Satellite Cybersecurity Architect

Aerospacelab
Mont-Saint-Guibert, Belgium
1 day ago
Apply on www.space-careers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Tech stack

Software System Penetration Testing Code Review Data Link Cyber Security Datagram Transport Layer Security Dynamic Program Analysis Embedded Software Firmware Field-Programmable Gate Array (FPGA) Fuzz Testing Hardware Security Module Python (Programming Language)
+6 more
Key Management Public Key Infrastructure Information Technology Process Control Systems U-Boot Vulnerability Analysis

Job description

As Satellite Cybersecurity Architect, you will define and own the cybersecurity architecture across our satellite platforms: setting the secure development practices our software teams follow, designing and implementing mechanisms such as secure boot, and owning the strategy for how cryptographic keys are generated, distributed, stored, and rotated across the fleet. You will work closely with the Satellite Software Architect, Embedded Software Engineers, and EE/FPGA engineers to embed security into the architecture from the start rather than bolting it on afterwards, and with satellite operators and V&V teams to make sure security requirements are actually verified and hold up in operations.

Key Activities

  • Define and own the satellite cybersecurity architecture, covering on-board software, unit-level firmware, and the interfaces between units;
  • Establish secure coding standards and development best practices (e.g. secure SDLC, code review guidelines, static/dynamic analysis) and support software teams in applying them;
  • Design and implement secure boot and trusted execution methodologies and flows across our on-board computers and units;
  • Define and own the strategy and processes for cryptographic key management: generation, distribution, storage, rotation, and revocation across satellite platforms and missions;
  • Perform threat modeling and security risk assessments on satellite software and communication links (TT&C, payload data links), and define mitigations;
  • Define security requirements at satellite and unit level, and ensure they are traceable and verified through the V&V process;
  • Collaborate with the Satellite Software Architect, Embedded Software Engineers, and FPGA/EE engineers to embed security into architectural and design decisions from the start;
  • Coordinate with satellite operators and ground-segment IT security teams to make sure security is maintained consistently from on-board software to ground infrastructure;
  • Stay current on emerging space cybersecurity threats and standards, and continuously improve Aerospacelab’s security posture based on lessons learnt.

Requirements

  • MSc, or PhD degree in Computer Science, Cybersecurity, or related field;
  • Solid experience in embedded systems security, with hands-on knowledge of C and Python;
  • Practical experience with secure boot, trusted execution, or hardware root-of-trust concepts;
  • Solid understanding of cryptography fundamentals and key management practices (symmetric/asymmetric encryption, key exchange, PKI);
  • Ability to lead technical discussions, structure trade-offs clearly, and communicate security decisions to multidisciplinary teams that may not have a security background;
  • Ability to work across the hardware/software boundary;
  • Demonstrated ability to work across teams to drive security practices to adoption with a high degree of autonomy;
  • Good communication skills and fluency in English., * Experience in the space sector, or in another safety/security-critical embedded industry (automotive, defense, medical, industrial control systems);
  • Familiarity with space cybersecurity standards and guidance (e.g. CCSDS security standards, ECSS-Q-ST-80, NIST SP 800-53/800-171, or equivalent);
  • Experience with secure communication protocols for constrained or space links (e.g. CCSDS Space Data Link Security, TLS/DTLS for embedded systems);
  • Familiarity with hardware security modules (HSMs), secure elements, or trusted platform modules (TPMs);
  • Experience with penetration testing, fuzzing, or vulnerability assessment of embedded systems;
  • Relevant certifications (e.g. CISSP, OSCP, GICSP or equivalent).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.space-careers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · World Congress 2021

1:20 min

How social media platforms generate link previews

Lars Kölker · World Congress 2023

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 · World Congress 2026 Europe

1:01 min

Demonstrating successful metadata scraping techniques for generic previews

Lars Kölker · World Congress 2023

Videos

See all

Related articles

See all