True Anomaly Logo

True Anomaly

Staff Embedded Systems Security Engineer

Posted 30 Minutes Ago
Be an Early Applicant
In-Office
Long Beach, CA, USA
200K-305K Annually
Expert/Leader
In-Office
Long Beach, CA, USA
200K-305K Annually
Expert/Leader
Owns security architecture and defensive controls for spacecraft, flight software, firmware, FPGA designs, RF systems, and hardware platforms. Designs embedded PKI, secure boot, cryptographic systems, key management, and supply-chain protections. Leads security assessments, penetration testing, tooling, and automated validation frameworks while driving secure development practices across engineering teams. Requires deep hardware, firmware, cryptography, and software expertise in high-assurance space systems.
The summary above was generated by AI

Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it.

OUR MISSION

True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.

OUR VALUES

  • Be the offset. We create asymmetric advantages with creativity and ingenuity.
  • What would it take? We challenge assumptions to deliver ambitious results.
  • It’s the people. Our team is our competitive advantage and we are better together.

YOUR MISSION

Embedded systems security for space operations poses unique challenges: remote systems that must operate in adversarial RF environments, resource- constrained hardware, and trade-offs between security and performance in real-time systems. As our Principal Embedded Systems Security Engineer, you'll own the security of our spacecraft, radio systems, and hardware platforms. You'll build security platforms and foundational services that enable our hardware and software teams to develop secure embedded systems by default. This role demands deep security expertise and the rigor that comes from engineering systems that cannot fail. As part of the Platform Security team, you'll work hands-on across C++ flight software, embedded C firmware within microcontrollers and radiation-hardened SoCs, FPGA designs, and real-time operating systems. Your work will impact the spacecraft's critical subsystems, from flight computer through command and control, RF, and payload. If you've secured systems where failure means loss of life or national security impact, you'll understand the constraints and rigor required here. This is a hands-on technical leadership role combining deep hardware security expertise with strong software engineering skills. You will write production code and build the tooling, test frameworks, and security validation platforms that harden our embedded systems at scale. You'll tackle novel security challenges that don't have an established playbook as we aim to set the standard for space-based security. In our AI-native environment, you'll use AI to accelerate your work and help solve the hard problems of embedded systems security.

This position requires the ability to obtain and maintain a security clearance.

Responsibilities

  • Own the security architecture, threat modeling, and defensive controls for our spacecraft platform. This spans the flight computer, subsystem firmware, FPGA gateware, cryptographic implementations, and secure boot.
  • Architect and build the security platforms, tooling, and foundational services that make secure-by-default the standard across flight software, firmware, and hardware configuration.
  • Design and implement PKI for resource-constrained spacecraft, covering device authentication, firmware signing and verification, secure boot, lifecycle management, and secure key storage.
  • Architect cryptographic and security implementations to meet stringent government standards, including FIPS 140-3, CNSA 2.0, and CCSDS
  • Space Data Link Security (SDLS), and drive the migration to post-quantum cryptography across the platform.
  • Secure the flight software build and deployment pipeline by hardening the tooling itself and protecting the supply-chain integrity of build outputs, dependencies, and third-party components.
  • Secure our test environments against supply-chain attacks while keeping them representative of the flight security posture, so we can exercise on the ground the controls used to protect the spacecraft in orbit.
  • Lead security assessments and penetration testing against our spacecraft, RF systems, and test environments.
  • Drive the adoption of secure design practices across the organization, partnering with flight software, hardware, and test engineering teams to embed security into the full development and validation lifecycle.
  • Tackle novel security challenges in space-based systems where established solutions don't exist, and stay ahead of emerging embedded and RF threats to proactively harden our systems.
  • Use AI to move faster — accelerating development, analyzing security data, and closing technical knowledge gaps.

Required Qualifications

  • Active security clearance, or the ability to obtain and maintain one.
  • Deep, hands-on expertise in embedded, hardware, and firmware security — including hardware attack surfaces, side-channel and fault-injection attacks, firmware security, secure boot, and hardware security modules (HSMs).
  • Strong software development skills in C and C++, plus solid engineering fundamentals (data structures, algorithms, API design, and debugging
  • production systems) and comfort working across multiple languages and at low levels (assembly, firmware).
  • Proven track record of building production security platforms, tooling, and foundational services used by hardware and embedded engineering teams.
  • Deep, expert-level PKI knowledge with hands-on experience designing and operating PKI for embedded and resource-constrained systems —certificate-based device authentication, firmware signing certificate chains, secure boot PKI hierarchies, certificate provisioning and rotation for constrained devices (where rotation isn't trivial, e.g., spacecraft in orbit), secure key storage, and HSM integration.
  • Expert-level applied cryptography: implementing and reasoning about cryptographic systems to stringent government standards (FIPS 140-3, and familiarity with CNSA 2.0 and CCSDS SDLS), and experience with the practical challenges of post-quantum cryptography migration. Strong familiarity with common NIST publications (e.g., the 800-series).
  • Experience applying security testing methodologies for hardware and firmware, and building the tooling and frameworks to automate that testing at scale across engineering teams.
  • Demonstrated principal-level impact: setting security strategy and technical direction across an organization, independently identifying and prioritizing the risks that matter most, driving hardening initiatives end to end, raising the security bar and mentoring other engineers, thriving on ambiguous and novel problems, and influencing and aligning teams without direct authority.

Preferred Qualifications

  • Hands-on experience taking cryptographic modules through formal FIPS validation (CMVP), beyond implementing to the standard.
  • Experience with real-time or safety-critical embedded systems — timing constraints, deterministic execution, interrupt handling, and the security implications of hard real-time requirements.
  • Background in a regulated or high-assurance domain: aerospace, defense, avionics, medical devices, or industrial control systems.
  • Hardware reverse engineering, firmware analysis, and cryptographic implementation experience.
  • FPGA/VHDL security and RF/radio security.
  • HIL/SIL test infrastructure and embedded Linux environments.
  • Supply-chain security experience and a track record of hardening build pipelines for embedded/firmware systems.
  • Cross-domain thinking that connects hardware security requirements to cloud infrastructure, network security, and system architecture.
  • Evidence of practical, hands-on impact — published CVEs, security research or publications, conference talks, open-source contributions, or relevant projects

  • Base Salary:  $200,000-$305,000
  • Equity + Benefits including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental Leave 

Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, location, and experience. 

ADDITIONAL REQUIREMENTS

  • Work Location—Successful candidates will be located near Denver or Colorado Springs. While we observe a hybrid work environment, some work must be done on site.
  • Work environment—the work environment; temperature, noise level, inside or outside, or other factors that will affect the person's working conditions while performing the job.
  • Physical demands—the physical demands of the job, including bending, sitting, lifting and driving.

This position will be open until it is successfully filled. To submit your application, please follow the directions below. #LI-Onsite

To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

True Anomaly is committed to equal employment opportunity on any basis protected by applicable state and federal laws. If you have a disability or additional need that requires accommodation, please do not hesitate to let us.


True Anomaly Long Beach, California, USA Office

True Anomaly Engineering and Manufacturing Office

Long Beach delivers the best of coastal living with miles of coastline, beach paths, and endless water recreation options. The atmosphere delivers a vibrant mix of beach and city life, with a diverse array of neighborhood cultures, cuisines, art, and music, plus easy access to three major airports.

Similar Jobs at True Anomaly

29 Minutes Ago
In-Office
Long Beach, CA, USA
75K-80K Annually
Junior
75K-80K Annually
Junior
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Develop and maintain distributed spacecraft ground control software in Elixir, including satellite command and control, mission planning, mission data processing, and data analysis systems. Participate in architecture, design, and code reviews while collaborating across engineering disciplines. The role involves solving greenfield problems involving resilient, fault-tolerant, concurrent, and real-time distributed systems.
Top Skills: BroadwayDistributed SystemsElixirErlangGenserverOtpPhoenix.PubsubPostgresReal-Time ApplicationsRegistryTasks
29 Minutes Ago
In-Office
Long Beach, CA, USA
225K-330K Annually
Expert/Leader
225K-330K Annually
Expert/Leader
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Own spacecraft and embedded-platform security architecture, threat modeling, PKI, cryptography, secure boot, firmware, FPGA, RF, and supply-chain security. Build production security tooling, foundational services, test frameworks, and validation platforms for resource-constrained systems. Lead penetration testing, security assessments, secure development practices, and organization-wide hardening initiatives while mentoring engineers and addressing novel space-based threats.
Top Skills: AIAssemblyCC++Ccsds Space Data Link SecurityCnsa 2.0Embedded LinuxFips 140-3FpgaHardware Security ModulesHilNist 800-SeriesPkiPost-Quantum CryptographyReal-Time Operating SystemsSecure BootSilVhdl
4 Days Ago
In-Office
Long Beach, CA, USA
205K-310K Annually
Expert/Leader
205K-310K Annually
Expert/Leader
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Build and operate cloud security tooling, automation, and controls across AWS and Azure. Secure IAM, networks, infrastructure-as-code, CI/CD, PKI, certificates, Kubernetes integrations, and secrets management with HashiCorp Vault. Lead security projects from design through implementation, troubleshoot multi-account cloud networks, conduct CSPM and threat detection work, and support incident response. Collaborate with engineering teams on secure architectures and leverage AI to accelerate development. The role is onsite in Denver or Long Beach, may include on-call duties and occasional travel, and requires obtaining and maintaining a security clearance.
Top Skills: Ad CsAWSAws Private CaAzureCi/CdCloudFormationCspmCwppExpressconnectGoHashicorp VaultIamInfrastructure-As-CodeKubernetesMtlsNaclsNsgsPkiPythonSecurity GroupsSIEMTerraformTlsTransit GatewayVirtual WanVnetVpcVpnX.509

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account