Slingshot Aerospace Logo

Slingshot Aerospace

Senior Application Security Engineer

Reposted 23 Days Ago
Remote or Hybrid
Hiring Remotely in United States
Senior level
Remote or Hybrid
Hiring Remotely in United States
Senior level
As a Security Engineer, you'll design and harden systems in classified environments, deploy secure enclaves, and ensure compliance. You'll handle secure CI/CD processes, threat modeling, and vulnerability management while automating compliance enforcement and supporting incident response.
The summary above was generated by AI

Mission 

At Slingshot Aerospace, we build space simulation and decision intelligence technologies that empower defense, intelligence, and commercial operators. As a Senior Application Security Engineer, you’ll take ownership of securing the software, systems, and infrastructure that power real missions. This is a hands-on role focused on secure coding, container hardening, and pipeline security. You’ll work side-by-side with Software engineers, DevSecOps teams, and cyber SMEs to embed security into everything we build and deliver across cloud, hybrid, and classified environments. 

What You’ll Do 

  • Work with the Cyber SME, Software Engineers, and DevSecOps teams to embed security controls throughout build, deployment, and delivery lifecycles 
  • Lead application security engineering across Linux-based, containerized, and hybrid environments 
  • Integrate and manage AppSec tooling including SAST, DAST, SCA, IaC scanning, and SBOM validation 
  • Perform secure code reviews and threat modeling for cloud and classified systems 
  • Build and maintain secure baselines for containers, Kubernetes clusters, and OS images 
  • Implement hardening, identity, and access controls (RBAC, MFA, PAM) across cloud and on-prem platforms 
  • Strengthen software supply chain security including artifact signing and SBOM validation 
  • Collaborate across teams to automate security controls and improve visibility across builds and repositories 
  • Lead investigations, post-mortems, and remediation efforts for vulnerabilities or incidents 
  • Contribute to security architecture reviews and new program deployments 

Required Qualifications 

  • 5+ years of professional experience in application security, DevSecOps, or related engineering roles (7+ years preferred) 
  • Active Top Secret clearance (TS/SCI preferred) or ability to obtain 
  • U.S. Citizenship (no duals) 
  • Hands-on experience with: 
  •   • Secure coding, code review, and AppSec pipeline integration 
  •   • Linux hardening, Kubernetes, Docker, and infrastructure as code (Terraform, Ansible, etc.) 
  •   • AppSec tooling such as SAST, DAST, SCA, IaC scanners, and secrets detection 
  • Proficiency in Python, Go, Bash, or YAML 
  • Familiarity with software supply chain security and modern DevSecOps practices 

Preferred Qualifications 

  • CISSP, OSCP, or equivalent technical certification 
  • Experience in air-gapped or enclave-based environments 
  • Familiarity with hybrid identity platforms such as Okta, Keycloak, FreeIPA, or Entra ID 
  • Experience reviewing IaC templates, Dockerfiles, and custom build pipelines 
  • Experience securing AI or ML pipelines or GPU-based compute clusters 
  • Background in automation, compliance enablement, or security operations in secure environments 

Why This Role 

This is your opportunity to build and defend systems that matter by securing the code, pipelines, and infrastructure supporting national security missions. You’ll shape Slingshot’s AppSec engineering practice, strengthen our software supply chain, and drive modern, developer-focused security at scale. Your work won’t just meet standards, it will launch missions. 

Location: US based Remote with onsite travel to secure customer environments

Clearance Required: Active TS/SCI (polygraph if applicable) or ability to obtain

Employment Type: Full Time 

Reports To: Senior Director of Information Security and IT 

Location: Remote

Travel: 15% - 35%

Salary: $116,000 - $193,000



US-based Candidates: we are currently only able to hire residents of the following U.S. states: AZ, CA, CO, DC, FL, GA, HI, IL, IN, KS, MD, MA, MI, MN, MO, MT, NV, NJ, NM, NY, NC, OR, RI, TN, TX, UT, VT, VA, WA, WV, and WI. We are unable to consider candidates residing in other U.S. states at this time.

Internationally-based Candidates: we are currently only able to hire residents of the following locations: United Kingdom. We are unable to consider candidates residing in other countries at this time.

Equity, Diversity & Inclusion are key to our success. We are an Equal Opportunity Employer and our employees are people with different strengths, experiences, and backgrounds, who share a passion for creating a safer, more connected world. Diversity not only includes race and gender identity, but also national origin, citizenship, sex, color, veteran status, disability, genetic information, or any other protected characteristic that is part of one’s identity. All of our employees’ points of view are key to our success, and we embrace individuality.

Top Skills

Ansible
Bash
Ci/Cd
Cis Benchmarks
Devsecops
Disa Stigs
Go
Hybrid Iam Solutions
Iac
Linux
Python
Terraform
Yaml

Similar Jobs

Yesterday
Easy Apply
Remote
3 Locations
Easy Apply
145K-200K Annually
Senior level
145K-200K Annually
Senior level
Cloud • Security • Software • Cybersecurity • Automation
The role involves conducting application security reviews, threat modeling, code reviews, and vulnerability research, while also enhancing secure development practices and workflows.
Top Skills: BrakemanBurpsuiteGitGoRuby On Rails
22 Days Ago
Remote
United States
Senior level
Senior level
Healthtech • Other • Social Impact • Software • Telehealth
The Sr. Application Security Engineer enhances code security, manages vulnerabilities, and collaborates with teams to ensure patient data protection.
Top Skills: DastJavaScriptNode.jsOwasp Top 10ReactSastTypescript
Yesterday
In-Office or Remote
New York, NY, USA
150K-180K Annually
Senior level
150K-180K Annually
Senior level
Food
Lead application security efforts by performing assessments, code reviews, penetration testing, and promoting secure coding practices within the engineering teams.
Top Skills: AWSAzureBurp SuiteDockerFortifyGCPJavaKotlinKubernetesOauth2OidcSAMLTypescriptVeracode

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account