Back to all jobs
T
Engineering Manager, Application Security
True Anomaly
Long Beach3w ago
About the role
<div class="content-intro"><p class="ms-outlook-mobile-reference-message">Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it.</p>
<p class="ms-outlook-mobile-reference-message"><u>OUR MISSION</u></p>
<p class="ms-outlook-mobile-reference-message">True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.</p>
<p class="ms-outlook-mobile-reference-message"><u>OUR VALUES</u></p>
<ul>
<li class="ms-outlook-mobile-reference-message"><strong>Be the offset.</strong><span class="Apple-converted-space"> </span>We create asymmetric advantages with creativity and ingenuity.</li>
<li class="ms-outlook-mobile-reference-message"><strong>What would it take?</strong> We challenge assumptions to deliver ambitious results.</li>
<li class="ms-outlook-mobile-reference-message"><strong>It’s the people.</strong> Our team is our competitive advantage and we are better together.</li>
</ul></div><p><u>YOUR MISSION</u></p>
<p>As the Application Security Engineering Manager, you will build and lead True Anomaly's application security team, focusing on securing the most critical software in our portfolio—flight software that operates on-orbit and command and control (C2) systems that enable mission success. This is a unique opportunity to shape the future of application security for national security space systems, building a team from the ground up while establishing the processes, tools, and culture that will secure our spacecraft and ground operations. </p>
<p>In this role, you will have significant autonomy to recruit and develop a world-class application security team over the coming year. You will define application security strategy, integrate security throughout the software development lifecycle, and create the foundation for a security program that meets the unique demands of flight-critical and mission-critical systems operating in contested environments. </p>
<p>This is an ideal role for a technical leader who thrives on building teams, wants to leave their mark on cutting-edge space technology, and is energized by the opportunity to solve challenging security problems at the intersection of embedded systems, real-time software, and cloud-based command and control. </p>
<p>This position <span style="text-decoration: underline;"><strong>requires a minimum Secret clearance</strong></span> with strong preference for active TS/SCI clearance or the ability to obtain and maintain TS/SCI. </p>
<p><strong>RESPONSIBILITIES</strong></p>
<ul>
<li><span data-contrast="auto">Build, lead, and mentor an application security engineering team scaling to 10+ engineers over the next year, fostering a culture of technical excellence, collaboration, and mission focus</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Define and execute application security strategy for flight software (FSW), ground command and control systems, mission planning applications, and supporting cloud infrastructure</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Integrate security throughout the software development lifecycle (SDLC) for safety-critical embedded systems and distributed C2 applications, balancing security requirements with real-time performance and operational constraints</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Establish and mature secure development practices including threat modeling, secure code review, static/dynamic analysis (SAST/DAST), software composition analysis (SCA), and security testing for both flight and ground software</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Lead application security assessments and penetration testing efforts for spacecraft flight software, telemetry and command systems, and ground-based mission applications</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Partner with spacecraft software engineers, ground systems developers, DevSecOps, and mission operations teams to embed security expertise across the engineering organization</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Develop and enforce security standards, coding guidelines, and architectural patterns appropriate for resource-constrained embedded systems and high-assurance C2 applications</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Drive remediation of security vulnerabilities and work with engineering leadership to prioritize security initiatives alongside feature development and mission timelines</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Support compliance requirements including NIST 800-53, CMMC, FedRAMP, and other federal security frameworks applicable to national security space systems</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Communicate application security posture, risks, and strategic initiatives to technical teams, engineering leadership, and executive stakeholders</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong>QUALIFICATIONS</strong></p>
<ul>
<li><span data-contrast="auto">8+ years of hands-on experience in application security, secure software development, or related security engineering roles</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">3+ years of people management experience, including hiring, coaching, performance management, and team development</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Minimum Secret clearance required; active TS/SCI clearance strongly preferred</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Proven experience building or significantly scaling application security programs and teams</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Deep expertise in secure software development practices across multiple programming languages (C, C++, Rust, Python, Go, or similar)</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Strong understanding of embedded systems security, real-time operating systems (RTOS), and resource-constrained environments</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience with application security testing tools and methodologies including SAST, DAST, SCA, fuzzing, and penetration testing</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Strong knowledge of common vulnerability classes (OWASP Top 10, CWE Top 25) and secure coding practices</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Understanding of software supply chain security, dependency management, and build pipeline security</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Familiarity with cloud application security in AWS, GCP, or Azure environments</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Excellent leadership, communication, and stakeholder management skills</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}">This position <span style="text-decoration: underline;"><strong>requires a minimum Secret clearance</strong></span> </span></li>
</ul>
<p><strong>PREFERRED SKILLS AND EXPERIENCE</strong></p>
<ul>
<li><span data-contrast="auto">Active TS/SCI security clearance</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience securing flight software, spacecraft systems, autonomous vehicles, or other safety-critical embedded platforms</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Background in aerospace, defense, or national security software development</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Familiarity with space system architectures including satellite operations, ground segments, and telemetry/command protocols</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience with CMMC, FedRAMP, NIST 800-53, or RMF processes for DoD/IC systems</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience with containerization security (Docker, Kubernetes) and Infrastructure-as-Code security</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Understanding of cryptographic implementations and secure communications protocols</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Relevant certifications such as CISSP, CSSLP, GWAPT, OSCP, or similar</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience participating in or leading red team/purple team exercises</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Prior experience in fast-paced startup or high-growth environments</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong><span data-contrast="none"><span data-ccp-parastyle="heading 2">WORK ENVIRONMENT</span></span><span data-ccp-props="{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}"> </span></strong></p>
<ul>
<li><span data-contrast="auto">Fast-paced, mission-critical environment supporting national security space operations where security decisions directly impact spacecraft and mission success</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Requires building collaborative relationships across distributed engineering teams including flight software, ground systems, and mission operations</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">High degree of autonomy and ownership as the founding application security leader with direct impact on security strategy</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Direct access to engineering and executive leadership with opportunity to shape both technical and organizational direction</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">May require occasional travel to government sites, integration facilities, or partner locations</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Must be comfortable balancing team leadership responsibilities with hands-on technical contributions during team growth phase</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong>COMPENSATION</strong></p>
<ul>
<li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><strong><span data-contrast="none">Colorado Base Salary: </span></strong><span data-contrast="none">$175,000-$240,000</span></li>
<li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><strong><span data-contrast="none">California Base Salary: </span></strong><span data-contrast="none">Long Beach -</span><strong> </strong><span data-contrast="none">$180,000-$255,000, SF Bay Area - $200,000 to $275,000</span></li>
<li data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><strong><span data-contrast="none">Equity + Benefits</span></strong><span data-contrast="none"> including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental Leave</span><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></li>
</ul>
<p><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"><em><span class="TextRun SCXW83253800 BCX0" lang="EN-US" data-contrast="none"><span class="NormalTextRun SCXW83253800 BCX0">Your actual level and base salary will be </span><span class="NormalTextRun SCXW83253800 BCX0">determined</span><span class="NormalTextRun SCXW83253800 BCX0"> on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, location, and experience.</span></span></em><span class="EOP SCXW83253800 BCX0" data-ccp-props="{"335559739":0}"> </span></span></p>
<p><strong>ADDITIONAL REQUIREMENTS</strong></p>
<ul>
<li><strong>Work Location</strong>—this role is fully onsite at either our Centennial, CO, SF Bay Area, or Long Beach, CA locations with ~10-15% travel to other sites as needed.</li>
<li><strong>Work environment</strong>—the work environment; temperature, noise level, inside or outside, or other factors that will affect the person's working conditions while performing the job.</li>
<li><strong>Physical demands</strong>—the physical demands of the job, including bending, sitting, lifting and driving.</li>
</ul>
<p><span class="TextRun SCXW267002851 BCX0" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW267002851 BCX0">This position will be open until it is successfully filled. To </span><span class="NormalTextRun SCXW267002851 BCX0">submit</span><span class="NormalTextRun SCXW267002851 BCX0"> your application, please follow the directions below. #LI-Onsite</span></span></p><div class="content-conclusion"><p>To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.</p>
<p>True Anomaly is committed to equal employment opportunity on any basis protected by applicable state and federal laws. If you have a disability or additional need that requires accommodation, please do not hesitate to let us.</p>
<p> </p></div>
Perks & benefits
- 401k
- Paid Time Off
- Equity Compensation
741,000+ hidden jobs like this
True Anomaly and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.
Everything Pro unlocks:
- Unlimited applications — free stops at 5
- Track every application in one place
- Apply straight to the source, one click
- Save & organize roles you love
- Roles pulled from company boards before the big sites