Security Engineering Manager

Posted 9 Days Ago
Be an Early Applicant
Torrance, CA, USA
In-Office
156K-232K Annually
Senior level
Aerospace • Hardware • Software • Database • Defense • Industrial
Northwood is a modern space infrastructure company focused on the ground segment.
The Role
Lead design, build, and operation of security infrastructure protecting ground stations, cloud, and corporate systems. Own SIEM, EDR, UEBA, firewall and VPN/ZTNA operations, DLP controls, Okta administration, IaC and automation, and mentor a growing security engineering team. Drive detection engineering, incident response playbooks, compliance alignment (CMMC/NIST/FedRAMP), and partner cross-functionally to embed security across on-prem and GovCloud/GCC environments.
Summary Generated by Built In

Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology. We are building a global network of phased array ground stations that enable real-time, reliable communication for satellite missions such as national security, global connectivity, and disaster response. With a vertically integrated approach, Northwood designs, builds, and rapidly deploys scalable systems that power the next generation of space missions. If you like solving complex challenges and seeing your work deployed around the world with real impact, Northwood is the place to do it.

Role:

As Security Engineering Lead, you will design, build, and own the security infrastructure that protects Northwood's ground station network, cloud environments, and corporate systems. This is a senior technical leadership role for an engineer who is equally at home architecting security platforms and mentoring a growing team.

You will lead the buildout of our SIEM and EDR capabilities, own corporate network security infrastructure including firewall management, and drive secure deployments across on-premises environments and AWS GovCloud and Microsoft GCC. You will define how Northwood engineers and operates security infrastructure at a scale and sensitivity level that does not exist elsewhere in the commercial space industry. This role reports to the Head of Security.

Responsibilities

SIEM & Detection Engineering

  • Own the full lifecycle of Northwood's SIEM platform — architecture, log source onboarding across ground stations and cloud infrastructure, correlation rule development, tuning, and automated alerting.

  • Build and maintain EDR platform operations, including agent deployment, policy management, alert triage, and integration with SIEM workflows.

  • Develop and continuously improve detection content, incident response playbooks, and SOC processes for a distributed, mission-critical environment.

  • Integrate security tooling with broader infrastructure through APIs and automation, reducing manual operational burden over time.

  • Lead the deployment and ongoing tuning of User and Entity Behavior Analytics (UEBA) capabilities within the SIEM environment, establishing behavioral baselines and refining detection models to surface insider threats and anomalous activity.

  • Develop and maintain UEBA use cases, correlation rules, and risk scoring models, working closely with the SOC to ensure alerts are actionable and high-fidelity.

  • Analyze UEBA telemetry to identify patterns indicative of insider risk, compromised accounts, or policy violations, and drive remediation in coordination with HR, legal, and security leadership.

Network & Infrastructure Security

  • Manage and maintain FortiGate firewall infrastructure, including policy management, segmentation, firmware lifecycle, and log integration.

  • Administer and optimize Cloudflare VPN and Zero Trust Network Access (ZTNA) configurations to support secure remote access and site connectivity.

  • Deploy, harden, and maintain security infrastructure across on-premises environments and AWS GovCloud and Microsoft GCC, adhering to applicable compliance frameworks.

  • Partner with product infrastructure engineers to ensure security is embedded in network and system architecture from the ground up.

  • Deploy and manage email security infrastructure, including administration of platforms such as Proofpoint or Sublime Security, policy tuning, threat response, and integration with SIEM workflows.

DLP Policy & Controls

· Design, implement, and maintain Data Loss Prevention (DLP) policies across endpoint, network, and cloud environments to protect sensitive data in alignment with CMMC and NIST 800-53 control requirements.

· Develop and enforce DLP rules and rulesets across email, web, and SaaS platforms, continuously tuning policies to reduce false positives while maintaining strong data protection coverage.

· Partner with legal, compliance, and IT teams to classify data assets and translate classification requirements into enforceable DLP controls across the enterprise.

Identity & Access

  • Support Okta administration in coordination with the IT operations team, including SSO integrations, MFA policy enforcement, lifecycle management, and SIEM log ingestion.

  • Ensure routine integrations between identity, endpoint, and security tooling are maintained as new systems are onboarded — this role is not responsible for general IT helpdesk or end-user support operations.

Infrastructure as Code & Automation

  • Define and enforce IaC practices (Terraform, Ansible, or equivalent) for all security infrastructure deployments, ensuring repeatability, auditability, and compliance alignment.

  • Develop scripting and automation (Python, Bash, PowerShell) to operationalize security workflows, reduce toil, and support compliance evidence collection.

Team Leadership

  • Hire, mentor, and develop security engineers as the team scales.

  • Serve as the primary security engineering subject-matter expert in cross-functional collaboration with network operations, mission management, and product engineering teams.

  • Contribute to security architecture reviews and provide technical guidance on regulatory requirements including CMMC, NIST 800-171, and FedRAMP.

Basic Qualifications

  • 5+ years in security engineering or DevSecOps with demonstrated experience in a technical leadership capacity.

  • Hands-on experience building and operating SIEM platforms, including log ingestion, detection rule development, and alert management.

  • Experience deploying and managing EDR solutions in a production environment.

  • Demonstrated FortiGate administration experience, including firewall policy management and network segmentation.

  • Experience deploying and securing workloads in AWS GovCloud and/or Microsoft GCC environments.

  • Proficiency with Infrastructure as Code tooling (Terraform, Ansible, or equivalent) applied to security infrastructure.

  • Experience administering Okta, including SSO, MFA, lifecycle management, and SIEM integration.

  • Familiarity with compliance frameworks relevant to defense and government environments (CMMC, NIST 800-171, FedRAMP).

  • Ability to obtain and maintain a TS/SCI clearance.

  • U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations.

Preferred Qualifications

  • Active TS clearance or higher.

  • Experience with Cloudflare Zero Trust / ZTNA configuration and administration.

  • Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or Panther.

  • Experience with EDR platforms such as CrowdStrike Falcon or SentinelOne.

  • Experience building and maintaining User and Entity Behavior Analytics (UEBA) capabilities for insider risk detection, including rule development, baselining, and integration with SIEM or dedicated UEBA platforms.

  • Background in aerospace, defense, critical infrastructure, or other regulated industries.

  • ITAR compliance experience.

  • CISSP, CISM, CISA, or equivalent professional certification.

Additional Requirements:

  • This position requires successfully obtaining and maintaining a Top Secret Security Clearance as a condition of employment. While the clearance may not be immediately necessary upon hire, we encourage you to initiate the application process promptly upon accepting this offer. Your ability to secure the necessary clearance is essential for fulfilling key responsibilities of the role. Should you be unable to obtain it, Northwood Space reserves the right to modify or terminate your employment to align with optional needs.

Additional Information:

If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know.

To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

Northwood Space is an Equal Opportunity Employer; employment with Northwood Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Skills Required

  • 5+ years in security engineering or DevSecOps with technical leadership experience
  • Hands-on experience building and operating SIEM platforms (log ingestion, detection rule development, alerting)
  • Experience deploying and managing EDR solutions in production
  • FortiGate administration experience (firewall policy management, segmentation, firmware lifecycle)
  • Experience deploying and securing workloads in AWS GovCloud and/or Microsoft GCC
  • Proficiency with Infrastructure as Code tooling for security (Terraform, Ansible, or equivalent)
  • Experience administering Okta (SSO, MFA, lifecycle management) and SIEM integration
  • Familiarity with compliance frameworks relevant to defense/gov (CMMC, NIST 800-171, FedRAMP)
  • Ability to obtain and maintain a TS/SCI clearance (Top Secret/SCI)
  • U.S. citizenship or lawful permanent resident status required (ITAR/export compliance)
  • Active TS clearance or higher
  • Experience with Cloudflare Zero Trust / ZTNA
  • Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or Panther
  • Experience with EDR platforms such as CrowdStrike Falcon or SentinelOne
  • Experience building and maintaining UEBA capabilities for insider risk detection
  • Background in aerospace, defense, critical infrastructure, or regulated industries
  • ITAR compliance experience
  • CISSP, CISM, CISA, or equivalent professional certification

Northwood Space Corp Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northwood Space Corp and has not been reviewed or approved by Northwood Space Corp.

  • Healthcare Strength Job postings consistently cite “comprehensive” or “platinum” medical, dental, and vision coverage, with some roles indicating employer-covered premiums at little to no cost. Several listings explicitly reference fully covered plans.
  • Equity Value & Accessibility Multiple listings consistently mention equity or stock options alongside base pay, with some noting potential performance bonuses. Equity is presented as a standard component across many roles.
  • Leave & Time Off Breadth Listings cite flexible or unlimited PTO, and some specify a defined paid holiday calendar (e.g., about 10 holidays). Time-off provisions are repeatedly referenced across postings.

Northwood Space Corp Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Torrance, CA
40 Employees

What We Do

The space segment has become critical infrastructure. It powers everything from GPS and climate monitoring to missile warning and global broadband. But the ground segment hasn’t kept up. Most ground networks today were designed for science missions, not for the scale, urgency, or diversity of today’s space economy. At Northwood, we’re building a global, software-defined ground network from the ground up — designed to scale as fast as the missions it supports.

Why Work With Us

Just like cloud infrastructure transformed software development, we believe shared ground infrastructure will transform space operations. We’re making it possible for any operator to move space-based data quickly, securely, and reliably back to Earth.

Similar Jobs

PwC Logo PwC

Security Risk & Engineering - Tech and Cyber Risk & Compliance -Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
9 Locations
370000 Employees
99K-232K Annually

PwC Logo PwC

Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
9 Locations
370000 Employees
124K-280K Annually

Cisco Logo Cisco

Product Manager

Cloud • Information Technology • Internet of Things • Professional Services • Software
In-Office or Remote
2 Locations
77500 Employees
179K-329K Annually

Zscaler Logo Zscaler

Manager, Information Security Engineering

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
137K-196K Annually

Similar Companies Hiring

Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account