{"schemaVersion":"jobsearcher.job.v1","id":"763326eea2b313535ea1a65e","url":"https://jobsearcher.com/jobs/763326eea2b313535ea1a65e","canonicalUrl":"https://jobsearcher.com/jobs/763326eea2b313535ea1a65e","title":"Cloud Security Engineer","description":"Spacecraft represent the most pressing unmet need across the entire aerospace industry. As more launch vehicles come online and the cost to orbit decreases, more companies launching payloads to space continue to emerge.\n\nFor the first time in history, this influx of payload companies combined with reduced launch costs has resulted in a massive increase in need for commercial spacecraft platforms, known as satellite buses. These buses hold the payloads of our customers and are flown on launch vehicles.\n\nApex manufactures these satellite buses at scale using a combination of software, vertical integration, and hardware that is designed for manufacturing. Our spacecraft enable the future of society: ranging from earth observation to communications and more.\n\nWe’d love for you to join us on our mission of providing humankind access to the galaxy beyond our planet.\n\nAbout the Role\n\nWe are seeking a Cloud Security Engineer to design, implement, maintain, and optimize secure cloud environments supporting U.S. government, DoD, and intelligence community missions.\n\nThis role plays a critical part in protecting classified and sensitive data in AWS, Azure, and hybrid/multi-cloud infrastructures while ensuring full compliance with federal standards such as NIST 800-53, FedRAMP, RMF, and DoD Impact Levels (IL-4/IL-5).\n\nThe right candidate will bring hands-on experience securing cloud platforms in regulated environments. This role will help the organization meet industry standards such as SOC2, ISO 27001, PCI-DSS, GDPR/CCPA, or other relevant compliance frameworks.\n\nResponsibilities:\n\nDesign and implement secure cloud architectures and configurations across AWS GovCloud, Azure, and/or Google Cloud, applying best practices for least privilege encryption, network segmentation, and data protection.\n\nImplement and maintain cloud security frameworks, ensuring ongoing compliance with NIST 800-53 Rev. 5, FedRAMP, DoD IL-2/4/5, RMF, and Secure Cloud Computing Architecture (SCCA) requirements.\n\nConfigure and manage Identity and Access Management (IAM), Role-Based Access Control (RBAC), Just-In-Time (JIT) access, Key Vaults, and Zero Trust Architecture (ZTA) principles across cloud environments.\n\nEngineer, deploy, and optimize cloud-native security tools, including Microsoft Defender for Cloud, Azure Sentinel, AWS GovCloud security services, CSPM/CWPP solutions, and SIEM (Elastic) platforms for threat detection, monitoring, and response.\n\nConduct vulnerability assessments, penetration testing simulations, security configuration reviews (against STIGs, CIS benchmarks, and NIST controls), and continuous monitoring of cloud resources.\n\nDevelop, maintain, and update System Security Plans (SSP), Security Assessment Reports (SAR), Plans of Action & Milestones (POA&M), and risk/compliance reporting for cloud-based operations.\n\nIdentify, analyze, and respond to Indicators of Compromise (IoCs), threat intelligence, and security incidents within cloud environments; perform root-cause analysis and implement preventive controls.\n\nPerform periodic security reviews and audits of cloud environments (Azure, AWS, hybrid) to ensure sustained compliance, mitigate evolving threats, and update policies/procedures.\n\nCollaborate with DevSecOps, infrastructure, and development teams to integrate security into CI/CD pipelines, automate security controls, and support secure cloud migrations or modernization initiatives.\n\nAssess current cloud architectures, propose security improvements, review designs through a security lens, and serve as a subject-matter expert on cloud security tools,\nprocesses, and best practices.\n\nCoordinate with configuration management teams to ensure hardware/software changes adhere to security protocols, maintain version control, and support documentation of the cyber terrain.\n\nDevelop, enforce, and maintain cloud security policies, standards, and automated guardrails to support secure CI/CD pipelines and infrastructure-as-code (IaC) practices (e.g., using Terraform, CloudFormation).\n\nMonitor cloud environments for security incidents, investigate alerts, perform root-cause analysis, and coordinate incident response activities.\n\nIdentify emerging threats and recommend proactive improvements to cloud security posture, including automation of security controls and processes.\n\nProvide guidance and training to engineering teams on secure cloud design patterns and best practices.\n\nAbility to be on-site 5 days a week at our office in Playa Vista, CA.\n\nRequirements:\n\nMust be a U.S. citizen.\n\nEducation: Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field (or 5+ years equivalent professional experience in cloud security engineering)\n\nExperience: 5–9+ years in cloud security engineering, with hands-on work in AWS GovCloud, Azure, Google GCP, or multi-cloud environments.\n\nStrong analytical, problem-solving, communication, and collaboration skills; ability to work in fast-paced, mission-critical environments.\n\nTechnical Skills:\n\nDeep knowledge of cloud platforms (AWS GovCloud, Azure Government, etc.), IAM/RBAC, encryption, network security, and cloud-native security services.\n\nFamiliarity with SIEM, vulnerability scanners, threat intelligence, and automation tools (e.g., Terraform, Python scripting).\n\nExperience with compliance frameworks (NIST, FedRAMP, RMF) and tools like Azure Sentinel, NESSUS, BURP SUITE, Microsoft Defender, or AWS equivalents.\n\nDeep understanding of network security, encryption, logging/monitoring, and container/Kubernetes security.\n\nExperience with infrastructure-as-code, scripting (Python, PowerShell, etc.), and security automation tools.\n\nAdditional Certifications:\n\nCISSP, AWS Certified Security-Specialty, AWS Certified Solutions Architect (Associate or Professional), Microsoft Certified: Security, Compliance & Identity, Security+, CEH, or CSSP related (e.g., CySA+, GCIH).\n\n#LI-JC1\n\nWhy Join Apex?\n\nApex believes in creating a work environment that you look forward to embracing every day. Our employees love working at Apex, and we want you to love it too. We're a fast-growing startup that has raised more than $500M in funding, and we invest heavily in our people from day one.\n\nWhat We Offer For Full-time Employees:\n\nShared upside: Receive equity in Apex, letting you benefit from the work you create\n\nBest-in-class healthcare: 100% company-paid medical, dental, and vision for you and your dependents, plus $100k life insurance at no cost\n\nComprehensive PTO package to reset and recharge - starting at 15 days vacation, growing to 20+ days annually, plus 10 paid holidays\n\nCompetitive 401(k) plan with generous matching - 100% match on first 3%, 50% on next 2%\n\n8 weeks paid parental leave plus childcare reimbursement up to $350/day for work-related travel\n\nDaily catered lunch and unlimited snacks to keep you fueled throughout the day\n\nVibrant community: Monthly office socials, pickleball tournaments, run club, and gatherings for you and your family\n\nYour dream desk setup and all the tools you need to be your most productive self\n\nWorld-class Playa Vista office with the benefit of in-person collaboration with amazing coworkers and flexibility to integrate work and life\n\nReal impact opportunity: Work alongside experts from aerospace, new space, and other cutting-edge industries to make a lasting difference\n\nReady to join a team where your contributions matter and your future is bright? Let's build something extraordinary together.\n\nEqual Opportunity Employer\n\nApex Technology, Inc. is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Candidates and employees are always evaluated based on merit, qualifications, and performance. We will never discriminate on the basis of race, color, gender, national origin, ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability, or any other legally protected status.\n\nCompensation Range: $150K - $200K","company":"Apex Technology","rawCompany":"apex technology","city":"Los Angeles","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-27T12:46:59.598Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cloud Security Engineer","description":"Spacecraft represent the most pressing unmet need across the entire aerospace industry. As more launch vehicles come online and the cost to orbit decreases, more companies launching payloads to space continue to emerge.\n\nFor the first time in history, this influx of payload companies combined with reduced launch costs has resulted in a massive increase in need for commercial spacecraft platforms, known as satellite buses. These buses hold the payloads of our customers and are flown on launch vehicles.\n\nApex manufactures these satellite buses at scale using a combination of software, vertical integration, and hardware that is designed for manufacturing. Our spacecraft enable the future of society: ranging from earth observation to communications and more.\n\nWe’d love for you to join us on our mission of providing humankind access to the galaxy beyond our planet.\n\nAbout the Role\n\nWe are seeking a Cloud Security Engineer to design, implement, maintain, and optimize secure cloud environments supporting U.S. government, DoD, and intelligence community missions.\n\nThis role plays a critical part in protecting classified and sensitive data in AWS, Azure, and hybrid/multi-cloud infrastructures while ensuring full compliance with federal standards such as NIST 800-53, FedRAMP, RMF, and DoD Impact Levels (IL-4/IL-5).\n\nThe right candidate will bring hands-on experience securing cloud platforms in regulated environments. This role will help the organization meet industry standards such as SOC2, ISO 27001, PCI-DSS, GDPR/CCPA, or other relevant compliance frameworks.\n\nResponsibilities:\n\nDesign and implement secure cloud architectures and configurations across AWS GovCloud, Azure, and/or Google Cloud, applying best practices for least privilege encryption, network segmentation, and data protection.\n\nImplement and maintain cloud security frameworks, ensuring ongoing compliance with NIST 800-53 Rev. 5, FedRAMP, DoD IL-2/4/5, RMF, and Secure Cloud Computing Architecture (SCCA) requirements.\n\nConfigure and manage Identity and Access Management (IAM), Role-Based Access Control (RBAC), Just-In-Time (JIT) access, Key Vaults, and Zero Trust Architecture (ZTA) principles across cloud environments.\n\nEngineer, deploy, and optimize cloud-native security tools, including Microsoft Defender for Cloud, Azure Sentinel, AWS GovCloud security services, CSPM/CWPP solutions, and SIEM (Elastic) platforms for threat detection, monitoring, and response.\n\nConduct vulnerability assessments, penetration testing simulations, security configuration reviews (against STIGs, CIS benchmarks, and NIST controls), and continuous monitoring of cloud resources.\n\nDevelop, maintain, and update System Security Plans (SSP), Security Assessment Reports (SAR), Plans of Action & Milestones (POA&M), and risk/compliance reporting for cloud-based operations.\n\nIdentify, analyze, and respond to Indicators of Compromise (IoCs), threat intelligence, and security incidents within cloud environments; perform root-cause analysis and implement preventive controls.\n\nPerform periodic security reviews and audits of cloud environments (Azure, AWS, hybrid) to ensure sustained compliance, mitigate evolving threats, and update policies/procedures.\n\nCollaborate with DevSecOps, infrastructure, and development teams to integrate security into CI/CD pipelines, automate security controls, and support secure cloud migrations or modernization initiatives.\n\nAssess current cloud architectures, propose security improvements, review designs through a security lens, and serve as a subject-matter expert on cloud security tools,\nprocesses, and best practices.\n\nCoordinate with configuration management teams to ensure hardware/software changes adhere to security protocols, maintain version control, and support documentation of the cyber terrain.\n\nDevelop, enforce, and maintain cloud security policies, standards, and automated guardrails to support secure CI/CD pipelines and infrastructure-as-code (IaC) practices (e.g., using Terraform, CloudFormation).\n\nMonitor cloud environments for security incidents, investigate alerts, perform root-cause analysis, and coordinate incident response activities.\n\nIdentify emerging threats and recommend proactive improvements to cloud security posture, including automation of security controls and processes.\n\nProvide guidance and training to engineering teams on secure cloud design patterns and best practices.\n\nAbility to be on-site 5 days a week at our office in Playa Vista, CA.\n\nRequirements:\n\nMust be a U.S. citizen.\n\nEducation: Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field (or 5+ years equivalent professional experience in cloud security engineering)\n\nExperience: 5–9+ years in cloud security engineering, with hands-on work in AWS GovCloud, Azure, Google GCP, or multi-cloud environments.\n\nStrong analytical, problem-solving, communication, and collaboration skills; ability to work in fast-paced, mission-critical environments.\n\nTechnical Skills:\n\nDeep knowledge of cloud platforms (AWS GovCloud, Azure Government, etc.), IAM/RBAC, encryption, network security, and cloud-native security services.\n\nFamiliarity with SIEM, vulnerability scanners, threat intelligence, and automation tools (e.g., Terraform, Python scripting).\n\nExperience with compliance frameworks (NIST, FedRAMP, RMF) and tools like Azure Sentinel, NESSUS, BURP SUITE, Microsoft Defender, or AWS equivalents.\n\nDeep understanding of network security, encryption, logging/monitoring, and container/Kubernetes security.\n\nExperience with infrastructure-as-code, scripting (Python, PowerShell, etc.), and security automation tools.\n\nAdditional Certifications:\n\nCISSP, AWS Certified Security-Specialty, AWS Certified Solutions Architect (Associate or Professional), Microsoft Certified: Security, Compliance & Identity, Security+, CEH, or CSSP related (e.g., CySA+, GCIH).\n\n#LI-JC1\n\nWhy Join Apex?\n\nApex believes in creating a work environment that you look forward to embracing every day. Our employees love working at Apex, and we want you to love it too. We're a fast-growing startup that has raised more than $500M in funding, and we invest heavily in our people from day one.\n\nWhat We Offer For Full-time Employees:\n\nShared upside: Receive equity in Apex, letting you benefit from the work you create\n\nBest-in-class healthcare: 100% company-paid medical, dental, and vision for you and your dependents, plus $100k life insurance at no cost\n\nComprehensive PTO package to reset and recharge - starting at 15 days vacation, growing to 20+ days annually, plus 10 paid holidays\n\nCompetitive 401(k) plan with generous matching - 100% match on first 3%, 50% on next 2%\n\n8 weeks paid parental leave plus childcare reimbursement up to $350/day for work-related travel\n\nDaily catered lunch and unlimited snacks to keep you fueled throughout the day\n\nVibrant community: Monthly office socials, pickleball tournaments, run club, and gatherings for you and your family\n\nYour dream desk setup and all the tools you need to be your most productive self\n\nWorld-class Playa Vista office with the benefit of in-person collaboration with amazing coworkers and flexibility to integrate work and life\n\nReal impact opportunity: Work alongside experts from aerospace, new space, and other cutting-edge industries to make a lasting difference\n\nReady to join a team where your contributions matter and your future is bright? Let's build something extraordinary together.\n\nEqual Opportunity Employer\n\nApex Technology, Inc. is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Candidates and employees are always evaluated based on merit, qualifications, and performance. We will never discriminate on the basis of race, color, gender, national origin, ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability, or any other legally protected status.\n\nCompensation Range: $150K - $200K","datePosted":"2026-08-27T12:46:59.598Z","dateModified":"2026-08-27T12:46:59.598Z","hiringOrganization":{"@type":"Organization","name":"Apex Technology","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Los Angeles","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"763326eea2b313535ea1a65e"},"url":"https://jobsearcher.com/jobs/763326eea2b313535ea1a65e"}}