Aptiv PLC

Senior Security & Compliance Engineer - eLxr

Aptiv PLC$120K — $150K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience)
  • 5+ years of experience in Linux security engineering, preferably with Debian or derivatives
  • Strong knowledge of compliance frameworks (FIPS, STIG, CIS) and SDL practices
  • Hands-on experience with secure boot, encryption tools, and vulnerability management
  • Proficiency in CI/CD security, image generation, and OS installer processes
  • Familiarity with CVE tracking, patching baselines, and audit readiness
  • Excellent problem-solving and communication skills

Responsibilities

  • Drive adherence to FIPS, STIG, and CIS benchmarks
  • Manage encryption tools and ensure cryptographic compliance
  • Implement and maintain segmentation, secrets management, and access controls
  • Ensure audit readiness and compliance with industry standards
  • Oversee generation of OS images and maintain secure installer workflows
  • Secure CI pipelines and entitlement backend systems
  • Monitor CVEs and manage vulnerability remediation

Benefits

  • Hybrid work model for workplace flexibility
  • Comprehensive health, dental, and life insurance
  • Short and long-term disability coverage
  • RRSP matching for financial security
  • Flexible time-off policies for work-life balance
  • Employee assistance program for mental well-being
  • Learning benefits, including LinkedIn Learning subscription and seminars
Full Job Description
Senior Security & Compliance Engineer - eLxr

eLxr

eLxr is a Debian-based Linux distribution engineered for performance, reliability, and enterprise class- security. We are expanding our core engineering team and seeking a highly skilled Security & Compliance Engineer to lead security initiatives for eLxr, our Debian-based operating system.

YOUR ROLE

This role is critical to ensuring compliance, security hardening, and audit readiness across all components of our ecosystem, including OS images, installers, CI/CD pipelines, and entitlement systems.

HOW YOU WILL CONTRIBUTE

  • Drive adherence to FIPS, STIG, CIS benchmarks, and Secure Development Lifecycle (SDL) practices.
    • Manage encryption tools (e.g., OpenSSL and related libraries) and ensure cryptographic compliance.
  • Security & Compliance: Implement and maintain segmentation, secrets management, certificate lifecycle processes, and least privilege access controls.
  • Ensure audit readiness and compliance with industry standards.
  • Image & Installer Management: Oversee generation of OS images (.iso, qcow2, container images) and maintain secure OS installer workflows.
  • CI/CD & Backend Systems: Secure CI pipelines and entitlement backend systems, ensuring integrity and compliance throughout build and deployment processes.
  • Vulnerability Management: Monitor CVEs, manage vulnerability remediation, and
    coordinate timely patching and fixes
  • Secure Boot & Encryption: Implement and maintain secure boot processes.
  • Security Testing: Develop and execute security testing strategies, including regression and final build validation.
  • Web Properties & Portals: Ensure security and compliance across all sites (.org, .pro, .dev) and entitlement portals.


Required Qualifications:

  • Bachelor's degree in computer science, Cybersecurity, or related field (or equivalent experience).
  • 8+ years of experience in Linux security engineering, preferably with Debian or derivatives.
  • Strong knowledge of compliance frameworks (FIPS, STIG, CIS) and SDL practices.
  • Hands-on experience with secure boot, encryption tools, and vulnerability management.
  • Proficiency in CI/CD security, image generation, and OS installer processes.
  • Familiarity with CVE tracking, patching baselines, and audit readiness.
  • Excellent problem-solving and communication skills.
  • United States Citizenship required or permanent residency is required.


Preferred Skills:

  • Experience with container security (Docker, Podman).
  • Knowledge of entitlement systems and license management.
  • Familiarity with large-scale Linux deployments and automation tools (Ansible, Puppet, etc.).
  • Contributions to open-source projects.


BENEFITS

  • Hybrid work model for workplace flexibility
  • Comprehensive health, dental, and life insurance
  • Short and long-term disability coverage
  • RRSP matching for financial security
  • Flexible time-off policies for work-life balance
  • Employee assistance program for mental well-being
  • Learning benefits, including a LinkedIn Learning subscription and seminars


Join us at Wind River, where we're not just shaping technology; we're shaping the future of a safer, more connected world. Your journey to make a meaningful impact begins here.

Special Clearance Requirements

This position will perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil, and therefore any offer will be contingent upon verification of both of these requirements.

About Aptiv PLC

Aptiv PLC is a global technology company that designs and manufactures vehicle components and provides electrical and electronic and active safety technology solutions to the global automotive and commercial vehicle markets. The company's products include advanced safety systems, electrical and electronic distribution systems, and software and controls. Aptiv's largest customers are automotive manufacturers, and the company has a significant presence in Europe, Asia, and North America. The company was formerly known as Delphi Automotive PLC and changed its name to Aptiv PLC in December 2017.
Learn more about Aptiv PLC
Size
155,000 employees
Market Cap
$24.7 billion
Industry
Net Income
$1.8 billion
5 Year Trend
+4.9%
Revenue
$13 billion
NASDAQ

Similar Jobs

More Jobs at Aptiv PLC

More Information Technology Jobs

Find similar Senior Security & Compliance Engineer - eLxr jobs: