
Senior Security Engineer
Posted 15 hours ago

Posted 15 hours ago
This is a fully remote position, open to applicants in Alabama, +25 more states.
• Design and implement cybersecurity measures for satellite software, ground systems, communication links, and mission infrastructure.
• Establish secure software practices for mission-critical systems, which include threat modeling, code reviews, vulnerability management, and security testing.
• Monitor satellite systems and mission networks for cyber threats, investigate incidents, and manage containment and recovery efforts.
• Work in collaboration with aerospace, software, systems, and compliance teams to fulfill security, safety, and regulatory obligations.
• Oversee network security architecture, managing firewall rules, tuning IDS/IPS, network segmentation, and VPN infrastructure.
• Evaluate vulnerabilities in flight software, embedded systems, command-and-control interfaces, and satellite communication protocols; coordinate remediation activities.
• Manage and secure IAM systems, including Okta and AWS IAM, SSO integrations, conditional access, privilege reviews, and lifecycle automation.
• Develop and maintain SIEM monitoring and alerting systems, detection rules, and response playbooks.
• Conduct security assessments of tools, vendors, and architectural modifications.
• Lead AWS cloud security posture management, focusing on IAM policies, S3 security, security group reviews, and monitoring with CloudTrail/GuardDuty.
• Assist with CMMC Level 2 and NIST SP 800-171 compliance by maintaining SSP narratives, gathering evidence, and preparing assessments.
• Provide security awareness training and conduct phishing simulations.
• Lead or assist in incident response activities, including containment, forensic analysis, root cause analysis, and post-incident reporting.
• Maintain and enhance DLP controls for Controlled Unclassified Information (CUI) and sensitive data.
• Contribute to the development of security policies and keep documentation up to date.
• A minimum of 5 years of experience in information security or security engineering roles.
• Active TS/SCI clearance, or the ability to obtain one.
• Familiarity with satellite communication protocols, embedded systems, and RF or space-ground link security.
• Experience in securing aerospace or mission systems, including satellites, ground systems, embedded/flight software, or command-and-control (C2) interfaces.
• Proficiency in secure software practices, including threat modeling, code review, security testing, and vulnerability management.
• Strong understanding of identity and access management principles with practical experience in Okta or Azure AD administration.
• Expertise in cloud security within AWS (IAM, VPC, Security Groups, CloudTrail, GuardDuty, Config).
• Experience with SIEM platforms (Splunk, Sentinel, Elastic, or similar) for log analysis and detection engineering.
• Solid foundation in networking concepts, including firewalls, proxies, DNS security, network segmentation, and packet analysis.
• Familiarity with compliance frameworks such as NIST 800-171, CMMC, SOC 2, or ISO 27001.
• Exceptional written and verbal communication skills to articulate risks and technical findings to both engineers and leadership.
• Candidate must meet relevant ITAR/EAR export-control eligibility requirements: be a U.S. person, be eligible without export authorization, or be eligible and likely to obtain the required authorization.
• Relevant certifications (CISSP, GIAC, CEH, AWS Security Specialty, or similar) are a plus.
• Familiarity with infrastructure-as-code security (Terraform, CloudFormation) and CI/CD pipeline security is an advantage.
• Background in ITAR/EAR export-control environments is desirable.
• Experience supporting U.S. Government, DoD, or national security space programs is preferred.
• Competitive equity grant.
• Medical insurance.
• Dental insurance.
• Vision insurance.
• 401k retirement plan.
• Short-term disability insurance.
• Long-term disability insurance.
• Life insurance.
• Three weeks of paid vacation for new employees.
• 12 paid holidays.
• Unlimited sick time.
• Paid parental leave.
GuidePoint Security
Gravie
Your Software Supplier
Dragonfli Group
Get handpicked remote jobs straight to your inbox weekly.