Senior Product Security Engineer
Listed on 2025-12-26
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security
About Mach Industries
Founded in 2022,
Mach Industries is a rapidly growing defense technology company focused on developing next-generation autonomous defense platforms
. At the core of our mission is the commitment to delivering scalable, decentralized defense systems that enhance the strategic capabilities of the United States and its allies. With a workforce of approximately 220 employees
, we operate with startup agility and ambition.
Our vision is to redefine the future of warfare through cutting-edge manufacturing, innovation at speed, and unwavering focus on national security. We are dedicated to solving the next generation of warfare with lethal systems that deter kinetic conflict and protect global security.
The RoleWe’re seeking a Senior Product Security Engineer to lead a team of experts in creating advanced security tooling, uncovering critical vulnerabilities, and fortifying our suite of cutting‑edge technologies – from AI‑driven systems and command‑and‑control platforms to aerospace vehicles and long‑range sensors.
The ideal candidate has a background in electrical or software engineering with deep expertise in platform security, or has transitioned into product or application security. They will perform in‑depth security architecture assessments, identify and neutralize hardware and software exploits, and collaborate cross‑functionally to embed resilience into our products. Additionally, they will spearhead team initiatives, delegate responsibilities effectively, and drive continuous security improvements.
Key ResponsibilitiesOwn the design, development, and evolution of security features across Mach’s product portfolio.
Partner with software, hardware, and firmware teams to define and exceed industry‑leading security benchmarks.
Execute adversarial attacks against Mach’s products and integrated components to uncover and remediate vulnerabilities.
Collaborate with engineering and manufacturing teams to establish and enforce secure handling and operational processes.
Engage with teams to address weaknesses in designs, implementations, integrations, and processes.
3+ years of experience in a Prod Sec, Security Engineering, or Dev Ops role
Strong skills in one or more programming languages (e.g. C/C++, Rust, Python, Bash).
Proficient in Python and Bash for automation of deployments, scans, and implementing security guardrails.
Demonstrated ability to assess and harden security of firmware, applications, networks, IoT, and embedded systems.
Proven track record building, testing, and delivering production‑grade embedded and/or Linux‑based systems.
Experience with CI/CD pipelines using tools like Git Hub Actions, Git Lab CI, Jenkins, etc
Familiarity with security‑relevant features of at least one embedded ARM chip, NVIDIA Jetson
Familiarity with compliance standards (e.g. DoD ATO, FedRAMP, NIST 800‑171, or NIST 800‑53)
Familiarity with anti‑tamper strategies and reverse‑engineering tools.
Comfortable owning large initiatives end‑to‑end with minimal oversight.
Eligible to obtain and maintain an active U.S. Secret security clearance.
Experience supporting production systems in a defense, robotics, or hardware‑adjacent environment.
Knowledge of security architectures for embedded, aerospace, and cyber‑physical systems.
Experience with programmable logic devices (FPGAs) and associated tool chains.
Experience with building, testing, and delivering production‑grade embedded or Linux systems.
Experience in infrastructure‑as‑code (e.g. Terraform, Cloud Formation).
Proven track record of leading engineers through complex, hands‑on work.
Disclosures
This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (EAR) and the International Traffic in Arms Regulations (ITAR). Please note that any offer for employment may be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations without sponsorship for an export license.
Mach participates in E‑Verify and will provide the federal government with your Form I‑9…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).