Cyber Security Architect/Engineer
Cyber Sec Archt/Engr II
Job Description
Are you passionate about leading global cybersecurity innovation and change? Do you thrive in environments that encourage critical thinking, creativity, and challenging the status quo?
Honeywell Aerospace is looking for a cybersecurity analyst (L2) to support security monitoring and incident response. The role involves analysing security incidents, responding to emerging threats and safeguarding the organization against cyberattacks.
This position allows deep insight into various aspects of cyber security and will require attention to detail, a sense of urgency, and strong communication skills.
ResponsibilitiesDuties and Responsibilities
- Participate on a team of highly skilled cybersecurity incident responders.
- Build and maintain processes and procedures
- Assist with driving complex cybersecurity incidents to successful conclusion
- Understand root causes of cybersecurity incidents
- Perform initial analysis, identification, and remediation of network intrusions, application attacks, and computer system compromises.
- Help mentor junior analysts in our L1 team to help build a pipeline of talent that flows into L2
- Constantly optimize work procedures and automate recurring tasks. Develop and update technical documentation and formulate work instructions to address repeating issues.
- Collaborate with global team members based in the US, India and Europe.
- Participate in global on-call rotation.
- Serve as part of a 24/7 shift support (no night shifts).
Key Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, or equivalent experience.
- 3+ years of experience in Security operations, Information security or Incident response.
- Expertise in Splunk or other SIEM tools.
- Expertise in Microsoft Defender for Endpoints (MDE) or other Endpoint Detection & Response (EDR) solutions.
- Excellent written and verbal communication skills, with ability to explain technical analysis to stakeholders.
- Good technical knowledge of Windows/Linux operating systems, various types of applications, and networking technologies
- Analytical skills in threat, vulnerability, and intrusion detection analysis.
- Keen understanding of threat vectors as well as exfiltration techniques.
- Technical ability to analyse network traffic, endpoint logs, identity and other security data to identify signs of compromise.
- Good understanding of common cyber threats, attack stages (reconnaissance, exploitation, lateral movement), and cybersecurity frameworks such as Kill Chain and MITRE ATT&CK
- Ability to develop and follow complex work instructions and document incident reports for tracking and analysis.
- Willingness to learn and adapt to new technologies in the cybersecurity domain.
We value
- Experience with SIEM tools such as Splunk or similar technologies for monitoring and response.
- Experience with SOAR Solutions like XSOAR/Demisto.
- Knowledge in cloud security (Azure, AWS, MS Office 365).
- Knowledge of Linux and Windows operating system.
- Experience in malware analysis, threat intelligence and memory forensics.
- Detailed knowledge of Endpoint Detection and Response tools.
- One or more widely recognized certifications from renowned institutions such as GIAC/SANS, ISC/CISSP or Microsoft.
- Knowledge of scripting language(e.g. Python or PowerShell) for analysis and automation.
- Experience working within a global, process-driven organization.
Skills Required
- Bachelor's degree in Cybersecurity, Computer Science, or equivalent experience.
- 3+ years of experience in security operations, information security, or incident response.
- Expertise in Splunk or other SIEM tools.
- Expertise in Microsoft Defender for Endpoints (MDE) or other Endpoint Detection & Response (EDR) solutions.
- Excellent written and verbal communication skills, with ability to explain technical analysis to stakeholders.
- Technical knowledge of Windows and Linux operating systems and networking technologies.
- Analytical skills in threat, vulnerability, and intrusion detection analysis.
- Understanding of threat vectors, exfiltration techniques, and attack stages (reconnaissance, exploitation, lateral movement).
- Ability to analyze network traffic, endpoint logs, identity and other security data to identify compromise.
- Familiarity with cybersecurity frameworks such as Kill Chain and MITRE ATT&CK.
- Ability to develop and follow complex work instructions and document incident reports.
- Willingness to learn and adapt to new technologies in the cybersecurity domain.
- Experience with SOAR solutions like XSOAR/Demisto.
- Knowledge in cloud security (Azure, AWS, MS Office 365).
- Experience in malware analysis, threat intelligence, and memory forensics.
- Certifications such as GIAC/SANS, ISC/CISSP, or Microsoft.
- Knowledge of scripting languages for analysis and automation (Python or PowerShell).
- Experience working within a global, process-driven organization.
The Aerospace Corporation Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about The Aerospace Corporation and has not been reviewed or approved by The Aerospace Corporation.
-
Retirement Support — The 401(k) plan provides a company‑paid contribution of 8–12% based on years of service with immediate eligibility and vesting, and eligible employees can access retiree medical benefits.
-
Leave & Time Off Breadth — Paid time off includes 15 vacation days (rising to 20 after five years), nine paid holidays, and unlimited sick time for exempt employees with accruals for non‑exempt staff.
-
Flexible Benefits — Flexible work models include a 9/80 schedule with alternating Fridays off, supported by backup care services, an EAP, relocation assistance, and home‑office stipends where applicable.
The Aerospace Corporation Insights
What We Do
The space enterprise has been transformed by rapid change and growth. New vehicles for national security space, a more rapid launch cadence, proliferated satellite constellations, the pursuit of interplanetary exploration, and thriving commercial ventures are changing the nature of the space industry. The Aerospace Corporation (Aerospace) is a leading architect for U.S. space programs, shaping efforts to outpace threats to our national security while cultivating the technologies needed to further this new era of space commercialization and exploration. Aerospace works across the space enterprise in service of the public interest. In addition to supporting the Department of Defense and the Intelligence Community, our customers include NASA, NOAA, numerous federal agencies, and commercial space — all of whom benefit from our deep technical knowledge. We only pursue business related to the space mission and complementary fields, operating as the nation’s trusted partner to solve the toughest challenges and develop reliable and innovative technologies. Innovation in space occurs when people have the freedom to imagine and do. At Aerospace, we take pride in our readiness to solve some of the most complex challenges in the space enterprise.
Why Work With Us
We are a non-profit corporation chartered by the government to work on the hardest problems in space. We employ technical experts in every discipline of space-related science and engineering who touch every part of the US space program. Come join us as we make an impact bigger than ourselves.
Gallery







