Skip to main content

Lead, Info Security Systems Engineer

Colorado Springs, Colorado

Job ID 44770
Apply Now

L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers’ mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.

L3Harris is the Trusted Disruptor in defense tech. With customers’ mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security.

Job Title: Lead, Info Security Systems Engineering

Job Code: 44770

Job Location: Colorado Springs, CO

Job Schedule: 9/80 - Employees work 9 out of every 14 days - totaling 80 hours worked (Every Other Friday Off) 

Job Description:

The successful candidate will support a highly motivated engineering team in defining, designing, implementing, documenting, testing and sustaining security solutions on National Security Systems, or other systems engineered for our government customers, using current standards within National Institute of Standards & Technology (NIST) Risk Management Framework, Special Publications 800-37, 800-53, 800-171, and other NIST publications; Committee on National Security Systems Instruction (CNNSI) 1253, Joint SAP Implementation Guide (JSIG), and Federal Information Processing Standards (FIPS) to certify and achieve system accreditations.

The successful candidate will work with system developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products, using methods such as encryption technology, vulnerability analysis and security management.

Essential Functions:

  • Exercise skills in NIST Risk Management Framework (RMF) and all related NIST publications, to include writing System Security Plans, Security Control Traceability Matrix, Continuous Monitoring Plan, Security Assessment Plans & Procedures, Security Concept of Operations, and Plan of Action and Milestones.
  • Apply Cybersecurity Maturity Model Certification (CMMC Level 2/3) and NIST 800-171 requirements to system design, assessment, and continuous compliance.
  • Perform skills in implementing/assessing security controls, to include writing system security categorization memorandum, recommending appropriate security control overlays, defining security control baselines based on defined system security categorization and approved security overlays, and applying security controls to computing/network nodes and verifying implementation of security controls.
  • Design and secure mixed, multi-level security level on-prem environments and cloud-based systems.
  • Assist in systems/software engineering functions, to include creation of data flow diagrams, interface control documents, and performing trade studies.
  • Define and manage systems/security architectures, including system security boundaries, and develop Configuration Management Plans (CMP), applying defense and assessment tools specific to each environment type.
  • Assess and secure Infrastructure/Platform/Software as a Service (IaaS, PaaS, SaaS) implementations and containerized/orchestrated platforms, including secure workload configuration.
  • Implement identity and access management, encryption, and key and secrets management controls in cloud-native environment (e.g., AWS)
  • Perform application and supply-chain security testing, including Static and Dynamic Application Security Testing (SAST/DAST), Software Composition Analysis (SCA), and Software Bill of Materials (SBOM) generation, using tools such as Fortify, Coverity, Anchore, and GitLab within a DevSecOps Continuous Integration/Continuous Deployment (CI/CD) Pipeline, for Application Security and Development Secure Technical Implementation Guide (STIG) compliance, and generate summary reports.
  • Perform vulnerability management, including finding triage, disposition, remediation planning with risk-based prioritization, documented risk-acceptance rationale, and risk mitigation strategies across networks, systems, applications, and new technology initiatives (hardware, software, firewalls, intrusion detection systems, anti-virus systems, and software deployment tools).
  • Support software supply-chain integrity and secure-by-design practices consistent with the Secure Software Development Framework (SSDF).
  • Review and secure infrastructure-as-code (IaC) and develop and enforce automated security policy and admission controls (security controls as code).
  • Build automation with defined quality gates to reduce friction, accelerate security review, and provide feedback to systems and software engineering teams.
  • Design and maintain security dashboards and reporting for stakeholders across technical and non-technical domains.
  • Apply secure design principles to AI/ML-enabled and agentic capabilities integrated into the platform, including least-privilege machine identities, isolation and sandboxing of automated agents, human-in-the-loop approval gates, and immutable audit of automated actions.
  • Assess and mitigate AI-specific security risks, including prompt injection, insecure agent tool use, model and data supply-chain integrity, and data-handling constraints appropriate to the operating environment.
  • This position is performed 100% onsite and cannot be performed remotely.
  • Up to 10% travel is possible

Qualifications:

  • Bachelor’s Degree and minimum 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related experience. In lieu of a degree, minimum of 13 years of prior related experience.
  • Must have active Secret security clearance. Active TS/SCI is highly desired.

Preferred Additional Skills:

  • DoD 8140.03 IASAE Level 2 certification, cloud security certification preferred.
  • Perform Model Based System Engineering (UML, SysML, UAF).
  • Configure/operate vulnerability analysis tools such Tenable NESSUS Security products.
  • Develop dashboards, configure rules and operate/administer SEIM/audit reduction tools (e.g., Splunk, GitLab Security Dashboard).
  • Support continuous authorization (cATO) and continuous monitoring approaches to authorization using Open Security Control Assessment Language (OSCAL)-based formats.
  • Contribute to zero trust architecture (ZTA) initiatives.
  • Apply secure design principles to AI/ML-enabled and agentic systems, including deterministic controls paired with AI assistance, guard models and runtime observability, human oversight and data-governance guardrails, reproducible validation of agent output, and AI red-teaming prior to deployment.

In compliance with pay transparency requirements, the salary range for this role in Colorado state is $110,500-$205,500. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements.

The application window for this position will close on 10/15/2026.

#LI-ZB2

L3Harris Technologies is proud to be an Equal Opportunity Employer. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. All applicants will be considered for employment without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender (including pregnancy, childbirth, breastfeeding or other related medical conditions), gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, characteristic or membership in any other group protected by federal, state or local laws. L3Harris maintains a drug-free workplace and performs pre-employment substance abuse testing and background checks, where permitted by law.

Please be aware many of our positions require the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information.

By submitting your resume for this position, you understand and agree that L3Harris Technologies may share your resume, as well as any other related personal information or documentation you provide, with its subsidiaries and affiliated companies for the purpose of considering you for other available positions.

L3Harris Technologies is an E-Verify Employer. Please click here for the E-Verify Poster in English or Spanish. For information regarding your Right To Work, please click here for English or Spanish.

Apply Now

Join Our Talent Community

Sign up for job alerts and be the first to know about our job openings.

Select a job category and location, then click "Add" for each saved search. Finally, click "Sign Up" to create your job alert.

Interested In

  • Engineering, Colorado Springs, Colorado, United StatesRemove

Upload Resume (Optional)

By submitting your information, you acknowledge that you have read our privacy policy (this content opens in new window) and consent to receive email communication from L3Harris.