Cybersecurity Specialist– Avionics Systems (DO-326A / ED-202A)
CS Group USA, a subsidiary of CS Group, is a key player in the development and certification of safety-critical systems in the aerospace industry in the United States. Joining CS Group USA offers the opportunity to work on complex high-tech systems for prestigious aerospace manufacturers. Our team operates primarily remotely, with employees based across multiple U.S. states, providing flexibility while maintaining close collaboration.
About the role
As a Cybersecurity Specialist–Avionics Systems, you will ensure cybersecurity is integrated throughout the avionics system and software lifecycle, in compliance with airworthiness security standards (DO-326A, ED-202A, DO-355, DO-356A). You will collaborate with system, software, and safety teams to foster a "security-by-design" culture and empower development teams to deliver resilient, certifiable, and secure avionics systems.
Responsibilities
- Define and maintain the airworthiness security process across projects.
- Perform Aircraft/System Security Scope Definition (ASSD/SSSD) and Security Risk Analysis (ASRA) for airborne and ground systems.
- Derive and validate security requirements aligned with certification expectations.
- Support secure architecture definition and verification activities.
- Develop and maintain the cybersecurity case to demonstrate compliance to authorities (EASA/FAA/TCCA).
- Contribute to security verification and validation activities, including penetration testing, vulnerability analysis, and security audits.
- Act as a technical advisor to project teams, promoting security-by-design over compliance-only approaches.
Requirements
- Bachelor’s or Master’s degree in Computer Science, Software, Electrical or Aerospace Engineering, or a related field.
- Strong expertise in cybersecurity for embedded or safety-critical systems, ideally in aerospace or defense.
- Proven experience with airworthiness security standards (DO-326A / ED-202A / DO-355 / DO-356A) or equivalent frameworks (ISO/SAE 21434, IEC 62443).
- Thorough understanding of DO-178C, ARP4754A, and DO-254 (or equivalent) development processes is a strong asset.
- Demonstrated proficiency in threat modeling, secure coding practices, and risk analysis (SRA).
- Relevant exposure and interactions with certification authorities (or delegates) and Stage Of Involvement meetings.
- Relevant cybersecurity certifications (CISSP, GICSP, or equivalent) are a plus.
- Ability to collaborate across multidisciplinary teams (architecture, software, safety, verification).
- Excellent communication and leadership skills, with the ability to translate complex security concepts into actionable engineering practices.
Benefits
- Annual cash bonus opportunity for all members.
- 2% annual retirement benefit opportunity.
- Training and professional development opportunities.
- 6 paid holidays.
- Industry-leading medical, dental, and vision insurance.
- Vacation, sick time, and bereavement leave.
- Employee Assistance Program, including mental health benefits.
- Optional spouse/child life whole life insurance, critical illness insurance, legal assistance, and military leave.