Application Security Engineer
Listed on 2025-12-28
-
IT/Tech
Cybersecurity, Systems Engineer
Overview
Space
X was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today Space
X is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.
APPLICATION SECURITY ENGINEER
As a member of the Space
X Security Engineering organization, the Application Security Engineer will act as a trusted partner to development and business teams, ensuring that security considerations are addressed without slowing down delivery. This role requires strong communication skills, the ability to translate security requirements into practical guidance, and a collaborative mindset to balance business priorities with risk reduction.
- Serving as a primary point of contact between Security Engineering and development teams for security reviews.
- Supporting developers in understanding and implementing secure design practices.
- Ensuring security findings are communicated in a way that is clear, actionable, and aligned to business objectives.
- Partnering with other security sub-teams (e.g., compliance, infrastructure, detection/response) to maintain consistency across security initiatives.
- Building productive relationships with stakeholders across Space
X to foster a culture of security awareness and shared responsibility. - Perform comprehensive security reviews of applications and services developed across Space
X. - Evaluate architecture, authentication/authorization flows, data handling, and exposure to external entities.
- Document findings with actionable recommendations for remediation.
- Collaborate with development teams to ensure issues are understood and addressed before release.
- Escalate critical risks to leadership promptly while providing balanced options for mitigation.
- Participate in peer review of security assessments to maintain quality and consistency.
- Provide input on improving team processes, documentation, and standards.
- Share lessons learned from reviews and projects to help scale security knowledge across Space
X.
- Bachelors degree in information systems, information security, computer science, or computer engineering and 1+ years of information security, networking and/or systems administration experience (internships and co-ops may qualify); or 4+ years of information security experience without a degree.
- Experience with secure code development practices.
- Experience with common programming languages (e.g., Python, GO, C#, or Rust) and the ability to identify insecure coding practices.
- Experience with Linux, Windows, and Mac system internals.
- Experience with threat modeling and secure architecture design.
- Familiarity with cloud environments (AWS, Azure, GCP) and their native security controls.
- Familiarity with developing web-based APIs, HTTP-RPC, and REST.
- Knowledge of automation/scripting (Python, Bash, Power Shell) to streamline assessments and reporting.
- Strong communication skills, with the ability to translate technical findings into business impacts.
- Relevant certifications (OSWE, OSCP, GWAPT, or equivalent).
- Familiarity with enterprise security controls and security best practices for Windows, Linux, and Mac systems.
- Effective problem-solving skills, and ability to quickly determine root-causes of issues.
- Familiarity with macOS and Windows code-signing and deployment of enterprise applications.
- Must be willing to work extended hours and/or weekends.
- This role is based in Hawthorne, CA and will require you to be onsite. Remote or hybrid work will not be considered.
Pay range:
Security Engineer/Level I: $ - $ per year
Security Engineer/Level II: $ - $ per year
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.
Base salary is just one part of your total rewards package may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).