Recently named by Newsweek as one of the Best American Mid-Sized Workplaces in 2026, Rohde & Schwarz is expanding our Cybersecurity team. The Cybersecurity Engineer – Patch Management, Testing & Automation plays a critical role in maintaining and improving the cybersecurity posture of mission-critical systems throughout their operational lifecycle. This position will serve as a versatile member of the U.S. cybersecurity organization while providing primary expertise in cybersecurity patch management, security testing, validation, and automation.
The engineer will coordinate and execute the technical lifecycle associated with security updates—from vulnerability and applicability analysis through laboratory testing, regression testing, deployment planning, verification, and documentation. The position will also develop automation and reusable technical processes to improve the efficiency, repeatability, and scalability of cybersecurity activities.
While Patch Management, Testing & Automation will be the position's primary area of specialization, the successful candidate will also support broader cybersecurity activities including security assessments, system architecture, vulnerability management, compliance, product security, network security, system hardening, and customer/program support.
Initially, the position will support Air Traffic Control (ATC) programs, with the opportunity to support additional Rohde & Schwarz products, programs, and business areas as the North American cybersecurity capability grows. This position requires being onsite in our Frederick, MD facility and requires US citizenship.
Your tasks
- Develop, execute, and continuously improve cybersecurity patch management processes for systems, operating systems, network devices, COTS products, appliances, and embedded components.
- Evaluate security patches, software updates, firmware updates, vendor advisories, and CVEs for applicability and operational impact.
- Coordinate patch evaluation with product engineering, systems engineering, cybersecurity, testing teams, vendors, and customers.
- Develop patch testing plans, procedures, test cases, acceptance criteria, and supporting documentation.
- Perform laboratory testing, security verification testing, configuration validation, interoperability testing, and regression testing.
- Validate that patches and security updates remediate identified vulnerabilities without adversely affecting system functionality, performance, availability, or interoperability.
- Support deployment planning, customer coordination, installation, post-deployment verification, and patch documentation.
- Build and maintain representative cybersecurity test and validation environments.
- Develop repeatable test methodologies for network devices, operating systems, applications, COTS products, and embedded devices.
- Perform vulnerability scanning, configuration assessments, protocol analysis, and security control validation as part of testing activities.
- Develop scripts and automation to improve cybersecurity engineering efficiency and consistency.
- Automate configuration generation and validation for technologies such as Cisco switches and routers and Fortinet firewalls where appropriate.
- Develop automation for security assessments, compliance checks, vulnerability analysis, evidence collection, test execution, configuration comparison, and reporting.
- Develop reusable tools, templates, scripts, secure baselines, and standardized processes that can be applied across multiple programs.
- Support secure configuration and hardening of network devices, Linux and Windows systems, firewalls, applications, and embedded products.
- Support implementation and validation of DISA STIGs, CIS Benchmarks, NIST controls, and customer-specific security requirements.
- Participate in system security architecture reviews, threat modeling, vulnerability management, and product security assessments.
- Support Factory Acceptance Testing (FAT), Site Acceptance Testing (SAT), customer deployments, onsite assessments, and witness testing.
- Troubleshoot cybersecurity-related system, network, configuration, and interoperability issues in laboratory and customer environments.
- Produce test reports, patch assessment reports, implementation procedures, configuration documentation, and technical cybersecurity deliverables.
- Collaborate with product and engineering teams in Europe and North America to evaluate updates, resolve technical issues, and improve system security.
- Evaluate new cybersecurity tools and technologies that can improve testing, automation, configuration management, and security engineering.
- Support cybersecurity training, knowledge transfer, process improvement, and standardization.
- Support the broader cybersecurity organization as priorities, programs, and customer requirements evolve.