SlipstreamJobsFresh Startup & VC-Backed Jobs

Enterprise Security Engineer

Apex - Los Angeles, CA, USA - In-office - posted 2026-08-25

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Apex manufactures satellite buses at scale—the platforms that hold customer payloads on commercial launch vehicles. As the aerospace industry experiences a surge in payload companies and declining launch costs, demand for commercial spacecraft platforms has exploded. Apex combines software, vertical integration, and hardware-focused manufacturing to enable the future of earth observation, communications, and beyond. The Enterprise Security Engineer will design, implement, and maintain secure enterprise architectures across Apex's systems, applications, networks, and cloud environments. This role provides technical leadership in cybersecurity strategy, risk management, security engineering, and compliance—protecting Apex's information assets against evolving threats while supporting the company's mission to provide access to space. Key responsibilities include: **Security Architecture & Design:** Design enterprise-wide cybersecurity architecture aligned with business and technology strategies. Develop secure architectures for cloud, on-premises, hybrid, and multi-cloud environments. Create security standards, reference architectures, and technical design documents. Perform threat modeling and security architecture reviews for new systems, applications, and infrastructure. Evaluate emerging technologies and recommend security controls. **Security Engineering & Implementation:** Design, implement, and optimize security controls across networks, systems, endpoints, applications, and cloud platforms. Lead deployment of SIEM, IDS/IPS, DLP, EDR/XDR, IAM, and vulnerability management platforms. Develop and automate security processes using scripting and infrastructure-as-code methodologies. Collaborate with infrastructure, application development, and cloud engineering teams to embed security into solutions. **Risk Management & Compliance:** Conduct security risk assessments, vulnerability assessments, and security audits. Identify security gaps and develop remediation strategies. Ensure compliance with NIST 800-53, NIST 800-171/172, ISO 27001, CIS Controls, and SOC 2. Support governance, risk, and compliance initiatives. **Incident Response & Security Operations:** Provide architectural guidance during cybersecurity incidents and investigations. Support incident response, threat hunting, and forensic analysis. Review security events and identify opportunities to strengthen defensive capabilities. Assist in developing cyber resilience and business continuity strategies. **Leadership & Collaboration:** Serve as a cybersecurity subject matter expert for technical and business stakeholders. Mentor junior cybersecurity engineers, analysts, and administrators. Present security recommendations and strategic initiatives to leadership. Partner with IT, engineering, operations, legal, and compliance teams. Required: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related technical field. 7–10+ years of cybersecurity experience. 3–5+ years designing security architectures or leading cybersecurity engineering initiatives. Experience implementing enterprise security controls and frameworks. Experience securing AWS, Azure, or Google Cloud Platform. Preferred: Master's degree in Cybersecurity or related discipline. Professional certifications such as CISSP, CISM, CCSP, SABSA, AWS Certified Security – Specialty, Microsoft Azure Security Engineer Associate, or GIAC certifications. Required technical skills: Enterprise Security Architecture, Zero Trust Architecture, Secure-by-Design Principles, Threat Modeling, Security Control Design, Firewalls, IDS/IPS, VPN Technologies, Network Segmentation, DNS Security, AWS/Azure/GCP Security Services, Container and Kubernetes Security, Infrastructure as Code, Active Directory, Entra ID, SSO, MFA, OAuth, SAML, PAM, SIEM platforms, EDR/XDR, Vulnerability Management, and Security Monitoring.

Similar roles