True Anomaly

Senior Application Security Engineer

$150K–$205KFull-time · Denver, CO or Long Beach, CA or SF Bay Area, CA
✓ Verified live on the employer's own system · added 118 days ago
Save search
Mid-level · 5+ yrs exp

Requirements

Experience: 5+ years

Skills & tools

SecurityOperationsSecurity ClearanceRecordkeepingManagementCode ReviewPythonC Plus Plus

Benefits — mentioned in this posting

Remote / flexible
Apply on company site ↗ See your fit → free

Full job description

As a Senior Application Security Engineer, you will be instrumental in implementing and auditing security controls for mission-critical space systems that must meet stringent government compliance requirements. You will work at the intersection of security engineering, compliance frameworks (NIST 800-171/800-53), and modern cloud-native architectures to ensure our satellite mission control software and flight systems meet Department of Defense security standards.

You will design and implement application-level security controls including comprehensive audit logging, incident response capabilities, access controls, and security monitoring—all while working closely with product engineering teams to shift security to ensure optimal outcomes.

If you thrive in a fast-paced environment where you can build security controls from the ground up and see the direct impact of your work on national security space operations, this mission is for you.

This position requires the ability to obtain and maintain a security clearance.

  • Create security architecture documentation and operational security guides for government authorization processes
  • Drive vulnerability management program with defined SLAs for remediation (30/90/180 days by severity)
  • Perform security code reviews for Elixir, Python, C++, and JavaScript codebases
  • Collaborate in the triage and management of security automations using SAST (CodeQL, Semgrep), SCA (JFrog Xray), and DAST tools
  • Collaborate with engineering teams to address security findings and implement secure coding practices
  • Develop and deliver security training to software engineers and systems administrators across the organization
  • Create and manage incident response playbooks specific to application security events
  • Evaluate and integrate third-party security solutions to enhance overall security capabilities
  • 5+ years of experience in application security, product security, or security engineering
  • Hands-on experience implementing security controls for compliance frameworks such as NIST 800-171, NIST 800-53, FedRAMP, or CMMC
  • Strong software engineering skills with ability to write production-quality code in at least one language (Python, Rust, Elixir, C++, or similar)
  • Experience with cloud security (Azure preferred, AWS or GCP acceptable)
  • Solid understanding of secure architecture principles including:
  • Authentication and authorization patterns (OAuth2, JWT, RBAC, ABAC)
  • Proven ability to work collaboratively with engineering teams to implement security controls without blocking velocity
  • Active TS/SCI clearance or ability to obtain and maintain a security clearance
  • Direct experience with NIST 800-171 Rev 3 or NIST 800-53 implementation projects (gap analysis, control implementation, evidence collection)
  • Experience with Department of Defense Impact Levels (IL2/IL4/IL5/IL6) or STIGs (Secure Technical Implementation Guides)
  • Familiarity with Elixir/Erlang/Phoenix or other functional programming ecosystems (Scala, Haskell, F#, OCaml)
  • Experience with Azure Government Cloud or other FedRAMP-authorized cloud environments
  • Infrastructure as Code security (Terraform, Bicep, Pulumi)
  • Kubernetes security (Pod Security Standards, network policies, service mesh)
  • Experience with security incident response including detection engineering and SOAR integration
  • Familiarity with aerospace, defense, or other highly regulated industries (finance, healthcare, critical infrastructure)
  • Previous experience in startups or fast-paced environments with ability to build processes from scratch
  • Base Salary: Long Beach - $150,000 to $205,000, Denver - $145,000 to $195,000, SF Bay Area - $165,000 to $225,000
  • Work Location —Successful candidates must be located near Denver, SF Bay Area, or Long Beach. While we observe a hybrid work environment, significant work must be done on site. #LI-Onsite

This position will be open until it is successfully filled. To submit your application, please follow the directions below.

More jobs at True Anomaly

Similar jobs near Denver, CO or Long Beach, CA or SF Bay Area, CA

Tell me when more Sr. SW Engineer jobs post near US - Denver, CO We re-check every listing against the employer’s own board — no résumé needed.

Search Senior Application Security Engineer jobs near Denver, CO or Long Beach, CA or SF Bay Area, CA → Browse all live jobs

This posting was published by True Anomaly on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.