Software Engineer - Software Infrastructure (Cybersecurity)

Posted 7 Days Ago
Hiring Remotely in El Segundo, CA, USA
In-Office or Remote
175K-205K Annually
Expert/Leader
Aerospace • Hardware • Software • Defense
The Role
Designs and secures edge and hybrid-cloud infrastructure operating in contested, air-gapped, and degraded network environments. Responsibilities include container hardening, threat modeling, vulnerability management, automated provisioning, secrets and PKI lifecycle management, Linux security, and DoD/IC accreditation compliance. The role also contributes to security architecture, embedded Linux hardening, secure software supply chains, and mission-critical infrastructure reliability.
Summary Generated by Built In
CX2 is a next-generation defense technology company founded to deliver spectrum dominance for the United States and our allies. CX2’s AI-enabled hardware and software platforms detect, disrupt and defend the electromagnetic spectrum across land, air, sea and space domains.

Role Summary 
 

CX2 is seeking an experienced Software Infrastructure Engineer specializing in cybersecurity to harden the infrastructure that lets CX2 detect, disrupt, and defend the electromagnetic spectrum.

You will own the security of our edge and hybrid cloud infrastructure from end to end. That means how devices are provisioned, how secrets are issued and rotated, and how systems are locked down, monitored, and accredited. All of it has to hold up in disrupted, degraded, intermittent, or limited (DDIL) network conditions. Your work ensures that CX2’s sensor and effector systems, and the platform that orchestrates them, can be trusted on any battlefield.

As a key member of CX2’s foundational engineering team, you will shape our security architecture, strengthen our engineering culture, and help deliver powerful electromagnetic warfare capabilities.

Key Responsibilities

  • Secure Infrastructure Engineering: Design, harden, and defend containerized application infrastructure across small form factor edge compute and cloud environments. Lead threat modeling, vulnerability management, and security reviews, and evaluate and adopt new tools that maximize system security and reliability while protecting developer velocity.

  • Provisioning and Configuration Management: Build and maintain automated, reproducible provisioning and installation frameworks (Ansible, Chef, etc.) that take hardware and cloud hosts from bare metal to a hardened, mission-ready baseline, including in air-gapped and disconnected environments.

  • Secrets Management: Own the lifecycle of secrets, keys, and certificates across the fleet, including issuance, distribution, rotation, and revocation, for systems that must operate with intermittent or no connectivity.

  • Constrained and Disconnected Environments: Optimize resource usage and harden against denied or degraded network conditions to serve both mobile and web based clients.

  • Fulfill Department of Defense (DoD) and Intelligence Community (IC) Requirements: Understand, implement, and document the security controls needed to meet the software accreditation and certification standards set forth by the United States DoD and IC.

Required Qualifications

  • Minimum of 8-10 years of experience building, securing, and operating software infrastructure at the edge, on premises, or in the cloud.

  • Strong foundation in cybersecurity, including system and network hardening, threat modeling, vulnerability management, and incident response.

  • Deep understanding of containerization technologies, with a focus on Docker and Docker Compose, including image building and hardening, container networking and storage, runtime isolation (namespaces, cgroups, seccomp, capabilities, rootless containers), and securing images and registries.

  • Hands-on experience with provisioning and configuration management frameworks (Ansible, Chef, Puppet, SaltStack, etc.) and Infrastructure-as-Code tools (Terraform, OpenTofu, etc.).

  • Experience with secrets management and PKI (HashiCorp Vault, OpenBao, AWS KMS, SOPS, TPM or HSM backed keys, etc.).

  • Deep proficiency with Linux administration and security (SELinux, AppArmor, firewalls, auditing, disk encryption).

  • Willing to work extended hours for mission critical deadlines.

  • Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, or a related technical field, or equivalent relevant experience.

Preferred Qualifications

  • Experience configuring, building, and hardening custom Linux kernels.

  • Experience building and maintaining board support packages (BSPs) for embedded or small form factor hardware (L4T, Yocto, Buildroot, U-Boot, etc.), including secure and measured boot.

  • Familiarity with DoD security frameworks and accreditation processes (RMF, DISA STIGs, NIST SP 800-53, FedRAMP, Impact Level (IL) 4-6).

  • Expertise with government cloud platforms (AWS GovCloud, Azure Government Cloud).

  • Proficiency with server and embedded Linux distributions (Ubuntu, NixOS, RHEL).

  • Familiarity with container orchestration platforms such as Kubernetes (K3s, Rancher RKE2, etc.).

  • Experience securing CI/CD pipelines and the software supply chain (SBOMs, artifact signing, reproducible builds).

  • Security certifications such as CompTIA Security+, CISSP, or OSCP.

  • Active Secret or TS/SCI security clearance.

ITAR Requirements

  • To conform to U.S. Government export regulations, applicant must be a US Citizen, Green Card holder, or be eligible to obtain the required authorizations from the U.S. Department of State.

What We Offer

  • Competitive salary, stock options and benefits, including health, vision and dental.

  • 401K enrollment at 90 days.

  • Unlimited PTO plus most Federal Holidays observed.

  • High levels of responsibility and autonomy.

  • Professional growth and development opportunities.

CX2 is a next-generation defense technology company securing spectrum dominance for the United States and its allies. We build AI-enabled hardware and software platforms to detect, disrupt, and defend the electromagnetic spectrum across land, air, sea, and space. Our systems are deployed in the most contested operational environments in the world. We’re backed by leading venture investors in the defense ecosystem and led by founders with track records at Meta, SpaceX, Epirus, and the U.S. Department of Defense.

Equal Opportunity Employer
CX2 is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law, including those with a criminal history, in compliance with the CA Fair Chance Initiative for Hiring Ordinance.

To view CX2's privacy policy, please visit: https://www.cx2.com/privacy

Skills Required

  • 8-10 years of experience building, securing, and operating software infrastructure at the edge, on premises, or in the cloud.
  • Strong cybersecurity foundation, including system and network hardening, threat modeling, vulnerability management, and incident response.
  • Deep experience with Docker and Docker Compose, including image hardening, networking, storage, runtime isolation, and securing registries.
  • Hands-on experience with provisioning, configuration management, and Infrastructure-as-Code tools such as Ansible, Chef, Puppet, SaltStack, Terraform, or OpenTofu.
  • Experience with secrets management and PKI, including Vault, OpenBao, AWS KMS, SOPS, TPM, or HSM-backed keys.
  • Deep proficiency with Linux administration and security, including SELinux, AppArmor, firewalls, auditing, and disk encryption.
  • Willingness to work extended hours for mission-critical deadlines.
  • Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, or a related technical field, or equivalent relevant experience.
  • Experience configuring, building, and hardening custom Linux kernels.
  • Experience building and maintaining embedded or small form factor board support packages, including secure and measured boot.
  • Familiarity with DoD security frameworks and accreditation processes, including RMF, DISA STIGs, NIST SP 800-53, FedRAMP, and Impact Levels 4-6.
  • Expertise with AWS GovCloud or Azure Government Cloud.
  • Proficiency with Ubuntu, NixOS, or RHEL.
  • Familiarity with Kubernetes, K3s, or Rancher RKE2.
  • Experience securing CI/CD pipelines and the software supply chain, including SBOMs, artifact signing, and reproducible builds.
  • Security certification such as CompTIA Security+, CISSP, or OSCP.
  • Active Secret or TS/SCI security clearance.
  • U.S. citizenship, Green Card holder status, or eligibility to obtain required U.S. Department of State authorizations under ITAR.

CX2, Inc. Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about CX2, Inc. and has not been reviewed or approved by CX2, Inc..

  • Equity Value & Accessibility — Job postings consistently include stock options alongside base salary, signaling accessible ownership participation for new hires. This indicates equity is a standard component of offers at the company’s current stage.
  • Leave & Time Off Breadth — Listings describe generous PTO and note that most Federal Holidays are observed, indicating above-baseline time off for a small defense startup. This points to meaningful paid leave even without published accrual counts.
  • Healthcare Strength — Role descriptions state inclusion of health, vision, and dental insurance, establishing core medical coverage as part of the package. The presence of these coverages signals baseline healthcare support for employees.

CX2, Inc. Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
55 Employees

Similar Jobs

JPMorganChase Logo JPMorganChase

Designer

Financial Services
Remote or Hybrid
15 Locations
289097 Employees

General Motors Logo General Motors

District Manager, Onstar & Loyalty Bakersfield, CA

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
95K-127K Annually

General Motors Logo General Motors

District Manager, OnStar & Loyalty - Rochester New York

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
81K-109K Annually

General Motors Logo General Motors

Staff Software Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
Sunnyvale, CA, USA
165000 Employees
189K-290K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account