Full-Time

Cyber Assurance Analyst

SpaceX

SpaceX

10,001+ employees

Manufactures advanced rockets and spacecrafts for space transportation

Hardware
Aerospace

Junior

Redmond, WA, USA + 1 more

Requirements
  • 2+ years of experience (can be concurrent) in utilizing security relevant tools, systems, and applications in support of the risk management framework (RMF), continuous authorization, and continuous monitoring, e.g.: NESSUS, ACAS, DISA STIGs, SCAP, audit reduction, and HBSS
  • 2+ years of experience (can be concurrent) with control testing, security standards/policy implementation, security audits, or security risk management
  • Demonstrated experience partnering with and preparing information system owners for internal assessments facilitating and leading external audits, and driving gaps and findings to closure in a collaborative manner
  • Ability to manage and prioritize multiple concurrent requests while setting realistic expectations with stakeholders
  • Strong understanding of security program and control frameworks, assessment methodologies, and practices, i.e. NIST RMF, NIST CSF, ISO-27001, 800-53(a), 800-171(a), CMMC, CNSSI 1253, 800-137, PCI, HIPAA, GDPR
  • Strong understanding of data controls and compliance regimens including CUI, ITAR, EAR, Cardholder Data, PII, PHI, etc
  • Technical project and/or operations management skills
  • Experience balancing tradeoffs between people and data collected evidence enabling continual movement toward continuous monitoring
  • Proven experience working with internal or external organizations to prepare for, conduct, and manage audits efficiently and effectively
  • Ability to incorporate lessons learned into the continuous process improvement cycle driving increased assurance effectiveness and efficiency
  • CISSP, CISM, CISA, GNSA or equivalent certification
  • To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here
Responsibilities
  • Plan, prepare for, schedule, and coordinate internal assessments and external audits
  • Perform assessments of systems and networks within our environment and identify where those systems and networks deviate from acceptable configurations, enterprise policy, or local standards
  • Identify security and compliance gaps and partner with system owner and stakeholders to appropriately remediate
  • Generate awareness of assessment results, facilitate and prepare system security plans and update the plan of actions and milestones
  • Develop, maintain, monitor, and improve appropriate internal controls and policies to protect SpaceX systems and data
  • Perform security analysis of operational and development environments, threats, vulnerabilities and internal interfaces to define and assess compliance with accepted enterprise, industry, and government standards
  • Assess, communicate and partner with our business and systems owners to determine security control efficacy, solutions within constraints, and facilitate justifiable confidence in the system's security posture
  • Operate and contribute to continuous improvement of information security assurance processes and systems
  • Maintain awareness of changes to regulations, compliance guidelines, assessment methodologies, and the emerging TTPs; recommend proactive changes to controls, policies, and procedures in response to these changes

SpaceX, under the leadership of Elon Musk, has consistently demonstrated its technical prowess and industry leadership by achieving milestones previously accomplished only by governments, such as returning a spacecraft from low-Earth orbit and attaching a spacecraft to the International Space Station. The company's culture is driven by a clear and ambitious goal to make life multiplanetary, fostering an environment of high performance and continuous learning. With its advanced rocket and spacecraft designs, SpaceX has a competitive edge in the space transportation industry, providing regular cargo resupply missions for NASA and working towards the future of space exploration.

Company Stage

N/A

Total Funding

$9.2B

Headquarters

Hawthorne, California

Founded

2002

Growth & Insights
Headcount

6 month growth

9%

1 year growth

30%

2 year growth

29%

Benefits

Benefits and Perks - Our employees’ well-being is important to us and essential to our capacity to do extraordinary things. We offer a wide variety of programs to support the health, wellness, and financial security of our employees and their families.

INACTIVE