companySpire logo

Principal Software Engineer, Product Security

SpireBoulder, Colorado, United States
On-site Full-time $202.5K/yr - $238.5K/yr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Senior

Qualifications

Key Responsibilities:Integrate Security Controls in SDLC: Implement security automation into our development pipelines using tools like GitHub Actions and ArgoCD for SAST, DAST, SCA, SBOM, and vulnerability scanning. Enhance Shared Libraries and Infrastructure: Advance standard libraries and infrastructure for authentication, authorization, logging, and other runtime security concerns. Advance CMMC Compliance: Implement hands-on strategies to meet or exceed CMMC Level 2 controls (Access Control, Identification and Authentication, Security Controls, System Integrity) by utilizing encryption, secure configurations, and monitoring, leveraging our ISO 27001 foundation and federal experience. Conduct Reviews and Models: Perform security architecture reviews, code audits, and threat modeling to identify and remediate issues like API vulnerabilities or supply chain risks. Guide the Team: Mentor and assign tasks to security engineers, promoting secure practices through code reviews, pair programming sessions, and tooling. Optionally, manage hiring and performance reviews if interested. Define security perimeters within software architectures to establish clear trust boundaries.

About the job

At Spire, we are enhancing our approach to security engineering on a robust foundation, featuring a standardized AWS developer platform, a well-established toolchain for satellite software, ISO 27001 certification, and ongoing collaborations with government customers worldwide. In our pursuit of achieving CMMC Level 2+ compliance for Controlled Unclassified Information (CUI) handling in a defense-relevant environment, we are looking for a seasoned technical lead to direct our product security strategy and implementation.

Your primary role will be to 'shift security left' and weave it throughout our development processes. This includes embedding automated controls such as Software Bill of Materials (SBOM), vulnerability scanning, and secure CI/CD pipelines. You will also maintain standard libraries and infrastructure for authentication, authorization, and logging. Additionally, you will develop monitoring tools for operational services and assist teams in aligning their systems with NIST 800-171/CMMC and other security objectives whenever control inheritance is insufficient.

This is a senior, hands-on individual contributor role with leadership responsibilities where you will code, configure, and debug while mentoring a small team of security engineers. As the technical leader of our Product Security Team, you will collaborate closely with our Chief Software Engineer to ensure alignment with security objectives and the software roadmap, our AWS infrastructure team for cloud hardening, our development tooling team for satellite software security, and the cybersecurity/governance, risk management, and compliance (GRC) group. We maintain a lean setup where bureaucracy is managed primarily by GRC and TPM teams, allowing you to focus on impactful coding and architecture improvements based on our existing strengths.

In this role, you may also participate in discussions with peers at governmental entities and other organizations regarding security-related matters.

About Spire

Spire is at the forefront of technology and innovation, focusing on delivering reliable satellite data solutions globally. With a commitment to excellence and compliance, we partner with government customers and maintain high security standards across our products.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.