Satellite Cybersecurity Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+6 more
Job description
As Satellite Cybersecurity Architect, you will define and own the cybersecurity architecture across our satellite platforms: setting the secure development practices our software teams follow, designing and implementing mechanisms such as secure boot, and owning the strategy for how cryptographic keys are generated, distributed, stored, and rotated across the fleet. You will work closely with the Satellite Software Architect, Embedded Software Engineers, and EE/FPGA engineers to embed security into the architecture from the start rather than bolting it on afterwards, and with satellite operators and V&V teams to make sure security requirements are actually verified and hold up in operations.
Key Activities
- Define and own the satellite cybersecurity architecture, covering on-board software, unit-level firmware, and the interfaces between units;
- Establish secure coding standards and development best practices (e.g. secure SDLC, code review guidelines, static/dynamic analysis) and support software teams in applying them;
- Design and implement secure boot and trusted execution methodologies and flows across our on-board computers and units;
- Define and own the strategy and processes for cryptographic key management: generation, distribution, storage, rotation, and revocation across satellite platforms and missions;
- Perform threat modeling and security risk assessments on satellite software and communication links (TT&C, payload data links), and define mitigations;
- Define security requirements at satellite and unit level, and ensure they are traceable and verified through the V&V process;
- Collaborate with the Satellite Software Architect, Embedded Software Engineers, and FPGA/EE engineers to embed security into architectural and design decisions from the start;
- Coordinate with satellite operators and ground-segment IT security teams to make sure security is maintained consistently from on-board software to ground infrastructure;
- Stay current on emerging space cybersecurity threats and standards, and continuously improve Aerospacelab’s security posture based on lessons learnt.
Requirements
- MSc, or PhD degree in Computer Science, Cybersecurity, or related field;
- Solid experience in embedded systems security, with hands-on knowledge of C and Python;
- Practical experience with secure boot, trusted execution, or hardware root-of-trust concepts;
- Solid understanding of cryptography fundamentals and key management practices (symmetric/asymmetric encryption, key exchange, PKI);
- Ability to lead technical discussions, structure trade-offs clearly, and communicate security decisions to multidisciplinary teams that may not have a security background;
- Ability to work across the hardware/software boundary;
- Demonstrated ability to work across teams to drive security practices to adoption with a high degree of autonomy;
- Good communication skills and fluency in English., * Experience in the space sector, or in another safety/security-critical embedded industry (automotive, defense, medical, industrial control systems);
- Familiarity with space cybersecurity standards and guidance (e.g. CCSDS security standards, ECSS-Q-ST-80, NIST SP 800-53/800-171, or equivalent);
- Experience with secure communication protocols for constrained or space links (e.g. CCSDS Space Data Link Security, TLS/DTLS for embedded systems);
- Familiarity with hardware security modules (HSMs), secure elements, or trusted platform modules (TPMs);
- Experience with penetration testing, fuzzing, or vulnerability assessment of embedded systems;
- Relevant certifications (e.g. CISSP, OSCP, GICSP or equivalent).
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Dev Digest 138 - Are you secure about this?
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Walking Into The Era of Supply Chain Risks