Senior Security Engineer
Muon Space - San Jose, CA
Hiring: Senior Security Engineer Company: Muon Space Location: San Jose, CA Job Posted Time: 2026-09-10 13:28:06 Employment Type: Full-time / Remote Target Skills & Keywords : AWS, Azure AD, CI/CD, CloudFormation, DNS, IAM, Okta, S3, SIEM, SOC 2, Splunk, Terraform, VPC, VPN, macOS About the job Experience: •5+ years of experience in information security or security engineering roles Required Skills: •This position is hybrid and requires working on-site in our San Jose, CA office three days per week or fully remote from an approved U.S. location. •Design, deploy, and manage endpoint security solutions (EDR/XDR) across macOS and Windows fleets, including policy tuning, alert triage, and incident response •Own network security architecture including firewall rule management, IDS/IPS tuning, network segmentation, and VPN infrastructure •Lead vulnerability management program — run scans, prioritize findings, coordinate remediation with engineering teams, and track closure metrics •Administer and harden IAM systems (Okta, AWS IAM) including SSO integrations, conditional access policies, privilege access reviews, and lifecycle automation •Develop and maintain security monitoring and alerting using SIEM platforms, building detection rules and response playbooks •Conduct security assessments of new tools, vendors, and architectural changes before deployment •Drive cloud security posture management across AWS environments including IAM policies, S3 bucket security, security group reviews, and CloudTrail/GuardDuty monitoring Qualifications: •Strong hands-on experience with endpoint detection and response platforms (CrowdStrike, SentinelOne, or similar) •Demonstrated experience managing enterprise vulnerability scanning tools (Tenable, Qualys, Rapid7, or similar) •Comprehensive expertise in identity and access management principles and hands-on Okta or Azure AD administration •Proficiency with cloud security in AWS (IAM, VPC, Security Groups, CloudTrail, GuardDuty, Config) •Solid networking knowledge — firewalls, proxies, DNS security, network segmentation, packet analysis •Operational familiarity with compliance frameworks such as NIST 800-171, CMMC, SOC 2, or ISO 27001 •Excellent written and verbal communication skills — able to convey risk and technical findings to both engineers and leadership •This position requires access to export controlled information. To conform to U.S. Government export regulations applicable to that information, applicant must either be (A) a U.S. person, defined as a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (green card holder), (iii) refugee under 8 U.S.C. •1157, or (iv) asylee under 8 U.S.C. •1158, (B) eligible to access the export controlled information without a required export authorization, or (C) eligible and reasonably likely to obtain the required export authorization from the applicable U.S. government agency. The Company may, for legitimate business reasons, decline to pursue any export licensing process. Compensation: •$193,000 - $218,000 / year •Flexible work environment (work from home / hybrid options) •Competitive benefits and rewards package •The salary range for this role is $193,000 - $218,000, plus a competitive equity grant and comprehensive benefits package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!