Lead Security Software Engineer
Listed on 2025-12-02
-
IT/Tech
Cybersecurity, Systems Engineer, Security Manager, Information Security
Location
San Carlos - Hybrid
Employment TypeFull time
Location TypeHybrid
DepartmentEngineering, Cloud & Security, Security
About Beacon AIWe’re a fast‑moving team of aviators, engineers, and operators on a mission to transform aviation with an AI platform that makes flying safer, more efficient, and more capable. Backed by top investors and having already secured a dozen Department of Defense contracts and worked with three major airlines, we’re flying through barriers and working on a mission that matters.
At Beacon AI, there are no silos or layers of overhead. Small, focused teams own what they build, ship fast, and learn even faster. Every line of code, data pipeline, or system we design pushes the boundaries of how humans and AI work together in the cockpit and beyond. If you thrive at the intersection of hard‑tech ambition and mission urgency, you’ll build faster here than anywhere else.
Role OverviewWe are seeking a highly skilled and motivated Lead Security Engineer to join our team. In this role, you will be responsible for ensuring the security and integrity of our systems and data, with a particular focus on integrations with both commercial and Department of Defense (DoD) customers. You will play a critical role in protecting our advanced flight safety system, safeguarding sensitive information, and ensuring compliance with industry standards and regulations.
This is a hands‑on role requiring expertise in security engineering, not just program management.
- Security Architecture: Design and implement robust security architectures for our applications and infrastructure, ensuring they are resilient against threats.
- Data Security: Develop and enforce security policies and procedures to protect data, both at rest and in transit, ensuring confidentiality, integrity, and availability.
- Vulnerability Management: Conduct regular security assessments, vulnerability scanning, and penetration testing to identify and mitigate security risks.
- Compliance: Ensure compliance with relevant security standards and regulations, including those specific to commercial and DoD customers.
- Incident Response: Lead incident response efforts, including the identification, containment, eradication, and recovery from security incidents.
- Secure Development Practices: Work closely with development teams to integrate security best practices into the software development lifecycle (SDLC).
- Monitoring and Logging: Implement and manage security monitoring and logging solutions to detect and respond to security events in real‑time.
- Training and Awareness: Conduct security training and awareness programs for employees to promote a security‑conscious culture.
- Third‑Party Assessments: Evaluate the security posture of third‑party vendors and ensure they meet our security requirements.
- Documentation: Develop and maintain comprehensive security documentation, including policies, procedures, and incident reports.
- Broad Security Coverage: Provide broad levels of security coverage, reviewing IP infrastructure, hardware, and ensuring cloud and data protections.
- System Security: Ensure the security of the entire system, including aircraft, office space, hardware, and network configurations.
- Certification Expertise: Be knowledgeable about relevant aviation security certifications and ensure our systems meet those standards.
- Endpoint Security: Ensure endpoints are secure and not susceptible to hacking, leveraging tools like AWS for basic security measures.
- Security Expertise: Strong knowledge of security principles, practices, and technologies.
- Experience: 5‑9 years of experience in a security engineering role, with a focus on protecting complex systems and data.
- Certifications: Relevant security certifications (e.g., CISSP, CISM, CEH) are highly desirable.
- Technical
Skills:
Proficiency in security tools and technologies, such as firewalls, IDS/IPS, SIEM, and encryption. - Compliance Knowledge: Familiarity with security standards and regulations, including NIST, ISO 27001, GDPR, and CMMC.
- Analytical
Skills:
Strong analytical and problem‑solving abilities, with attention to detail. - Communication: Excellent…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).