Senior IT Security Engineer - Mission System Cybersecurity & Compliance | Lunar Outpost
Are you passionate about shaping the future of humanity's presence in space? Join Lunar Outpost, an industry leader in space robotics and planetary vehicles, dedicated to creating a permanent presence in space while driving positive impacts on Earth. Work in a dynamic startup environment on the Pegasus LTV, which will carry NASA astronauts farther than they've ever been before on the lunar surface.
About the role
The Mission System Cybersecurity Engineer will play a key role in developing and deploying the Lunar Outpost Mission System. They will ensure the security, resilience, and compliance of mission and ground systems throughout their lifecycle, integrating cybersecurity principles into system design, development, and operations to protect mission data, assets, and critical infrastructure. This role leads compliance efforts against the NIST 800-53 framework and assists in developing strategies for maintaining requirements and contract obligations, including the production of SSPs and POA&Ms.
Responsibilities
- Stand up and maintain security controls aligned to established frameworks and requirements such as NIST 800-171, FARS/DFARS, NIST 800-53, and ITAR.
- Develop, decompose, and trace cybersecurity requirements into architecture, design, implementation, test, and verification activities of the mission system.
- Design, implement, monitor, and maintain security controls in mission systems, including configuration reviews, continuous monitoring, incident response, and role-based access controls.
- Lead or assist in internal and external security compliance audits; ensure audit readiness and timely remediation of findings.
- Manage security and compliance documentation including SSPs, POA&Ms, Security Control Traceability Matrices (SCTM), and provide evidence of cybersecurity compliance/supporting authorization for operation.
- Lead or contribute to incident response, forensics, security monitoring, and remediation when cybersecurity incidents or vulnerabilities are discovered.
- Support training and awareness programs to foster a culture of security across the organization.
- Evaluate and implement tools for log monitoring (e.g., SIEM), DLP, and secure configurations.
- Plan for and implement resilience, survivability, maintainability, and upgradability of mission systems in the face of evolving cybersecurity threats.
- Partner with other compliance teams and the IT Manager to administrate and track work within a GRC.
Requirements
- Bachelor’s or Master’s Degree in engineering, computer science, cybersecurity, Information Technology, or a related discipline (or relevant experience).
- Bachelor’s Degree: 6+ years of direct experience in cybersecurity, governance, risk management, or compliance roles.
- Master’s Degree: 4+ years of direct experience in cybersecurity, governance, risk management, or compliance roles.
- Experience with security compliance audits and frameworks.
- A deep sense of accountability for your project decisions and actions.
- Experience with system engineering processes (requirements, architecture, design, V&V) applied to cyber-systems.
- Strong technical skills in cloud architecture, operating systems, networks, security controls, vulnerability scanning, and incident response.
- Familiarity with relevant cyber standards/frameworks (e.g., NIST, RMF, ISO) and mission assurance/survivability concepts.
- Ability to work cross-functionally, with strong written and verbal communication, documentation skills, and the ability to influence engineering teams.
- Self-motivated, focused, and driven to meet critical deadlines.
- Excellent organization and time management skills.
- Excellent written and oral communication skills.
Preferred Qualifications
- Familiarity with cloud security and compliance in AWS/AWS GovCloud environments.
- Security certifications (e.g., CISSP, Security+).
- Experience with aerospace/space/mission systems context or defense environment.
- Experience in the design, development, and maintenance of cloud-based architecture supporting critical operations.
- Performed a leadership role or served directly on a team that went through a full security audit.
- U.S. Person status.
Benefits
- Comprehensive health coverage: Medical, dental, and vision benefits, with 70% of premiums covered by the employer.
- Paid time off: Three (3) weeks per year of vacation.
- Retirement plan: Up to 4% employer match on 401(k) contributions.
- Paid holidays: 11 company-recognized holidays.
- Parental leave.
- Educational reimbursement opportunities to support company objectives, continued learning, and career development.
Pay
Compensation level and base salary are competitively structured and thoughtfully determined based on factors such as relevant skills, experience, education, and the scope of the role.