Senior Application Security Engineer
Core
Implementing and auditing security controls for mission-critical space systems, satellite mission control software, and flight systems to meet Department of Defense security standards.
Role type
Senior Application Security Engineer
Builds
Security controls, audit documentation, incident response playbooks, and secure coding practices for space systems
Domain
Aerospace / Defense / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security engineering, Compliance frameworks (NIST 800-171/800-53, FedRAMP, CMMC), Secure architecture principles (Threat modeling, Zero Trust, Cryptography), Vulnerability management, Security code reviews, SAST/DAST tools, Cloud security (Azure/AWS/GCP)
Preferred skills
TS/SCI clearance, NIST 800-171 Rev 3 implementation, DoD Impact Levels/STIGs, Elixir/Erlang/Phoenix, Azure Government Cloud, DevSecOps/Platform Security, Kubernetes security, Detection engineering/SOAR
Technologies
CodeQL, Semgrep, JFrog Xray, Terraform, Bicep, Pulumi, Kubernetes, GitOps, CI/CD
Responsibilities
Create security architecture documentation and operational security guides, Drive vulnerability management program with defined SLAs, Perform security code reviews for Elixir, Python, C++, and JavaScript, Collaborate in triage and management of security automations, Address security findings and implement secure coding practices, Develop and deliver security training, Create and manage incident response playbooks, Evaluate and integrate third-party security solutions
Seniority
Senior, hands-on IC