Security Engineer (Red Team)
SpaceX
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
2,781 open security roles across 429 companies are on ApplySarthi right now, most of them in Bengaluru (115), Hyderabad (30), Pune (22).
- Security Engineer, AWS Cloud ResponseAmazon Corporate Services Pty Ltd
- Software Development Engineer, AWS SecurityAmazon Development Centre (London) Limited
- Application Security EngineerPokemoncareers
- GRC Security SpecialistAbound
- Senior Application Security EngineerDatadog
What security roles keep asking for: AWS (28%), Python (26%), SIEM (14%), GCP (12%), CI/CD (12%) — counted across their open postings here.
Security Engineer jobs in the United States · Remote Security Engineer jobs · AWS jobs · Azure jobs · C# jobs · C++ jobs
SpaceX has 2,595 open roles listed here.
- Full Stack Software Engineer, Internal Applications
- Full Stack Software Engineer, Manufacturing Systems
- Software Engineer, Manufacturing Infrastructure
- Sr. Full Stack Engineer, Internal Applications
- Accountant, Revenue
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for security roles keep coming back to AWS, Python, SIEM, GCP. Practise those questions before you sit with SpaceX.
Questions you are likely to be asked
- Why do you want to join SpaceX?
- What is your experience with Python? Tell me one thing you learned the hard way.
- How do you decide what to monitor, and what should wake someone up at night?
- How would you cut the cloud bill of a system without hurting it?
- How do you keep secrets and access safe in your infrastructure?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Security Engineer (Red Team) at SpaceX interview free →SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.
SECURITY ENGINEER (RED TEAM)
SpaceX is looking for a Security Engineer to join our Information Security department to help protect and drive the SpaceX mission.
Information drives our business and we must protect the confidentiality, integrity, and availability of systems and processes across the enterprise. As a highly visible and dynamic organization, we must also value and guard against damage to our reputation and brand. It is paramount that we defend against loss of control or confidence in our systems, to guarantee the highest probability of success.
As a member of the SpaceX Vulnerability Management team, the Security Engineer will act as a trusted partner to application software development teams. This role focuses on identifying, assessing, and remediating vulnerabilities and threats while developing and maintaining internal security tools. The role also includes hands-on work triaging bug reports, conducting Purple and Red Team activities, and continuous threat hunting. Strong communication skills and the ability to turn technical findings into practical, actionable guidance are essential.
RESPONSIBILITIES:
- Development of tools, processes, and guidance that make security easier to adopt without slowing delivery.
- Conduct software code reviews to identify insecure patterns and help teams remediate issues.
- Perform web application security testing using established frameworks and tools.
- Triage and validate Bugcrowd reports, coordinate with researchers, and work directly with internal teams on remediation and disclosure.
- Perform Purple Team exercises to test controls, improve detection, and close identified gaps.
- Contribute to Red Team operations or simulations, including scoping, execution support, and post-exercise analysis.
- Build and operate emerging vulnerability communication processes so teams receive timely, actionable alerts on new threats.
- Conduct continuous threat assessment by folding threat intelligence, emerging vulnerabilities, and attack trends into scanning coverage, notifications, and prioritization.
- Partner with other security sub-teams (detection/response, compliance, application security, infrastructure) to keep efforts consistent and reduce duplication.
- Escalate critical or time-sensitive issues promptly while offering practical mitigation options.
- Document findings, produce metrics, and provide regular risk summaries to leadership.
BASIC QUALIFICATIONS:
- Bachelor's degree in computer science or another STEM discipline; OR 2+ years of professional experience in security software development in lieu of a degree.
- Experience with the Python programming language, GO, C#, C/C++, or Rust.
- Experience designing and implementing security solutions for operating systems, distributed systems, or other enterprise/large-scale infrastructure.
PREFERRED SKILLS AND EXPERIENCE:
- Experience identifying, assessing, and remediating vulnerabilities (applications, infrastructure, or cloud).
- Experience working directly with engineering teams to close findings.
- Scripting/automation experience (Python, Bash, PowerShell, or similar) and the ability to develop internal tools.
- Strong understanding of networking fundamentals (TCP/IP, DNS, HTTP/S, firewalls) and how they relate to vulnerability exposure.
- Reverse engineering or vulnerability development experience.
- Experience triaging or working reports from bug bounty platforms (Bugcrowd, HackerOne, or similar).
- Hands-on participation in Purple Team or Red Team exercises.
- OT Security Experience.
- Experience with continuous threat assessment, threat intelligence, or risk-based vulnerability prioritization.
- Experience developing internal security tools, dashboards, or automation pipelines (production-quality code, integrations, etc.).
- Experience with web application testing frameworks and tools.
- Experience performing software code reviews for security issues.
- Experience improving developer experience around security tooling and processes.
- Knowledge of network segmentation principles and implementation.
- Experience with asset discovery or inventory processes.
- Experience building or operating emerging vulnerability notification/alerting workflows.
- Familiarity with AI/LLMs and MCPs.
- Familiarity with cloud environments (AWS, Azure, GCP) and their native security/vulnerability features.
- Experience with configuration management, patching, or infrastructure-as-code.
- Knowledge of threat modeling, risk scoring (e.g., CVSS), and prioritization frameworks.
- Familiarity with enterprise security controls and best practices for Windows, Linux, and macOS.
- Strong communication skills with the ability to translate technical findings into business impact and concrete remediation steps.
- Relevant certifications (e.g., OSCP, GSEC, or equivalent) or demonstrated equivalent experience.
- Demonstrable problem-solving skills and ability to quickly determine root causes of issues.
ADDITIONAL REQUIREMENTS:
- Must be willing to work extended hours and/or weekends as needed.
- This role requires you to be onsite. Hybrid or remote work will not be considered.
ITAR REQUIREMENTS:
- To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.
SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
Applicants wishing to view a copy of SpaceX’s Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out to EEOCompliance@spacex.com.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Data Center Specialist (Starlink)SpaceX
- Manager, Starlink Enterprise SalesSpaceX
- Sr. Sales Manager (Global Starlink Enterprise Sales)SpaceX
- Sr. Sales Manager (Global Starlink Enterprise Sales)SpaceX
- Sr. Sales Manager (Global Starlink Enterprise Sales)SpaceX
- Sr. Sales Manager (Global Starlink Enterprise Sales)SpaceX
- Starlink Growth Lead, MidwestSpaceX
- Starlink Growth Lead, US NortheastSpaceX
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-09-25. ApplySarthi collects openings and links to application pages; the role is advertised by SpaceX, not by us.