SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Apex manufactures satellite buses at scale for the commercial space industry, enabling earth observation, communications, and other critical missions. The company combines software, vertical integration, and hardware design to serve the rapidly growing market of payload companies launching to orbit.
We are seeking a Cloud Security Engineer to design, implement, maintain, and optimize secure cloud environments supporting U.S. government, DoD, and intelligence community missions. This role is critical to protecting classified and sensitive data across AWS GovCloud, Azure, and hybrid/multi-cloud infrastructures while ensuring compliance with federal standards including NIST 800-53, FedRAMP, RMF, and DoD Impact Levels (IL-4/IL-5).
Key responsibilities include:
- Design and implement secure cloud architectures across AWS GovCloud, Azure, and Google Cloud, applying least privilege, encryption, network segmentation, and data protection best practices
- Implement and maintain cloud security frameworks ensuring compliance with NIST 800-53 Rev. 5, FedRAMP, DoD IL-2/4/5, RMF, and SCCA requirements
- Configure and manage IAM, RBAC, JIT access, Key Vaults, and Zero Trust Architecture principles
- Engineer, deploy, and optimize cloud-native security tools including Microsoft Defender for Cloud, Azure Sentinel, AWS GovCloud security services, CSPM/CWPP solutions, and SIEM platforms
- Conduct vulnerability assessments, penetration testing, security configuration reviews against STIGs and CIS benchmarks, and continuous monitoring
- Develop and maintain System Security Plans, Security Assessment Reports, Plans of Action & Milestones, and compliance reporting
- Identify, analyze, and respond to security incidents and threat intelligence; perform root-cause analysis
- Collaborate with DevSecOps, infrastructure, and development teams to integrate security into CI/CD pipelines and support cloud migrations
- Assess cloud architectures, propose security improvements, and serve as a subject-matter expert
- Develop, enforce, and maintain cloud security policies, standards, and automated guardrails supporting IaC practices
- Provide guidance and training to engineering teams on secure cloud design patterns
Required qualifications: Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or related field (or 5+ years equivalent experience); 5–9+ years cloud security engineering with hands-on AWS GovCloud, Azure, or multi-cloud experience; deep knowledge of cloud platforms, IAM/RBAC, encryption, network security, and cloud-native services; familiarity with SIEM, vulnerability scanners, threat intelligence, and automation tools; experience with compliance frameworks and tools like Azure Sentinel, Nessus, Burp Suite, Microsoft Defender; understanding of network security, encryption, logging/monitoring, and container/Kubernetes security; infrastructure-as-code and scripting experience (Python, PowerShell). Preferred certifications: CISSP, AWS Certified Security-Specialty, AWS Certified Solutions Architect, Microsoft Certified Security. Must be a U.S. citizen and able to work on-site 5 days per week in Playa Vista, CA.