L3Harris Technologies

Senior Product Cybersecurity Engineer - Platform Security

L3Harris Technologies Montreal, Quebec, Canada · CA$102K–CA$152K/yr

Defense and Space Manufacturing · 10,001+ employees

20 h ago
security Principal (10+ yrs) Full-time Canada
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

You will assess, implement, and manage cybersecurity technologies within the IPMS solution while collaborating with cross-functional teams to strengthen system security. Additionally, you will proactively identify and remediate vulnerabilities and develop automation tools to enhance overall cybersecurity operations.

What they look for

Linux System Administration Cybersecurity Network Security Identity and Access Management RBAC Vulnerability Management Secure Coding Automation Scripting Ansible Terraform Python Bash PowerShell Zero Trust PKI

Requirements

Candidates must have a minimum of 10 years of experience in cybersecurity within engineering-driven product development environments. Proficiency in Linux administration, network security architecture, and secure software development practices is essential.

Full description

Job Title: Senior Product Cybersecurity Engineer – Platform Security

Job Location: Montreal, QC

Job Code: 44138

Job Schedule: Day Shift

Compensation Range: Between $102,000 - $152,000 CDN annually

L3Harris MAPPS' Integrated Platform Management System (IPMS) is a mission-critical solution deployed on various military and cruise ships. It integrates and controls nearly all onboard equipment, combining L3Harris-developed technologies with commercial off-the-shelf (COTS) components. The IPMS operates within its own dedicated on-premises IT environment, using standard infrastructure elements such as virtualized servers, networking equipment, storage systems, databases, domain controllers, Active Directory, automation, and many others.

As a member of the Cybersecurity team, you will play a pivotal role in strengthening the system’s security posture across all phases of the development lifecycle—from initial design to final deployment. You will work closely with software development teams, DevOps, and Integration & Test (I&T) engineers in a highly collaborative environment.

Because IPMS is a complete and self-contained solution, we value broad cybersecurity expertise spanning software, hardware, and IT infrastructure.

If interested, you may also have the unique opportunity to support deployments directly onboard ships.

Essential Functions:

  • Assess, implement, and manage a range of cybersecurity and IT technologies integrated into the IPMS solution, as described above.
  • Support cross-functional teams by clearly communicating cybersecurity concepts, providing guidance, and helping to prioritize security-related tasks.
  • Proactively identify, assess, and remediate security vulnerabilities within the system, based on risk and impact.
  • Develop tools, scripts, and automation to enhance cybersecurity operations; may also involve contributing to security-relevant code.
  • Define and document cybersecurity requirements for other software components to ensure compliance with established security standards.
  • Deploy, configure, and maintain cybersecurity solutions to continuously improve the security posture of the overall system.

Qualifications:

  • Minimum of 10 years of experience in cybersecurity serving as a Senior IT/Security Administrator, Security Engineer, or Security Architect within engineering-driven product development environments, including hardware and software product development for on-premises platforms, embedded systems, or connected devices.
  • Deep expertise in the following areas:

  • Linux System Administration: Extensive hands-on experience with Linux-based infrastructure and administration, including centralized identity and access management (e.g., LDAP, FreeIPA, Kerberos), privilege and role-based access control, system hardening, patch and package management, SSH and certificate-based authentication, and PKI/certificate lifecycle management.
  • Role-Based Access Control (RBAC) and Identity Security: Familiarity with RBAC architecture, access model design, Identity and Access Management, Privileged Access Management, and directory services such as LDAP and Active Directory; experience with centralized authentication and authorization protocols including RADIUS and TACACS+; experience with related platforms, policy design, and access governance tools is an asset.
  • Network Security Architecture & Design: Experience designing and securing enterprise or product networks, including segmentation, secure topologies, and defense-in-depth; strong knowledge of firewalls, IDS/IPS, VPNs, and Zero Trust; familiarity with protocols such as IPsec, TLS, RADIUS, and TACACS+; experience with NAC, secure routing/switching, and monitoring tools is an asset.
  • Secure software development: Proficient in industry best practices for secure coding, including awareness of OWASP Top Ten vulnerabilities, secure coding techniques, penetration testing, and threat modeling. Familiar with tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA).
  • Broad cybersecurity knowledge, with practical understanding in several of the following domains:

  • Vulnerability Management
  • Software Configuration Management and Platform as Code
  • Endpoint Security
  • Virtualization and containerization.
  • Governance & Standards: Experience establishing and enforcing cybersecurity governance frameworks, policies, and standards; familiarity with industry guidelines (e.g., NIST, ISO 27001)
  • Hands-on experience in scripting and automation using tools such as PowerShell, Bash, Python, Ansible, and Terraform.
  • Demonstrated ability to evaluate and strengthen the security architecture of complex systems—capable of identifying vulnerabilities, recommending changes, and guiding implementation to reduce the attack surface.
  • Excellent communication skills, with the ability to translate cybersecurity requirements into actionable guidance for development teams.
  • Strong analytical and decision-making skills, using both quantitative data and expert judgment.
  • Fluency in English is required; proficiency in French is an asset.

Preferred Additional Skills:

  • Security tools proficiency: SIEM tools (e.g., Splunk, QRadar, ELK), Endpoint protection (EDR/XDR platforms), Vulnerability scanners (e.g., Nessus, OpenVAS)
  • Cyber security certifications, In order of preference: CompTIA Security+, CySA+, Linux+ / RHCSA, GIAC or OSCP.
  • Familiarity with Atlassian tools.
  • Agile and scrums.

Eligibility Criteria:

  • Must be eligible for registration with the Controlled Goods Program;
  • Must be eligible to obtain and maintain a government of Canada Reliability status and Secret Level 2/NATO Secret security clearance;

L3Harris is proud to be an equal opportunity employer and is committed to treating all of its employees and job applicants with respect and dignity and to maintaining a workplace free from discrimination. Anyone applying for a position will be considered without regard to the following: race, national or ethnic origin, colour, religion, age, nationality, ancestry, ethnicity, gender, sex, sexual orientation, gender identity or expression, marital status, family status, genetic characteristics, disability, citizenship status, or conviction for an offence for which a pardon has been granted or in respect of which a record suspension has been ordered, or any other characteristic that is protected by applicable human rights legislation.

L3Harris maintains a drug-free workplace and conducts pre-employment drug and alcohol testing and background checks, in accordance with applicable law. Such results are only accessible and viewed by individuals at L3Harris who have direct responsibility in the hiring process. If you fail to report for a drug and alcohol test, refuse to undergo such test or test positive for the presence of drugs or alcohol, the hiring process may be concluded or your offer of employment may be rescinded, in L3Harris’ sole discretion.

This job is for an existing vacancy

Similar roles