Senior Product Security Engineer

Posted 2 Days Ago
Be an Early Applicant
Huntington Beach, CA, USA
In-Office
150K-175K Annually
Senior level
Defense
The Role
Lead product security for UAS platforms across hardware, firmware, flight software, APIs, backend services, and cloud. Design secure architectures, perform security assessments and adversarial testing, integrate security into CI/CD, secure communications and OTA updates, build security tooling, and mentor engineers to embed security across the development lifecycle.
Summary Generated by Built In
About Mach Industries

Founded in 2023, Mach Industries is a rapidly growing defense technology company focused on developing next-generation autonomous defense platforms. At the core of our mission is the commitment to delivering scalable, decentralized defense systems that enhance the strategic capabilities of the United States and its allies. With a workforce of approximately 350 employees, we operate with startup agility and ambition.

Our vision is to redefine the future of warfare through cutting-edge manufacturing, innovation at speed, and unwavering focus on national security. We are dedicated to solving the next generation of warfare with lethal systems that deter kinetic conflict and protect global security.

The Role

We are seeking a Senior Product Security Engineer to lead security efforts across our growing Unmanned Aircraft Systems (UAS) portfolio. This role focuses on securing both hardware and increasingly software-driven systems, including autonomy platforms, command-and-control (C2) applications, APIs, cloud infrastructure, and embedded devices.
As our products scale and become more connected, the attack surface expands across edge, air, and cloud environments. This role ensures security is built into the full system lifecycle—from hardware and firmware to applications and distributed services.

Key Responsibilities
  • Lead end-to-end product security across UAS platforms, including embedded systems, flight software, APIs, backend services, and cloud infrastructure.

  • Design and implement secure architectures covering device identity, authentication, authorization, and data protection.

  • Perform security assessments across software, firmware, and hardware, including application testing, code review, and adversarial analysis.

  • Build and integrate security into CI/CD pipelines, including automated testing, scanning, and policy enforcement.

  • Partner with software, hardware, and firmware teams to embed security into the development lifecycle.

  • Secure communications, telemetry, and OTA update mechanisms across distributed systems.

  • Develop security tooling to scale protection across multiple hardware platforms.

  • Lead and mentor engineers and drive cross-functional security initiatives.

Required Qualifications
  • 5+ years of experience in Product Security, Application Security, or Security Engineering.

  • Programming skills in Python, C/C++, Rust, Go, or similar languages.

  • Experience securing software systems including APIs, microservices, and distributed platforms.

  • Experience with embedded systems, firmware, and Linux-based environments.

  • Familiarity with CI/CD pipelines and DevSecOps practices.

  • Ability to assess vulnerabilities across application, network, and hardware-software boundaries.

  • Experience delivering production-grade systems.

  • Familiarity with NIST or similar security frameworks.

  • Ability to own large initiatives independently.

  • Eligible to obtain a U.S. Secret clearance.

Preferred Qualifications
  • Expertise in IOT/OT penetration testing.

  • Experience in UAS, aerospace, robotics, or defense environments.

  • Knowledge of distributed systems, cloud security, and edge-to-cloud architectures.

  • Experience with AI/ML system security.

  • Familiarity with RF communications and associated security considerations.

  • Experience with FPGA or GPU-based systems.

  • Experience with infrastructure-as-code tools such as Terraform.

  • Proven track record leading engineering teams.

Disclosures

This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (EAR) and the International Traffic in Arms Regulations (ITAR).  Please note that any offer for employment may be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations without sponsorship for an export license.

Mach participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offers may vary based on (but not limited to) work experience, education and training, critical skills, and business considerations. Highly competitive equity grants are included in most offers and are considered part of Mach’s total compensation package. Mach offers benefits such as health insurance, retirement plans, and opportunities for professional development.

Mach is an equal opportunity employer committed to creating a diverse and inclusive workplace. All qualified applicants will be treated with respect and receive equal consideration for employment without regard to race, color, creed, religion, sex, gender identity, sexual orientation, national origin, disability, uniform service, Veteran status, age, or any other protected characteristic per federal, state, or local law, including those with a criminal history, in a manner consistent with the requirements of applicable state and local laws. If you’d like to defend the American way of life, please reach out!

Skills Required

  • 5+ years of experience in Product Security, Application Security, or Security Engineering
  • Programming skills in Python, C/C++, Rust, Go, or similar languages
  • Experience securing software systems including APIs, microservices, and distributed platforms
  • Experience with embedded systems, firmware, and Linux-based environments
  • Familiarity with CI/CD pipelines and DevSecOps practices
  • Ability to assess vulnerabilities across application, network, and hardware-software boundaries
  • Experience delivering production-grade systems
  • Familiarity with NIST or similar security frameworks
  • Ability to own large initiatives independently
  • Eligible to obtain a U.S. Secret clearance
  • Expertise in IoT/OT penetration testing
  • Experience in UAS, aerospace, robotics, or defense environments
  • Knowledge of distributed systems, cloud security, and edge-to-cloud architectures
  • Experience with AI/ML system security
  • Familiarity with RF communications and associated security considerations
  • Experience with FPGA or GPU-based systems
  • Experience with infrastructure-as-code tools such as Terraform
  • Proven track record leading engineering teams
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Austin, TX
36 Employees
Year Founded: 2022

What We Do

Mach Industries is a defense manufacturing company that deploys advanced aircraft to greatly increase military capability. Headquartered in Huntington Beach, California and backed by leading venture firms such as Sequoia Capital and Bedrock Capital, Mach Industries is an engineering-obsessed team pursuing focused product bets to create value for the defense customer. They are dedicated to solving the next generation of warfare with lethal systems that deter kinetic conflict and protect global security. Mach Industries is committed to vertically integrated manufacturing that ensures supply chain resiliency and accelerates the pace of defense innovation.

Similar Jobs

CrowdStrike Logo CrowdStrike

Security Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
160K-250K Annually

CrowdStrike Logo CrowdStrike

Security Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
160K-250K Annually

Persona Identities Logo Persona Identities

Security Engineer

Information Technology • Other • Security • Social Impact • Software • Cybersecurity • Data Privacy
Hybrid
San Francisco, CA, USA
600 Employees
200K-280K Annually

Rivian and Volkswagen Group Technologies, LLC Logo Rivian and Volkswagen Group Technologies, LLC

Security Engineer

Automotive • Cloud • Hardware • Software
Hybrid
Palo Alto, CA, USA
1885 Employees
147K-202K Annually

Similar Companies Hiring

Allen Control Systems Thumbnail
Defense • Manufacturing
Austin , TX
350 Employees
Onebrief Thumbnail
Software • Defense
US
350 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account