Senior Enterprise Application Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Archer · 2 days ago

Senior Enterprise Application Security Engineer

Archer is an aerospace company based in San Jose, California building an all-electric vertical takeoff and landing aircraft with a mission to advance the benefits of sustainable air mobility. The Senior Enterprise Application Security Engineer will be responsible for securing cloud-native environments and ensuring the protection of telemetry, flight operations, and enterprise systems against advanced threats.

AerospaceAir TransportationElectric VehicleManufacturing
badNo H1Bnote

Responsibilities

Design, implement, and maintain secure cloud architectures across AWS and Azure
Enforce zero-trust principles and least-privilege access using advanced IAM policies and roles
Lead the security review and automated scanning of IaC templates (Terraform, CloudFormation, Helm)
Prevent misconfigurations before they reach production
Integrate security tooling (CSPM, CWPP, Secret Scanning) directly into CI/CD pipelines (Jenkins, GitLab, GitHub Actions) to enable rapid, secure deployment
Secure containerized workloads and orchestration platforms (EKS/AKS), ensuring runtime protection, image scanning, and network segmentation
Map cloud security controls to industry frameworks, including NIST SP 800-53, ISO 27001, and aviation-specific standards like DO-326A—Automate evidence collection for audits
Build high-fidelity detection rules for cloud threats using SIEM/SOAR platforms
Lead investigations into cloud security incidents and perform forensics on ephemeral workloads
Safeguard critical flight telemetry and sensitive data pipelines through robust encryption, key management (KMS/HSM), and data loss prevention (DLP) strategies

Qualification

Cloud SecurityDevSecOpsInfrastructure as CodeKubernetesTerraformPythonCSPM ToolsNIST CSFCommunication SkillsCollaboration

Required

5+ years of experience in Cloud Security, DevSecOps, or Infrastructure Engineering, with at least 3 years focused on public cloud (AWS, Azure, and GCP)
Deep hands-on expertise with Terraform, Kubernetes, and Linux environments
Proficiency in Python, Go, or Bash for automating security tasks and building custom tooling
Experience implementing and tuning CSPM/CNAPP tools (e.g., Wiz, Prisma Cloud, Orca, Sysdig) and SIEM platforms (Tenex, Splunk, Datadog Security)
Working knowledge of NIST CSF, NIST 800-53, or FedRAMP requirements

Preferred

Familiarity with DO-326A (Airworthiness Security), ITAR regulations, or safety-critical systems
AWS Certified Security – Specialty, Azure Security Engineer (AZ-500), CKA (Certified Kubernetes Administrator), and CISSP, CISM
Experience designing 'Zero Trust' networks and implementing Service Mesh (e.g., Istio, Linkerd) security
Experience conducting cloud penetration tests or 'Purple Team' exercises to validate defenses

Company

Archer is an aerospace company that developed an electric vertical takeoff and landing aircraft tailored for urban air mobility systems.

Funding

Current Stage
Public Company
Total Funding
$3.48B
Key Investors
BlackRockStellantis
2025-11-06Post Ipo Equity· $650M
2025-06-12Post Ipo Equity· $850M
2025-02-11Post Ipo Equity· $300M

Leadership Team

leader-logo
Adam Goldstein
Founder and CEO
linkedin
leader-logo
Tom Muniz
Chief Technology Officer
linkedin
Company data provided by crunchbase