United States of America On-site Employment

Northwood Space is hiring a Security Engineering Manager

Responsibilities

  • Manage end-to-end operations of the SIEM platform, including architecture design, onboarding log sources from ground stations and cloud environments, developing correlation rules, tuning, and setting up automated alerting.
  • Operate and sustain the EDR platform with responsibilities spanning agent deployment, policy configuration, alert analysis, and integration into SIEM-driven workflows.
  • Create and iteratively enhance threat detection logic, incident response procedures, and SOC operational processes tailored for a distributed and high-availability environment.
  • Automate integration of security tools with infrastructure via APIs to decrease manual intervention and improve operational efficiency over time.
  • Lead implementation and refinement of User and Entity Behavior Analytics (UEBA) within the SIEM, establishing behavioral baselines and improving detection models to uncover insider threats and unusual activity.
  • Design and maintain UEBA use cases, correlation rules, and risk scoring frameworks in collaboration with the SOC to ensure alerts are accurate and actionable.
  • Evaluate UEBA-generated data to detect signs of insider risk, account compromise, or policy breaches, and coordinate remediation efforts with HR, legal, and security leadership.
  • Oversee FortiGate firewall systems, including managing access policies, network segmentation, firmware updates, and integrating logs into central monitoring systems.
  • Administer and optimize Cloudflare-based VPN and Zero Trust Network Access (ZTNA) solutions to enable secure remote access and inter-site connectivity.
  • Implement, secure, and manage security infrastructure across on-premises data centers and government-compliant cloud environments such as AWS GovCloud and Microsoft GCC, adhering to regulatory frameworks.
  • Collaborate with infrastructure engineers to integrate security controls into network and system designs from initial planning stages.
  • Operate and maintain email security platforms like Proofpoint or Sublime Security, including policy management, threat response, and integration with SIEM systems.
  • Develop and enforce Data Loss Prevention (DLP) policies across endpoints, networks, and cloud services to safeguard sensitive information in alignment with CMMC and NIST 800-53 requirements.
  • Build and refine DLP rule sets for email, web, and SaaS applications, continuously adjusting policies to minimize false positives while preserving strong data protection.
  • Work with legal, compliance, and IT teams to classify organizational data and translate those classifications into enforceable DLP policies enterprise-wide.
  • Support Okta identity management in coordination with IT, including SSO setup, MFA policy enforcement, user lifecycle management, and ingestion of logs into SIEM.
  • Ensure consistent integration between identity, endpoint, and security tools as new systems are deployed, without involvement in general IT helpdesk or end-user support.
  • Define and enforce Infrastructure-as-Code (IaC) practices using tools like Terraform or Ansible for all security infrastructure deployments to ensure consistency, auditability, and compliance.
  • Develop custom scripts in Python, Bash, or PowerShell to automate security operations, reduce manual effort, and support compliance evidence gathering.
  • Recruit, mentor, and grow a team of security engineers as the organization scales.
  • Act as the principal security engineering expert in cross-functional engagements with network operations, mission systems, and product development teams.
  • Participate in security architecture reviews and provide technical guidance on compliance with regulations such as CMMC, NIST 800-171, and FedRAMP.

Security Clearance Requirement

This role requires successful acquisition and maintenance of a Top Secret Security Clearance. While not immediately required, candidates should initiate the process upon offer acceptance. Inability to obtain clearance may lead to employment changes or termination.

Export Control Compliance

To comply with U.S. export regulations such as ITAR, candidates must be U.S. citizens, lawful permanent residents, protected individuals under 8 U.S.C. 1324b(a)(3), or eligible to obtain required authorizations from the U.S. Department of State.

Equal Opportunity Employer

Employment is based on merit, qualifications, and competence. The organization does not discriminate based on race, color, religion, gender, national origin, veteran status, disability, age, sexual orientation, gender identity, marital status, or any other legally protected status.

Reasonable Accommodation

Candidates needing reasonable accommodations during the application or interview process should notify the hiring team to request support.

About company
Northwood Space

Northwood is building a global ground network for the future of space communications.

Northwood is an end-to-end ground infrastructure provider – from initial concept through deployment to live data delivery. By vertically integrating the entire ground stack, we can collapse what used to take years into months, and what took months into days. Our vision is building towards a ground infrastructure layer that works like cloud computing, where global capacity and routing scales on demand without the usual procurement cycles, vendor coordination, or integration challenges.

We’re a team of engineers, operators, and builders — with experience across aerospace, defense, cloud infrastructure, and advanced manufacturing — committed to building resilient infrastructure for the next century of space operations.

All jobs at Northwood Space Visit website
Job Details
Department Information Technology
Category security
Posted 2 months ago