SpaceX Logo

SpaceX

Cyber Assurance Lead

Reposted 13 Days Ago
Be an Early Applicant
Hawthorne, CA
125K-175K
Senior level
Hawthorne, CA
125K-175K
Senior level
As a Cyber Assurance Lead at SpaceX, you'll ensure supply chain cybersecurity by conducting assessments, managing risks, and enhancing data protection protocols.
The summary above was generated by AI

SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.

CYBER ASSURANCE LEAD

Are you dedicated to safeguarding the integrity of our company's supply chain against cyber threats? Join our team as a Cyber Assurance Lead, specializing in Supply Chain Cybersecurity. In this role, you'll be instrumental in ensuring the security of our organization's suppliers. Your expertise will be pivotal in identifying vulnerabilities, leading efforts to mitigate associated risks, and reinforcing our supply chain against potential cyber-attacks. If you're driven by securing company data, empowering our mission, and excelling in a collaborative environment, we'd love to hear from you.

Your role will entail execution of our supplier cyber risk management program. As a valued Information Assurance team member, you'll lead third-party/supplier security control and risk assessments, while also supporting our continuous monitoring program. Collaborating closely with our Supply Chain and partner teams, you'll contribute to the development and implementation of our assurance program. The ideal candidate is passionate about forging strong partnerships with Supply Chain teams and suppliers, possesses a keen interest in becoming a cybersecurity expert, demonstrates a solid understanding of our supply chain processes, and is committed to enhancing the protection of our technical data and the security of our suppliers.

RESPONSIBILITIES:

  • Lead, plan, prepare for, schedule, and coordinate security assessments and audits and identify where security controls deviate from acceptable configurations, policy or standards. Drive necessary corrective actions with suppliers or internal partners with urgency and efficiency.
  • Gain a comprehensive understanding of our key suppliers, identify the types of data they maintain, and determine the most effective processes for driving corrective actions.
  • Act as one of the key Assurance points of contacts for supply chain cybersecurity activities to assist suppliers with mitigating risk to SpaceX data.
  • Continuously monitor changes in supplier risk profiles and support cross-functional investigations to address both immediate and root causes, aiming to reduce risk and enhance the security of company data.
  • Support supplier incident investigations, including identifying data loss, and work with Reliability Engineers or Buyers to assess potential impact. Coordinate root cause analysis and ensure a clear implementation plan for corrective actions is established.
  • Communicate assessment results, track corrective action plans to ensure progress, and escalate issues when progress stalls or is blocked.
  • Develop and promote cybersecurity and information security awareness and training for internal teams and suppliers.
  • Develop, maintain, monitor, and improve appropriate internal controls and policies to protect SpaceX systems and data.
  • Contribute and enhance to continuous improvement of information assurance processes and systems.
  • Stay informed on regulatory changes, compliance guidelines, assessment methods, and emerging tactics; assist with updates to controls, policies, and procedures accordingly.

BASIC QUALIFICATIONS:

  • High school diploma or equivalency certificate.
  • 5+ years of experience (can be concurrent) in utilizing security relevant tools, systems, and applications in support of cyber/ information security or third-party/supplier risk management, vulnerability management, or continuous monitoring, e.g.: NESSUS, Tenable.io, Qualys, DISA STIGs, SCAP, or other vulnerability or vendor risk rating type tools.
  • 5+ years of experience (can be concurrent) with control testing, security standards/policy implementation, security audits, or security risk management.

PREFERRED SKILLS AND EXPERIENCE:

  • Proven experience working with internal or external organizations to prepare for, conduct, and manage audits efficiently and effectively.
  • Experience working within stakeholders within the supply chain or manufacturing space.
  • Ability to manage and prioritize multiple concurrent requests while setting realistic expectations with stakeholders.
  • Strong understanding of security program and control frameworks, assessment methodologies, and practices e.g. NIST RMF, NIST CSF, ISO-27001, 800-53(a), 800-171(a), CMMC, CNSSI 1253, 800-137, PCI-DSS, GDPR, etc.
  • Strong understanding of data controls and compliance regimens including CUI, ITAR/ EAR, PCI, PII, etc.
  • Technical project and/or operations management skills.
  • Experience balancing compliance requirements and data collection with the operational priorities of others, maintaining progress and strong relationships to ensure objectives are met.
  • Using lessons learned to improve processes.
  • CISSP, CIPT, CISM, CISA, GNSA or equivalent certification.

ADDITIONAL REQUIREMENTS:

  • This role requires you to be onsite. Hybrid or remote work will not be considered.
  • Willingness to work extended hours and weekends as needed.

COMPENSATION AND BENEFITS:                             

Pay Range:         

Cyber Assurance Manager: $125,000.00 - $175,000.00/per year  

Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.

Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Exempt employees are eligible for 5 days of sick leave per year.         

ITAR REQUIREMENTS:

  • To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.  

SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Applicants wishing to view a copy of SpaceX’s Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out to [email protected]

Top Skills

Disa Stigs
Gdpr
Iso-27001
Nessus
Nist Csf
Nist Rmf
Pci-Dss
Qualys
Scap
Tenable.Io

SpaceX Hawthorne, California, USA Office

1 Rocket Road, Hawthorne, CA, United States, 90250

Similar Jobs

3 Hours Ago
Hybrid
2 Locations
131K-157K Annually
Mid level
131K-157K Annually
Mid level
Artificial Intelligence • Cloud • Software • Cybersecurity
As an Information Security Analyst II, you will improve SOX processes, support audits, and ensure compliance across multiple frameworks by working collaboratively with engineering and product teams.
Top Skills: HipaaIrapIsmapIso 27001PciSocSoxTisax
4 Hours Ago
Remote
Hybrid
San Diego, CA, USA
156K-273K Annually
Senior level
156K-273K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead the Site Reliability Engineering efforts for DevSecOps, ensuring operational excellence, security, reliability, performance, and cost optimization, while mentoring a high-performing team and collaborating with stakeholders.
Top Skills: AnsibleAWSAzureBashDockerElkGCPGrafanaKubernetesPrometheusPythonServicenowTerraform
6 Hours Ago
Hybrid
Carlsbad, CA, USA
20-24
Junior
20-24
Junior
Hardware • Internet of Things • Retail • Robotics • Software
Provide troubleshooting and installation assistance, warranty support, and customer service for web-connected devices, documenting interactions and processing orders as needed.
Top Skills: Cell Phone ApplicationsComputersRoutersWifi

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account