SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Apex manufactures satellite buses at scale for commercial space missions, combining software, vertical integration, and hardware design. The company serves customers across earth observation, communications, and other space-based applications.
You will design, implement, maintain, and optimize secure cloud environments supporting U.S. government, DoD, and intelligence community missions. This role is critical to protecting classified and sensitive data in AWS, Azure, and hybrid/multi-cloud infrastructures while ensuring compliance with federal standards including NIST 800-53, FedRAMP, RMF, and DoD Impact Levels (IL-4/IL-5).
Key responsibilities include:
- Design and implement secure cloud architectures across AWS GovCloud, Azure, and Google Cloud, applying least privilege, encryption, network segmentation, and data protection best practices
- Implement and maintain cloud security frameworks ensuring compliance with NIST 800-53 Rev. 5, FedRAMP, DoD IL-2/4/5, RMF, and SCCA requirements
- Configure and manage IAM, RBAC, JIT access, Key Vaults, and Zero Trust Architecture principles
- Engineer, deploy, and optimize cloud-native security tools including Microsoft Defender for Cloud, Azure Sentinel, AWS GovCloud security services, CSPM/CWPP solutions, and SIEM platforms
- Conduct vulnerability assessments, penetration testing, security configuration reviews against STIGs and CIS benchmarks, and continuous monitoring
- Develop and maintain System Security Plans, Security Assessment Reports, Plans of Action & Milestones, and compliance reporting
- Identify, analyze, and respond to security incidents and threat intelligence; perform root-cause analysis
- Perform periodic security reviews and audits to ensure sustained compliance
- Collaborate with DevSecOps, infrastructure, and development teams to integrate security into CI/CD pipelines and support secure migrations
- Assess cloud architectures and propose security improvements as a subject-matter expert
- Develop, enforce, and maintain cloud security policies, standards, and automated guardrails
- Monitor environments for incidents, investigate alerts, and coordinate incident response
- Provide guidance and training to engineering teams on secure cloud design patterns
- Required to be on-site 5 days per week at Playa Vista office
REQUIREMENTS:
- Must be a U.S. citizen
- Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field (or 5+ years equivalent professional experience in cloud security engineering)
- 5–9+ years in cloud security engineering with hands-on work in AWS GovCloud, Azure, Google GCP, or multi-cloud environments
- Strong analytical, problem-solving, communication, and collaboration skills; ability to work in fast-paced, mission-critical environments
- Deep knowledge of cloud platforms (AWS GovCloud, Azure Government), IAM/RBAC, encryption, network security, and cloud-native security services
- Familiarity with SIEM, vulnerability scanners, threat intelligence, and automation tools (Terraform, Python scripting)
- Experience with compliance frameworks (NIST, FedRAMP, RMF) and tools like Azure Sentinel, NESSUS, BURP SUITE, Microsoft Defender, or AWS equivalents
- Deep understanding of network security, encryption, logging/monitoring, and container/Kubernetes security
- Experience with infrastructure-as-code, scripting (Python, PowerShell), and security automation tools
- Preferred certifications: CISSP, AWS Certified Security-Specialty, AWS Certified Solutions Architect (Associate or Professional), Microsoft Certified: Security, Compliance & Identity, Security+, CEH, or CSSP related (CySA+, GCIH)