> Markdown version of [/jobs/ext/3409276-it-security-engineer](https://www.wearedevelopers.com/jobs/ext/3409276-it-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Engineer - **Company:** Space Exploration Technologies Corp. - **Location:** Hawthorne, United States - **Experience:** Experienced - **Salary:** $130,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Bash Shell, Collaborative Software, Cyber Security, Computer Networks, File Server, Intrusion Detection and Prevention, Python (Programming Language), Linux Servers, Windows PowerShell, Role-Based Access Control, Ansible, Security Information and Event Management, Software Vulnerability Management, Data Logging, Scripting, Information Technology, Vulnerability Analysis - **Published:** September 5, 2026 - **Apply:** https://startup.jobs/it-security-engineer-top-secret-clearance-spacex-9929850 ## About the Role SpaceX is looking for an IT Security Engineer with deep knowledge and broad experience across enterprise security technologies, in addition to broader experience with identity, endpoint protection, SIEM, and vulnerability management. This employee will be a member of the Information Technology team and will support SpaceX personnel and systems on classified networks. The ideal candidate will be flexible and flourish in a fast-paced and challenging environment. They should be a self-starter, self-motivator, and possess the ingenuity to excel at this position., * Bachelor's degree in computer science, cybersecurity, or another STEM discipline; OR 4+ years of professional experience in enterprise IT security engineering in lieu of a degree. * 3+ years of hands-on experience securing traditional IT environments (identity/MFA, endpoint security, SIEM, vulnerability scanning, email or file services). * Experience administering or operating at least two of the following: on-premises SIEM, enterprise EDR/AV, enterprise vulnerability management platform. * Active Top Secret / SCI (TS/SCI) clearance. PREFERRED SKILLS AND EXPERIENCE * Experience securing IT for engineering or corporate users in classified or restricted networks. * Strong practical experience with hardware-token / FIDO2 / smart-card MFA and directory-integrated identity. * SIEM administration or detection engineering experience (on-premises). * Enterprise EDR/AV policy and operations experience. * Enterprise vulnerability management and remediation workflows. * Hardening Windows and Linux servers; securing file shares, email gateways, and internal applications. * Permissions/access reviews, least privilege, and privilege-escalation reduction. * SOC or blue-team incident response experience on enterprise IT estates. * Scripting/automation (Python, PowerShell, Bash, Ansible) for security operations. * Familiarity with NIST 800-53 control families as implemented by IT security engineering. * Excellent communication skills with IT systems engineers and engineering end users. * Ability to work independently in a closed environment and deliver durable security operations., * To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. ## Description * Work closely with other SpaceX IT administrators and engineers to gather requirements, research, evaluate, design, plan, deploy, and support security solutions and related technologies in a world-class environment that meets the needs of the demanding SpaceX engineering teams. Build highly resilient, high-performance, scalable, and flexible systems. * Take lessons learned and technology standards from the SpaceX Enterprise and apply them in smaller classified environments. * Exercise a high degree of responsibility for the processes, systems, and tools you create and manage; all supporting the goal of making humanity an interplanetary species. * Design, deploy, and operate security controls for classified corporate-style IT networks, including authentication and identity services (hardware tokens, certificate-based authentication, privileged access), on-premises SIEM for logging and detection, endpoint/host protection, and vulnerability management. * Harden and secure traditional IT services used by engineering staff (email, file servers/shares, directory services, collaboration tools, and internal applications); review and improve permissions, group membership, and access models to reduce standing privilege. * Partner with systems, network, and application owners to securely design, deploy, and operate applications (authentication/authorization, logging, patching, least privilege). * Lead or support detection, triage, and incident response for the classified IT environment. * Make recommendations, justify, and implement improvements using an accepted change control methodology. * Work within a diverse group to design and deliver creative solutions and resolve problems in a timely and proactive manner by interacting with internal business units. * Define, document, and follow standards and best practices for systems design, testing, and implementation. * Drive scripting and automation to develop solutions to common problems and repeatable security tasks (baselines, evidence collection, health checks). ## Related Videos - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Eclipse Che for Infrastructure Automation](https://www.wearedevelopers.com/videos/1611-eclipse-che-for-infrastructure-automation) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)