Senior Security Engineer building security architectures and controls from the ground up for Northwood's global phased array ground station network enabling real-time satellite communications. Requires 5+ years IaC experience, deep knowledge of FedRAMP/NIST 800-171, ability to obtain TS/SCI clearance, and ownership of incident response, compliance automation, and government liaison duties.
120k – 190k/yr
On-site5+ YOESecurity Engineering
About the role
Responsibilities
Design security architectures for brand-new ground station infrastructure and space communication protocols.
Design and implement security controls for distributed systems that span continents and operate where a single failure could impact national security missions.
Deploy enterprise SIEM solutions that can handle terabytes of satellite communications data while maintaining detailed audit trails for stringent compliance requirements.
Pioneer security for space communications, writing new playbooks and serving as primary security liaison for Space Force and other government customers.
Lead incident response and threat hunting across a globally distributed ground station network, coordinating with engineering, network operations, and compliance teams.
Create automated compliance pipelines that satisfy FedRAMP and NIST 800-171 requirements without slowing deployment cycles.
Build comprehensive security documentation and reporting standards.
Basic Qualifications
5+ years of production experience with infrastructure as code (Terraform, AWS CDK).
Ability to obtain and maintain TS/SCI clearance.
Experience conducting security architecture reviews in regulated environments.
Strong knowledge of NIST 800-171, CUI, and FedRAMP frameworks, and how to implement them in modern cloud architectures.
Familiarity with government cloud environments (AWS GovCloud, Azure Government) and CI/CD deployment pipelines across air-gapped networks.
Proficiency in one or more general-purpose languages (Python, Go, Rust, etc.) for building custom security solutions.
Experience implementing defensive controls for endpoints, SaaS apps, and infrastructure in non-traditional environments.
Preferred Qualifications
Experience building large-scale log ingestion and storage pipelines for massive data volumes from distributed ground stations.
Hands-on experience with SIEM (Splunk, QRadar, Sentinel, Panther) and endpoint security solutions (CrowdStrike, SentinelOne) in production.
Strong Linux experience in production environments.
Knowledge of DFARS compliance and government contracting security requirements.
Familiarity with EMASS or similar government assessment tools.
Demonstrated ability to own complex security projects impacting national security and interface with government customers.
Conduct advanced vulnerability research, reverse engineering, threat analysis, and exploit development across application, mobile, operating-system, and cloud platforms. The role requires at least five years of offensive-security experience or a strong published research track record.
120k – 150k/yrRemote5+ YOESecurity Engineering
Senior Detection and Response Engineer
Northwood SpaceLos Angeles, CA
Senior Detection and Response Engineer building and operating a SOC for a global satellite ground station network. Lead incident response, threat hunting, detection engineering, and forensics for mission-critical space infrastructure and national security systems.
120k – 190k/yrOn-site5+ YOESecurity Engineering
Senior Security Engineer, Bug Bounty
MozillaUnited States
Own and scale Mozilla's web bug bounty program. Triage and validate reports from HackerOne/Bugzilla, drive vulnerability remediation with engineering teams, perform code reviews, and collaborate with SIRT on incidents. Requires 3+ years security engineering experience and bug bounty or bug hunting background.
116k – 183k/yrRemote3+ YOESecurity Engineering
Corporate Security Lead
Northwood SpaceLos Angeles, CA +1
Builds and leads corporate IT security operations including helpdesk, endpoint management, SIEM deployment, and team hiring for a space communications company. Requires 5+ years in IT/security/DevSecOps, hands-on tools like Okta and AWS, and compliance knowledge.
125k – 206k/yrOn-site5+ YOESecurity Engineering
Senior Security Automation Engineer
ClickhouseUnited States
Senior Security Automation Engineer building centralized security telemetry, universal identity provisioning, and agentic risk engines to enable continuous compliance, self-healing controls, and real-time risk visibility at ClickHouse. Requires strong IAM/IGA and automation experience with Python, JS/TS, or Go.