Cybersecurity

Cybersecurity

Cybersecurity Engineer – Patch Management, Testing & Automation

Contact

Your Rohde & Schwarz recruiting team is looking forward to receiving your application.

Info
Ville / région
Maryland (États-Unis)
Niveau débutant
Professionnel(le)s
Type d´emploi
Plein temps
Ref. Number
17361
Recently named by Newsweek as one of the Best American Mid-Sized Workplaces in 2026, Rohde & Schwarz is expanding our Cybersecurity team. The Cybersecurity Engineer – Patch Management, Testing & Automation plays a critical role in maintaining and improving the cybersecurity posture of mission-critical systems throughout their operational lifecycle. This position will serve as a versatile member of the U.S. cybersecurity organization while providing primary expertise in cybersecurity patch management, security testing, validation, and automation. The engineer will coordinate and execute the technical lifecycle associated with security updates—from vulnerability and applicability analysis through laboratory testing, regression testing, deployment planning, verification, and documentation. The position will also develop automation and reusable technical processes to improve the efficiency, repeatability, and scalability of cybersecurity activities. While Patch Management, Testing & Automation will be the position's primary area of specialization, the successful candidate will also support broader cybersecurity activities including security assessments, system architecture, vulnerability management, compliance, product security, network security, system hardening, and customer/program support. Initially, the position will support Air Traffic Control (ATC) programs, with the opportunity to support additional Rohde & Schwarz products, programs, and business areas as the North American cybersecurity capability grows. This position requires being onsite in our Frederick, MD facility and requires US citizenship.

Your tasks

  • Develop, execute, and continuously improve cybersecurity patch management processes for systems, operating systems, network devices, COTS products, appliances, and embedded components.
  • Evaluate security patches, software updates, firmware updates, vendor advisories, and CVEs for applicability and operational impact.
  • Coordinate patch evaluation with product engineering, systems engineering, cybersecurity, testing teams, vendors, and customers.
  • Develop patch testing plans, procedures, test cases, acceptance criteria, and supporting documentation.
  • Perform laboratory testing, security verification testing, configuration validation, interoperability testing, and regression testing.
  • Validate that patches and security updates remediate identified vulnerabilities without adversely affecting system functionality, performance, availability, or interoperability.
  • Support deployment planning, customer coordination, installation, post-deployment verification, and patch documentation.
  • Build and maintain representative cybersecurity test and validation environments.
  • Develop repeatable test methodologies for network devices, operating systems, applications, COTS products, and embedded devices.
  • Perform vulnerability scanning, configuration assessments, protocol analysis, and security control validation as part of testing activities.
  • Develop scripts and automation to improve cybersecurity engineering efficiency and consistency.
  • Automate configuration generation and validation for technologies such as Cisco switches and routers and Fortinet firewalls where appropriate.
  • Develop automation for security assessments, compliance checks, vulnerability analysis, evidence collection, test execution, configuration comparison, and reporting.
  • Develop reusable tools, templates, scripts, secure baselines, and standardized processes that can be applied across multiple programs.
  • Support secure configuration and hardening of network devices, Linux and Windows systems, firewalls, applications, and embedded products.
  • Support implementation and validation of DISA STIGs, CIS Benchmarks, NIST controls, and customer-specific security requirements.
  • Participate in system security architecture reviews, threat modeling, vulnerability management, and product security assessments.
  • Support Factory Acceptance Testing (FAT), Site Acceptance Testing (SAT), customer deployments, onsite assessments, and witness testing.
  • Troubleshoot cybersecurity-related system, network, configuration, and interoperability issues in laboratory and customer environments.
  • Produce test reports, patch assessment reports, implementation procedures, configuration documentation, and technical cybersecurity deliverables.
  • Collaborate with product and engineering teams in Europe and North America to evaluate updates, resolve technical issues, and improve system security.
  • Evaluate new cybersecurity tools and technologies that can improve testing, automation, configuration management, and security engineering.
  • Support cybersecurity training, knowledge transfer, process improvement, and standardization.
  • Support the broader cybersecurity organization as priorities, programs, and customer requirements evolve.

Exciting insights into Rohde & Schwarz

Our colleagues provide insider information about:

  • Daily adventures and challenges
  • Our passionate team
  • The technologies behind the innovative projects and solutions

Your qualifications

  • BS degree in Cybersecurity, Computer Science, Engineering, Information Systems, or a related technical field. Master's degree preferred.
  • 7+ years of relevant cybersecurity engineering, systems engineering, network engineering, testing, automation, DevSecOps, or related experience.
  • Strong understanding of cybersecurity patch and vulnerability management principles.
  • Experience evaluating, testing, validating, and deploying operating system, application, network device, firmware, or product security updates.
  • Experience developing and executing technical test plans, test procedures, regression tests, or system validation activities.
  • Strong knowledge of IP networking, routing, switching, VLANs, firewalls, ACLs, and network segmentation.
  • Hands-on experience with Linux and/or Windows system administration and security.
  • Experience with network and security technologies such as Cisco and Fortinet is highly desirable.
  • Scripting or automation experience using Python, PowerShell, Bash, Ansible, APIs, or similar technologies.
  • Experience with vulnerability and network analysis tools such as Nessus, Nmap, Wireshark, or comparable tools.
  • Working knowledge of NIST SP 800-53, DISA STIGs, CIS Benchmarks, NIST CSF, or similar cybersecurity frameworks.
  • Strong troubleshooting and analytical skills with the ability to diagnose issues across complex system environments.
  • Ability to document repeatable technical processes and convert manual engineering activities into standardized or automated workflows.
  • Experience working with engineering, R&D, testing, program management, and customer teams.
  • Familiarity with mission-critical, safety-critical, aviation, transportation, defense, or critical infrastructure systems preferred.
  • Familiarity with VoIP/SIP/RTP, RF communications, embedded systems, appliances, and real-time systems is beneficial.
  • Experience with CI/CD, infrastructure-as-code, configuration management, Git, or DevSecOps practices is beneficial.
  • Cybersecurity certifications such as CISSP, GSEC, Security+, CASP+/SecurityX, CCNA/CCNP Security, or similar are preferred.
  • In order to be considered, candidates must be a U.S. citizen or permanent resident able to obtain an interim or final suitability determination, subject to completion and favorable adjudication of the required background investigation.

Interested?

We are looking forward to receiving your application!

The total compensation for this position is $96K-$130K. Total compensation includes base salary, variable pay (when applicable) plus benefits. The range is determined by the position, geographic location and level. Individual pay within the range is determined by several factors including location, education or training, relevant work history, sales incentive structure and job-related skills.

Rohde & Schwarz is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age or any other characteristic protected by law.
Rohde & Schwarz is a global technology company with approximately 14,000 employees and three divisions: Test & Measurement, Technology Systems and Networks & Cybersecurity. For 90 years, the company has been developing cutting-edge technology, pushing the boundaries of what is technically possible and enabling customers from various sectors such as business, government and public authorities to maintain their technological sovereignty.

You might find this also interesting