Engineering Manager, Application Security

True Anomaly Inc

Denver, CO

JOB DETAILS
SALARY
$175,000–$240,000 Per Year
SKILLS
Aerospace and Defense, Amazon Web Services (AWS), Analysis Skills, Applications Security, Architectural Services, C Programming Language, C++ Programming Language, CISSP - Certified Information Systems Security Professional, Cloud Applications, Cloud Computing, Coaching, Code Reviews, Computer Security, Control Systems, Cryptography, Distributed Applications, Docker, Dynamic Analysis, Embedded Systems, Engineering Management, Establish Priorities, Fuzz Testing, GCP (Good Clinical Practices), Go Programming Language (Golang), Government, Integrated Circuits (ICs), Leadership, Leading Edge Technology, Mentoring, Microsoft Windows Azure, Operations Security (OPSEC), Penetration Testing, People Management, Performance Management, Physical Demands, Problem Solving Skills, Process Development, Programming Languages, Python Programming/Scripting Language, Quality Assurance Methodology, Realtime Operating System, Regulatory Compliance, Rust Programming Language, Sales Pipeline, Satellite Operations, Secret Clearance, Secure Coding, Security Analysis, Security Software, Sensitive Compartmented Information (SCI), Software Development, Software Development Lifecycle (SDLC), Software Engineering, Software Testing, Space Operations, Startup, Static Analysis, Strategic Planning, Supply Chain, System Architecture, System Operations, Team Building, Team Lead/Manager, Team Player, Technical Leadership, Technical Strategy, Telemetry, Test Tools, Threat Modeling, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), Willing to Travel
LOCATION
Denver, CO
POSTED
30+ days ago

YOUR MISSIONAs the Application Security Engineering Manager, you will build and lead True Anomalys application security team, focusing on securing the most critical software in our portfolio-flight software that operates on-orbit and command and control (C2) systems that enable mission success. This is a unique opportunity to shape the future of application security for national security space systems, building a team from the ground up while establishing the processes, tools, and culture that will secure our spacecraft and ground operations.In this role, you will have significant autonomy to recruit and develop a world-class application security team over the coming year. You will define application security strategy, integrate security throughout the software development lifecycle, and create the foundation for a security program that meets the unique demands of flight-critical and mission-critical systems operating in contested environments.This is an ideal role for a technical leader who thrives on building teams, wants to leave their mark on cutting-edge space technology, and is energized by the opportunity to solve challenging security problems at the intersection of embedded systems, real-time software, and cloud-based command and control.This position requires a minimum Secret clearance with strong preference for active TS/SCI clearance or the ability to obtain and maintain TS/SCI.RESPONSIBILITIESBuild, lead, and mentor an application security engineering team scaling to 10+ engineers over the next year, fostering a culture of technical excellence, collaboration, and mission focusDefine and execute application security strategy for flight software (FSW), ground command and control systems, mission planning applications, and supporting cloud infrastructureIntegrate security throughout the software development lifecycle (SDLC) for safety-critical embedded systems and distributed C2 applications, balancing security requirements with real-time performance and operational constraintsEstablish and mature secure development practices including threat modeling, secure code review, static/dynamic analysis (SAST/DAST), software composition analysis (SCA), and security testing for both flight and ground softwareLead application security assessments and penetration testing efforts for spacecraft flight software, telemetry and command systems, and ground-based mission applicationsPartner with spacecraft software engineers, ground systems developers,DevSecOps, and mission operations teams to embed securityexpertiseacross the engineering organizationDevelop and enforce security standards, coding guidelines, and architectural patterns appropriate for resource-constrained embedded systems and high-assurance C2 applicationsDrive remediation of security vulnerabilities and work with engineering leadership to prioritize security initiatives alongside feature development and mission timelinesSupport compliance requirements including NIST 800-53, CMMC, FedRAMP, and other federal security frameworks applicable to national security space systemsCommunicate application security posture, risks, and strategic initiatives to technical teams, engineering leadership, and executive stakeholdersQUALIFICATIONS8+ years of hands-on experience in application security, secure software development, or related security engineering roles3+ years of people management experience, including hiring, coaching, performance management, and team developmentMinimum Secret clearancerequired; active TS/SCI clearance strongly preferredProven experience building or significantly scaling application security programs and teamsDeepexpertisein secure software development practices across multiple programming languages (C, C++, Rust, Python, Go, or similar)Strong understanding of embedded systems security, real-time operating systems (RTOS), and resource-constrained environmentsExperience with application security testing tools and methodologies including SAST, DAST, SCA, fuzzing, and penetration testingStrong knowledge of common vulnerability classes (OWASP Top 10, CWE Top 25) and secure coding practicesUnderstanding of software supply chain security, dependency management, and build pipeline securityFamiliarity with cloud application security in AWS, GCP, or Azure environmentsExcellent leadership, communication, and stakeholder management skillsThis position requires a minimum Secret clearancePREFERRED SKILLS AND EXPERIENCEActive TS/SCI security clearanceExperience securing flight software, spacecraft systems, autonomous vehicles, or other safety-critical embedded platformsBackground in aerospace, defense, or national security software developmentFamiliarity with space system architectures including satellite operations, ground segments, and telemetry/command protocolsExperience with CMMC, FedRAMP, NIST 800-53, or RMF processes for DoD/IC systemsExperience with containerization security (Docker, Kubernetes) and Infrastructure-as-Code securityUnderstanding of cryptographic implementations and secure communications protocolsRelevant certifications such as CISSP, CSSLP, GWAPT, OSCP, or similarExperienceparticipatingin or leading red team/purple team exercisesPrior experience in fast-paced startup or high-growth environmentsWORK ENVIRONMENTFast-paced, mission-critical environment supporting national security space operations where security decisions directlyimpactspacecraft and mission successRequires building collaborative relationships across distributed engineering teams including flight software, ground systems, and mission operationsHigh degree of autonomy and ownership as the founding application security leader with direct impact on security strategyDirect access to engineering and executive leadership with opportunity to shape both technical and organizational directionMay require occasional travel to government sites, integration facilities, or partner locationsMust be comfortable balancing team leadership responsibilities with hands-on technical contributions during team growth phaseCOMPENSATIONColorado Base Salary: $175,000-$240,000California Base Salary: $180,000-$255,000Equity + Benefits including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental LeaveYour actual level and base salary will bedetermined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, location, and experience.ADDITIONAL REQUIREMENTSWork Location-while we observe a hybrid work environment, you will need to be onsite as the business needs require. On an average week, you can expect to spend at least 3 days per week in office.Work environment-the work environment; temperature, noise level, inside or outside, or other factors that will affect the persons working conditions while performing the job.Physical demands-the physical demands of the job, including bending, sitting, lifting and driving.This position will be open until it is successfully filled. To submit your application, please follow the directions below. #LI-Hybrid

About the Company

T

True Anomaly Inc