Archer · 2 days ago
Senior Enterprise Application Security Engineer
Archer is an aerospace company based in San Jose, California building an all-electric vertical takeoff and landing aircraft with a mission to advance the benefits of sustainable air mobility. The Senior Enterprise Application Security Engineer will be responsible for securing cloud-native environments and ensuring the protection of telemetry, flight operations, and enterprise systems against advanced threats.
AerospaceAir TransportationElectric VehicleManufacturing
Responsibilities
Design, implement, and maintain secure cloud architectures across AWS and Azure
Enforce zero-trust principles and least-privilege access using advanced IAM policies and roles
Lead the security review and automated scanning of IaC templates (Terraform, CloudFormation, Helm)
Prevent misconfigurations before they reach production
Integrate security tooling (CSPM, CWPP, Secret Scanning) directly into CI/CD pipelines (Jenkins, GitLab, GitHub Actions) to enable rapid, secure deployment
Secure containerized workloads and orchestration platforms (EKS/AKS), ensuring runtime protection, image scanning, and network segmentation
Map cloud security controls to industry frameworks, including NIST SP 800-53, ISO 27001, and aviation-specific standards like DO-326A—Automate evidence collection for audits
Build high-fidelity detection rules for cloud threats using SIEM/SOAR platforms
Lead investigations into cloud security incidents and perform forensics on ephemeral workloads
Safeguard critical flight telemetry and sensitive data pipelines through robust encryption, key management (KMS/HSM), and data loss prevention (DLP) strategies
Qualification
Required
5+ years of experience in Cloud Security, DevSecOps, or Infrastructure Engineering, with at least 3 years focused on public cloud (AWS, Azure, and GCP)
Deep hands-on expertise with Terraform, Kubernetes, and Linux environments
Proficiency in Python, Go, or Bash for automating security tasks and building custom tooling
Experience implementing and tuning CSPM/CNAPP tools (e.g., Wiz, Prisma Cloud, Orca, Sysdig) and SIEM platforms (Tenex, Splunk, Datadog Security)
Working knowledge of NIST CSF, NIST 800-53, or FedRAMP requirements
Preferred
Familiarity with DO-326A (Airworthiness Security), ITAR regulations, or safety-critical systems
AWS Certified Security – Specialty, Azure Security Engineer (AZ-500), CKA (Certified Kubernetes Administrator), and CISSP, CISM
Experience designing 'Zero Trust' networks and implementing Service Mesh (e.g., Istio, Linkerd) security
Experience conducting cloud penetration tests or 'Purple Team' exercises to validate defenses
Company
Archer
Archer is an aerospace company that developed an electric vertical takeoff and landing aircraft tailored for urban air mobility systems.
Funding
Current Stage
Public CompanyTotal Funding
$3.48BKey Investors
BlackRockStellantis
2025-11-06Post Ipo Equity· $650M
2025-06-12Post Ipo Equity· $850M
2025-02-11Post Ipo Equity· $300M
Recent News
2026-01-19
News Powered by Cision
2026-01-16
Company data provided by crunchbase