Information System Security Officer
Job description
About the role
SpaceX is seeking a dedicated professional to join its classified cyber assurance team as an Information System Security Officer. This position is crucial for enhancing the organization's classified cyber assurance program. The role encompasses various responsibilities, including governance, assessment, and communication, acting as the main point of contact for both internal teams and external stakeholders such as customers, regulatory bodies, and government agencies. You will thrive in a dynamic environment where you will be entrusted with significant responsibilities, enabling the classified assurance team to fulfill customer expectations while mitigating risks effectively.
Key facts
What you'll do
- Oversee the entire Risk Management Framework (RMF) Assessment and Authorization process for designated classified information systems.
- Ensure adherence to all regulatory, policy, and contractual requirements pertaining to classified systems.
- Identify and implement new regulatory and contractual obligations throughout the organization.
- Keep abreast of new and evolving threats, risks, and best practices within the cybersecurity community.
- Organize and lead audits, assessments, and security testing initiatives to ensure compliance and security.
- Assess and select automation, assessment, and management tools to enhance operational efficiency.
- Provide advanced guidance and support for tools such as Nessus, Splunk, and Security Center.
- Offer expert assistance for ServiceNow (SNOW), eMASS, and other Governance, Risk, and Compliance (GRC) platforms.
- Mentor and develop Cleared Cyber Assurance Analysts to enhance team capabilities.
- Foster strong relationships with internal stakeholders, contract partners, and government customers to facilitate collaboration.
- Contribute to the broader objectives and initiatives of SpaceX, aligning cyber assurance efforts with company goals.
Requirements
- A bachelor's degree in a relevant field, or at least 3 years of experience managing cyber assurance for classified systems/networks in place of a degree.
- A minimum of 1 year of experience specifically in cyber assurance roles.
- Proven ability to manage complex security requirements and ensure compliance with regulatory standards.
- Strong analytical skills to assess risks and develop effective mitigation strategies.
- Excellent communication skills, both written and verbal, to interact with various stakeholders.
- Ability to work independently and make decisions with minimal supervision.
Nice to have
- Practical experience with National Reconnaissance Office (NRO) Assessment and Authorization (A&A) processes and Joint Special Access Program Implementation Guide (JSIG) A&A processes.
- In-depth understanding of the RMF 7-step process and its application in classified environments.
- Experience working in highly technical and demanding team settings.
- A successful history of obtaining Authorization to Operate (ATOs) for networks, weapon systems, or satellite systems.
- Familiarity with Communications Security (COMSEC) procedures and practices.
- Strong organizational and project management skills to handle multiple tasks efficiently.
Skills & tools
- Proficient in using Nessus for vulnerability scanning and assessment.
- Experienced with Splunk for security information and event management (SIEM).
- Knowledgeable in Security Center for security management.
- Familiarity with ServiceNow (SNOW) for IT service management.
- Proficient in eMASS for managing security assessments and authorizations.
- Experienced with various GRC tools to ensure compliance and risk management.
- Comprehensive understanding of the RMF A&A lifecycle and its implementation in classified systems.
Practical notes
This position is based in Hawthorne, CA, and is a full-time role within the Classified Assurance team at SpaceX. The successful candidate will be expected to navigate a fast-paced work environment and will have the opportunity to make impactful contributions to the organization's cybersecurity posture. Candidates must be eligible to work in the United States and may need to obtain a security clearance depending on the specific requirements of the role. The salary for this position is competitive and commensurate with experience, reflecting the high level of expertise required for this role.
META
Company: SpaceX
Title: Information System Security Officer
Listed
location: Hawthorne, CA
About the company
Based in Starbase, Texas, a company pursues work in spaceflight, telecom, and artificial intelligence. A unit handles rocket launches, leading yearly orbital counts beyond other national and commercial teams. Another unit runs Starlink, a satellite communications firm. A third area, through SpaceXAI, advances Grok and AI integration with X, while managing data center operations. Roles often cross these paths. Candidates with engineering, software, or operations backgrounds may find chances to join projects that span launch, connectivity, and machine learning efforts in this Texas-based enterprise.