Description:

Job Description:
Honeywell is hiring for a General Counsel, Government Contracts & Cybersecurity to lead enterprise legal strategy for government contracts, cybersecurity, product security, incident response, and related regulatory compliance across Honeywell Technologies.

This leadership role advises on U.S. government contract regulations, including FAR, DFARS, DPAS, domestic sourcing requirements, contract negotiations, risk management, and compliance, while partnering with the CISO, CTO, engineering, IT, product security, and commercial teams to embed legal guidance into product development, incident response, and business operations.

The role has significant influence on legal and business strategy and manages a Government Contracts Analyst. It reports directly to our VP & GC, Chief Regulatory Officer and Head of Legal Transformation, with a matrix reporting relationship to our VP & GC for Data Privacy. This role can work out of our Washington, DC or Charlotte, NC locations on a hybrid work schedule.

Responsibilities:
Why This Role Matters
Government contracting, cybersecurity threats, and data governance obligations are increasingly complex and consequential across Honeywell Technologies' global operations. This role protects revenue and mission-critical customer relationships by ensuring compliant performance under government contract requirements, reducing exposure to audits, claims, bid protests, enforcement, and operational disruption while enabling the business to move at speed.

Government Contracts Legal
  • Advise business and legal stakeholders on U.S. government contract compliance, including FAR, DFARS, DPAS, domestic preference requirements, representations and certifications, and related obligations.
  • Develop and enhance government contract compliance policies, procedures, tools, controls, training, and guidance to support implementation, risk management, and organizational readiness.
  • Monitor regulatory developments, lead legal oversight of supplier/product screening and contract requirements, and support investigations, remediation, audits, and site risk assessments.
  • Drive enterprise compliance governance, automation, KPI/KRI reporting, SAM.gov/CAGE maintenance, and continuous improvement in partnership with cross-functional stakeholders and outside counsel.

Cybersecurity Legal
  • Serve as a standing member of the Cybersecurity Incident Response Team, coordinating legal risk management, privilege strategy, regulatory assessment, notifications, and communications during cyber incidents.
  • Counsel on secure product development, coordinated vulnerability disclosure, product security, and regulatory readiness, including CMMC, NIST SP 800-171/800-53, DFARS 252.204-7012, SEC cybersecurity rules, NIS2, and the EU Cyber Resilience Act.
  • Partner with GRC and technical teams on security architecture, vulnerability management, information security policies, certifications, customer-facing assurances, and contractual security obligations.
  • Structure and negotiate information security terms in customer, supplier, partner, and M&A agreements, and monitor emerging cybersecurity legislation affecting government contracting.

Qualifications:
You must have:
  • 10+ years of relevant legal experience, including significant experience advising on government contracts and cybersecurity matters.
  • J.D. or equivalent and admitted to practice law in a U.S. jurisdiction.
  • Proven expertise in FAR, DFARS, DPAS, domestic preference requirements, representations and certifications, DFARS 252.204-7012, NIST SP 800-171/800-53, CMMC, SEC cybersecurity disclosure rules, and related government contracting and cybersecurity obligations.
  • Strong contracting and drafting capability across prime contracts, subcontracts, teaming agreements, security addenda, audit rights, and flow-down clauses.
  • Excellent judgment, prioritization, stakeholder management, and ability to synthesize complex issues for technical and non-technical audiences.

We value:
  • Prior law firm representing or in-house legal experience in regulated, industrial, technology, or government-facing sectors.
  • Prior government experience, such as DOJ, FTC, SEC, DOD, Commerce Department, CISA, or similar agency experience.
  • Experience with global cybersecurity and government contracts regulatory regimes, including the EU Data Act, NIS2, CRA, GDPR, CMMC, FAR, DFARS, DPAS, and domestic preference requirements.
  • Experience with crisis management, investigations, breach notifications, regulatory engagement, audits, Inspector General inquiries, DCAA/DCMA touchpoints, sanctions, export controls, or government contractor compliance frameworks.
  • Practical understanding of cost allowability, allocability, reasonableness, and pricing concepts common in federal contracting.
  • Strong, independent leadership with the ability to influence senior leaders, set strategic direction, and operate effectively across legal, compliance, security, engineering, supply chain, and commercial teams.