About the role
What will you do at Firestorm?
WHO WE ARE
At Firestorm, we are building the future of expeditionary defense manufacturing
and autonomous systems. Modern conflict has exposed a fundamental problem: the
systems needed most by operators are often too expensive, too slow to produce,
and too difficult to sustain at scale. Firestorm exists to change that.
We develop mission-adaptable aerial systems and deployable manufacturing
infrastructure designed to put capability directly into the hands of the
warfighter. From modular unmanned aircraft to xCell — our deployable
microfactory — our goal is to make defense systems rapidly deployable,
adaptable, and producible at the point of need.
We are looking for builders, operators, and problem-solvers who want to work on
meaningful technology with real-world impact.
ABOUT THE ROLE
Firestorm builds uncrewed aircraft and the manufacturing network that produces
them: full-capability plants, deployable xCell edge factories, and
forward-deployed sites that stand up production near the point of need.
Crucible is the software that runs that manufacturing network. It operates
across cloud, factory, edge, and air-gapped environments, creating security
problems that have to be solved in the product and infrastructure itself.
We are hiring a Staff Platform Security Engineer to build and improve the
security systems behind Crucible and Firestorm's software infrastructure. You
will work directly with software and infrastructure engineers to implement
platform security, harden deployments, automate controls, and drive the
technical work required to support deployment into accredited environments.
This is a hands-on engineering role. You will write code, build infrastructure,
review system designs, and work directly with teams to fix security problems
rather than only defining requirements or policy.
WHAT YOU’LL DO
* Drive platform security execution — Own security improvements from design
through implementation across Crucible, cloud infrastructure, and edge
deployments.
* Build security into the platform — Implement authentication, authorization,
secrets, data protection, and system boundaries in product and infrastructure
code.
* Secure cloud and edge deployments — Harden Kubernetes, cloud infrastructure,
Linux systems, and air-gapped environments.
* Own identity and trust — Build approaches for user, service, workload, and
device identity across connected and disconnected deployments.
* Secure the software supply chain — Improve dependency security, artifact
integrity, signing, provenance, and deployment controls.
* Find and fix security weaknesses — Threat model systems, review designs and
code, identify vulnerabilities, and drive remediation.
* Automate security controls — Build security checks and tooling into CI/CD,
infrastructure, and development workflows.
* Support accreditation — Translate security requirements into implemented
controls, technical evidence, and system designs that support ATO and
customer security requirements.
REQUIRED QUALIFICATIONS
* U.S. Citizenship and ability to obtain and maintain a U.S. Government
security clearance
* 8+ years of security engineering, platform security, product security, or
cloud security experience; with a proven track record of success
* Strong software engineering skills and experience contributing directly to
production code
* Strong Linux, networking, and cloud security fundamentals
* Deep experience securing Kubernetes, containers, and cloud infrastructure
* Strong experience with identity and access management, authentication,
authorization, secrets management, and PKI
* Experience with application and platform threat modeling, security
architecture, and vulnerability remediation
* Experience building security automation into CI/CD, infrastructure, and
deployment workflows
* Experience with software supply chain security, including dependency
management, artifact integrity, signing, or provenance
* Demonstrated ability to design and implement security solutions across
application, infrastructure, and deployment boundaries
PREFERRED QUALIFICATIONS
* Experience securing air-gapped, edge, or intermittently connected systems
* Experience with NIST 800-53, RMF, ATO, or similar accreditation processes
* Experience with AWS GovCloud or other regulated cloud environments
* Aerospace, defense, robotics, or other regulated-industry experience
WORK ENVIRONMENT
* This role is based in San Diego, CA.
* We welcome candidates who are local or open to relocating; relocation
assistance is available and may be included in the offer package where
appropriate.
COMPENSATION
US Salary Range: $175,000 – $195,000 USD
The posted salary range reflects an estimate based on a variety of compensation
factors, including but not limited to relevant experience, education,
certifications, specialized skills, geographic location, and business needs.
Actual compensation may vary, and this range is subject to change as our
compensation structure or market conditions evolve.
BENEFITS & PERKS
Our culture fosters collaboration, respect, and trust, empowering passionate
people to do their best work. We offer a competitive salary, comprehensive
benefits, and opportunities for career growth. In addition to an opportunity to
take part in an innovative, collaborative and fast-growing business with a
highly motivated and skilled team, we also take pride in taking care of our
employees. Here are just a few ways that we show our appreciation:
* We offer comprehensive medical, dental, and visions plans
* 401(k) Retirement Savings Plan to invest in your long-term retirement goals
* Equity grants for new hires
* Unlimited PTO
* Extremely generous company holiday calendar, including a holiday hiatus in
July & December.
* Generous Parental Leave
* Lifestyle Spending Account
* FSA
* DCFSA
* HSA
* Hospital Indemnity insurance
* Critical Illness insurance
* Accident insurance
* Basic Life/AD&D, short-term and long-term disability insurance, 100% covered
by Firestorm. Plus, the option to purchase additional life insurance for you
and your family.
* Mental Health Resources: We provide free mental health resources 24/7
including therapy and more. Additional work-life services, such as free legal
and financial support, are available to you as well.
EXPORT CONTROL COMPLIANCE
To conform to U.S. government export control regulations, including the
International Traffic in Arms Regulations (ITAR) and Export Administration
Regulations (EAR), you must be a U.S. citizen, lawful permanent resident of the
U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or otherwise
eligible to obtain the required authorizations from the U.S. Department of State
or U.S. Department of Commerce.
EQUAL OPPORTUNITY STATEMENT
Firestorm is an equal opportunity employer, committed to creating a diverse and
inclusive workplace, and upholding equitable hiring practices. All qualified
applicants will receive consideration for employment without regard to race,
color, religion, sex, sexual orientation, gender identity, national origin,
disability, protected veteran status, or any other characteristic under federal,
state, or local law, including those with a criminal history, in a manner
consistent with the requirements of applicable state and local laws, including
the CA Fair Chance Initiative for Hiring Ordinance. We actively encourage
members of recognized minorities, women, Veterans, and those with disabilities
to apply, and we work to create a welcoming and supportive environment for all
applicants throughout the interview process.
Firestorm is committed to fostering an inclusive and accessible work
environment. If you require accommodations or assistance during the application
process, please don’t hesitate to reach out to us at [email protected]
so we can provide the support you need.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Network Security Engineer Master
GovCIO · United States
Salesforce Security Engineer
SDC · McLean, Virginia, United States
ML Security Engineer
Bright Vision Technologies · Kirkland, Washington, United States
Lead Engineer, Information Security (Application Security)
RXO, Inc. · United States
Senior Security Engineer
Credit Sesame · Mountain View, California, United States
Lead Security Engineer
JPMorganChase · Columbus, Ohio, United States
Role information can change. Confirm current details on the original application page.
