modeling and risk assessments, support compliance initiatives, and help establish secure engineering standards across the organization.


This is a highly collaborative and hands-on role with direct impact on the security and resiliency of mission-critical technologies deployed in operational environments.


Responsibilities:

  • Product Security Engineering
    • Design and implement secure software and hardware system architectures for mission-critical platforms and supporting infrastructure
    • Partner with engineering teams to integrate security requirements throughout the software development lifecycle (SDLC)
    • Conduct architecture reviews and identify security risks across software, embedded, cloud, and hardware systems
    • Develop secure design standards, engineering guidance, and product security best practices
    • Support secure development initiatives including code review, dependency management, secrets management, and vulnerability remediation
  • Threat Modeling & Risk Assessment
    • Lead threat modeling exercises for software, embedded systems, hardware platforms, and supporting infrastructure
    • Conduct cybersecurity risk assessments for products, systems, and operational environments
    • Identify attack surfaces, trust boundaries, and potential exploitation paths
    • Work with engineering teams to prioritize and remediate identified security risks
    • Develop mitigation strategies for cybersecurity threats impacting deployed systems and sensitive technologies
  • Compliance & Security Authorization
    • Support cybersecurity compliance initiatives and product authorization efforts including:
    • RMF (Risk Management Framework)
    • ATO (Authority to Operate)
    • Export control and regulated data handling requirements
    • Assist with development of system security documentation, security controls, SSPs, and assessment artifacts
    • Support internal and external security audits, assessments, and accreditation activities
    • Collaborate with government, customer, and program stakeholders on security requirements and authorization activities
  • Security Testing & Validation
    • Assist with security testing activities including vulnerability assessments, penetration testing coordination, and validation of remediation efforts
    • Support secure configuration and hardening efforts across software, operating systems, and embedded environments
    • Review software and system telemetry to identify potential security weaknesses or anomalous behavior
    • Collaborate with Security Operations and Infrastructure teams to improve enterprise and product security visibility
  • Cross-Functional Collaboration
    • Work closely with Software, Embedded, Hardware, DevOps, and Infrastructure teams to balance security, performance, and operational requirements
    • Contribute to the development of scalable product security processes and governance
    • Support customer and internal security reviews related to deployed technologies and operational environments
    • Mentor engineering teams on secure development and security-by-design principles
Minimum Requirements:
  • 5+ years of experience in cybersecurity engineering, product security, application security, or related engineering roles
  • Experience with software security design and secure system architecture principles
  • Hands-on experience conducting threat modeling and cybersecurity risk assessments
  • Knowledge of secure software development lifecycle (SSDLC) practices and application security concepts
  • Familiarity with cybersecurity frameworks and compliance standards including:
  • RMF
  • NIST 800-53
  • NIST 800-171
  • CMMC
  • DFARS
  • Experience supporting security authorization activities such as ATO processes and security documentation development, and eMASS
  • Understanding of cloud, endpoint, network, and identity security concepts
  • Strong analytical, troubleshooting, and technical communication skills
  • Ability to operate effectively in a fast-paced startup environment
  • Must be a U.S. Citizen eligible for government facilities and sensitive information
  • Ability to obtain additional security clearances as required by contract
Preferred Requirements:
  • Active Security Clearance
  • Experience supporting defense, aerospace, government contracting, or regulated technology environments
  • Experience securing embedded systems, sensor platforms, or edge computing technologies
  • Familiarity with export control requirements including ITAR and EAR
  • Experience with secure DevSecOps pipelines and automation practices
  • Experience with Microsoft GCC High environments and regulated cloud architectures
  • Firmware development experience
  • BIOS/UEFI security or development experience
  • Hardware security design experience
  • Trusted Platform Module (TPM), secure boot, cryptographic hardware, or supply chain security knowledge
  • Experience with scripting or automation using Python, PowerShell, or Bash
  • Security certifications such as CISSP, CSSLP, GSEC, Security+, or equivalent
Why CHAOS?
  • Health Benefits: Medical, dental, and vision benefits 100% paid for by the company
  • Additional benefits : 401k (+ 50% company match up to 6% of pay), FSA, HSA, life insurance, and more
  • Our Perks: Free daily lunch, 'No meeting Fridays', unlimited PTO, casual dress code
  • Compensation Components: Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and (coming soon!) annual bonuses
  • Team Growth: 250 employees and counting across 5 global offices

Salary Range: $110,000 - $190,000

The stated compensation range reflects only the targeted base compensation range and excludes additional earnings such as bonus, equity, and benefits. If your compensation requirements fall outside of the range, we still encourage you to apply. The salary range for this role is an estimate based on a range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.


Recruiting Agencies: CHAOS Industries does not accept unsolicited resumes or outreach. Unsolicited submissions will not be reviewed or compensated.

#LI-onsite
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Engineer, Product Security in Washington DC vacancy
  • $89k - $143.75k

     ...more at Job Function: R&D Product Development Job Sub...  ...Function: R&D Software/Systems Engineering Job Category:...  ...searching for the best talent for a Cybersecurity Software Engineer, to be in...  ...periodic risk assessment of security vulnerabilities in software... 
    Suggested
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Night shift

    Johnson & Johnson

    Adelphi, MD
    18 hours ago
  • $159.3k - $202.4k

     ...Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the...  ...operating risk for our customers. - Monitor cybersecurity media, blog posts, and other sources...  ...for security across all of Amazon's products and services. We offer talented... 
    Suggested
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    4 days ago
  • $237.6k - $297k

     ...We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the... 
    Suggested
    Full time

    Scale AI

    Washington DC
    3 days ago
  • $166k - $253k

     ...ABOUT THE JOB We're seeking a Security Software Engineer to develop novel security tooling for...  ...YOU'LL DO Design and develop cybersecurity tools for realtime embedded,...  ...and response agent for use on Anduril products. Develop thorough testing and qualification... 
    Suggested
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Washington DC
    2 days ago
  •  ...Product Security Engineer Gecko Robotics is helping the world's most important organizations ensure the availability, reliability, and sustainability...  ...or DevSecOps ~ Bachelor's degree in Computer Science, Cybersecurity, Engineering, or relevant experience ~ Strong... 
    Suggested
    Work at office
    Local area
    Work from home
    Flexible hours

    Gecko Robotics Inc

    Washington DC
    18 hours ago
  •  ...Mid-Level InfoSec Security Engineer (Focus On Network Security) ProSidian is a Management...  ...protocols, tunneling, etc.). -Diagnose cybersecurity impacts to network connectivity problems...  ...discounts for eligible employees on products and services you buy on a daily basis.... 
    Full time
    For contractors
    Internship
    Work at office
    Monday to Friday
    Shift work

    ProSidian Consulting

    Washington DC
    18 hours ago
  •  ...Infrastructure Development and Engineering (DMOC-IDE) team at Kirtland...  ...all DMOC systems meet DoD cybersecurity requirements for configuration...  .... An Active secret security clearance is required prior...  ...and reliability. Test new product releases, patches, or updates... 
    Full time
    Contract work
    Part time
    Local area
    Remote work
    Flexible hours

    Serco

    Washington DC
    18 hours ago
  • $15.36k - $23.04k

     ...Lead Security Engineer (AI) – Product Security USA, Durham; USA, Miami; USA, Palo Alto; USA, Washington DC Nu is one of the largest digital financial platforms in the world, with more than 127 million customers across Brazil, Mexico, and Colombia. Guided by our... 
    Work at office
    Work from home
    Relocation package
    Flexible hours

    Nubank

    Washington DC
    18 hours ago
  •  ...most complex U.S. defense, security, space, and intelligence requirements...  ...for a Cyber Security Product Risk Manager who works with...  ...specialists from the Cyber, Space Engineering, and Contracts departments...  ...Management Framework (RMF) CyberSecurity, CyberResilience, Cyber... 
    Contract work
    Work at office
    Local area
    Visa sponsorship

    AIRBUS U.S. Space & Defense, Inc.

    Arlington, VA
    4 days ago
  •  ...Cybersecurity Operations Product/Project Manager Washington, DC Join our Talent Network Cybersecurity...  ...assurance for a 24/7/365 global security operations center consisting of a team...  ...Additionally, conduct Business Process Engineering for cases where procedures do not... 
    Work experience placement
    Local area
    Remote work

    Chenega Corporation

    Washington DC
    3 days ago
  •  ...talented Team. Job Title: AI Cyber Engineer (Enterprise Security & Autonomous Remediation) Job...  ...implementing and operating AI-driven cybersecurity capabilities to continuously detect...  ...automatically: Detected pre-production and remediated (or blocked) before... 
    Shift work

    Ampcus

    Washington DC
    4 days ago
  • $60k - $105k

     ...our client to provide Network Operations Security Center (NOSC) support, cyber analysis,...  ...assigned to your shift Capture cybersecurity metrics that support executive-level briefings...  .../Program Management and technology products. We are your strategic partner and value... 
    Shift work
    Night shift
    Afternoon shift

    sprysquared.com

    Washington DC
    2 days ago
  •  ...Incident Response Team (HIRT) secures the Nation's cyber and...  ...network-based and cloud-based cybersecurity analysis capabilities. Contract...  ...of commercially available products Prepare and present reports...  ..., Cyber Security, Computer Engineering, or related degree; or HS Diploma... 
    Full time
    Contract work
    Work at office
    Local area
    Immediate start
    Remote work

    Castalia Systems

    Arlington, VA
    1 day ago
  •  ...cyber incident responders, and cybersecurity service provider team...  ...use of commercially available products • Prepare and present reports...  ...Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability...  ..., Cyber Security, Computer Engineering, or related degree; or HS... 
    Local area
    Immediate start
    Flexible hours

    BCMC, LLC

    Arlington, VA
    4 days ago
  • $100k - $172.5k

     ...Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture...  ...the best talent for a Principal Product Security Engineer to be located in Danvers, MA or...  ...and compliance frameworks (e.g., NIST Cybersecurity Framework, ISO27001, SOC2, HIPAA,... 
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    Johnson & Johnson

    Adelphi, MD
    1 day ago
  • $131.3k - $237.35k

     ...experienced SME Zero Trust Cyber Security Analyst to support the...  ...data and analytics products used across multiple DoD organizations...  ...government partners, engineers, and other industry teammates...  ...security standards. Analyze cybersecurity data and system behavior to... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    1 hour ago
  • $93k - $125k

     ...Operational Technology And Control Systems Cybersecurity Program Analyst LMI is seeking an...  ...and process changes. This will include security impacts, requirements and implications....  ..., information papers and other written products for senior executives ~ Excellent... 
    Contract work
    Work at office

    LMI

    Arlington, VA
    2 days ago
  •  ...Government Services (KGS) company, is hiring a Senior Network Engineer (Security). Position requires an active Top Secret/SCI clearance with...  ...for complex network security issues. Collaborate with cybersecurity teams to ensure compliance with DoD security frameworks,... 
    Local area
    Remote work
    Flexible hours

    Koniag

    Washington DC
    18 hours ago
  • $93k - $111k

     ...Security System Administrator Versar has a unique opportunity...  ...migration, lab testing, staging, production, system deployments...  ...configuration management Cybersecurity support such as: Maintain...  ...CSEIP (Certified Systems Engineer ICAM PACS) Certified preferred... 
    Full time
    Local area

    Versar

    Washington DC
    4 days ago
  • $99k - $232k

     ...Specialty/Competency: Cybersecurity & Privacy Industry/Sector: Not Applicable Time...  ...work to identify vulnerabilities, develop secure systems, and provide proactive...  ...experience in network security, cybersecurity engineering, or security consulting, including practical... 
    Full time
    H1b

    PwC

    Washington DC
    12 days ago
  • $107.9k - $195.05k

     ...experienced Senior Zero Trust Cyber Security Analyst to support the...  ...data and analytics products used across multiple DoD organizations...  ...government partners, engineers, and other industry teammates...  ...Trust policies, controls, and cybersecurity standards. Analyze... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    2 hours ago
  • A cybersecurity technology firm is seeking experienced cybersecurity professionals to evaluate AI-generated security content, solve technical problems, and improve AI systems. Candidates should have at least 2 years of hands-on experience in various cybersecurity areas... 
    Hourly pay
    Remote work
    Flexible hours

    DataAnnotation

    Washington DC
    3 days ago
  •  ...Army TENCAP Product Manager PdM TENCAP falls under Program Executive...  ...PdM TENCAP mission. Systems Engineering and Technical Assistance (...  ...systems reside on Non-secure Internet Protocol Router network...  ...of progressively complex cybersecurity experience in the design, development... 
    Contract work
    For contractors
    Work at office
    Worldwide

    Ryde Technologies

    Alexandria, VA
    3 days ago
  • $108.48k - $184.41k

     ...recruiting for an experienced Senior Cyber Security Analyst to support the research and...  ...researchers to evolve, automate, and enhance cybersecurity capabilities in defense or federal...  ...(e.g., open-source, intelligence products, etc.) ~ Position requires a minimum... 
    Full time
    Contract work
    Work experience placement
    Work at office
    Remote work
    2 days per week
    3 days per week

    ICF International Inc

    Arlington, VA
    14 hours ago
  • $113k - $188k

     ...You Will Do : Apply fundamental cybersecurity principles and concepts to tasks and projects...  ..., and best practices for cyber security and risk management to strengthen an organizations...  ...goals and needs, existing security products, and ongoing programs in cybersecurity.... 
    Full time
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    2 days ago
  •  ...forecast, and explain a range of national security issues and developments specific to the...  ...~3+ years of experience in IT, in cybersecurity, or in cyber-focused intelligence analysis...  ..., including complex written products and formal or informal briefings... 
    Temporary work
    Flexible hours
    Shift work

    NALLEY CONSULTING, LLC

    Washington DC
    4 days ago
  • $130k - $145k

     ...role in assessing and enhancing the security of various products, including hardware, software, and...  ...penetration testing and a passion for cybersecurity, we encourage you to apply for this...  .... Analyzing and reverse engineering firmware and embedded systems to identify... 
    Hourly pay

    Dark Wolf Solutions

    Washington DC
    3 days ago
  • $40 per hour

     ...We are looking for experienced cybersecurity professionals to join our team to help train AI...  ...this role, you will evaluate AI-generated security content, solve technical cybersecurity...  ...teaming, incident response, detection engineering, DFIR, malware analysis, threat... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Washington DC
    3 days ago
  • $131.3k - $237.35k

     ...highly-visible and strategic Cybersecurity Task Order. The VAT Analyst...  ...various FISMA systems Perform security compliance and vulnerability...  ...in Science, Technology, Engineering, Math or related field and 1...  ...scans using Tenable/Nessus products Possess at least one of the... 
    Local area
    Immediate start
    Remote work
    Night shift

    Leidos

    Arlington, VA
    3 days ago
  •  ...Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) Transform technology into opportunity as a Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) with GDIT. A career in enterprise IT means connecting and enhancing the... 
    For contractors
    Interim role

    General Dynamics

    Washington DC
    18 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Engineer, Product Security. Be the first to apply!