Senior Security Engineer

Remote, France

Loft Orbital

Loft builds space infrastructure to let any company, government, or institution harness the benefits of space.

View all jobs at Loft Orbital

Apply now Apply later

Wanna join the adventure?
Loft Orbital is revolutionizing access to space by building reliable, shareable satellites that drastically reduce the time and complexity traditionally required to get to orbit. We operate satellites, fly customer payloads, and handle entire missions from end-to-end. We’re a close-knit team of space enthusiasts, software experts, and cutting-edge technologists, all working together to make space simple for our customers.
As a Senior Security Engineer on our Security and Compliance Team, your mission will be to ensure our highly automated, containerized, and globally distributed infrastructure remains secure across the entire lifecycle, from architecture to incident response. You’ll be at the heart of our DevSecOps efforts, collaborating directly with infrastructure, software, product, and solution teams to scale Loft’s security maturity while embracing our startup agility and culture.
This is a hands-on, deeply collaborative role, offering broad scope, rapid growth opportunities, and yes, a chance to contribute to space missions

About the Role:

  • Champion DevSecOps best practices by integrating security controls into our CI/CD pipelines (GitLab CI).
  • Conduct threat modeling, application security assessments, and infrastructure penetration testing.
  • Help developers fix vulnerabilities by providing actionable remediation guidance.
  • Design, implement, and document secure architecture patterns for containerized and cloud-native workloads.
  • Educate engineering teams through training and real-time support to cultivate a "secure-by-default" culture.
  • Collaborate on automated security tooling for container image scanning, IaC validation, and RBAC compliance.
  • Support incident response processes, including forensics, root cause analysis, and continuous improvement.
  • Track and support compliance initiatives (ISO 27001, SOC 2), ensuring security controls align with frameworks.
  • Contribute to internal tooling using Python, CUE, or other scripting languages.

Must Haves:

  • Deep experience with cloud security in AWS, Azure, or GCP environments.
  • Strong knowledge of container and Kubernetes security (esp. RBAC, secrets management, and network policies).
  • Proficiency in at least one modern programming language (e.g., Python, Go, Java).
  • Hands-on experience with zero-trust architecture, service mesh, and software-defined networking.
  • Solid understanding of DevSecOps pipelines, IaC tools (Terraform, CUE, etc.), and secure build processes.
  • Familiarity with vulnerability scanning, SAST/DAST tools, and threat intelligence.
  • Proven ability to work in a fast-paced, startup-like environment.
  • Comfortable supporting and empowering developers in a collaborative, enablement-first model.
  • Strong communication and documentation skills.
  • Able to work effectively across multicultural and globally distributed teams.

Nice to Haves:

  • Hands-on experience with CUE or Python for policy-as-code or validation tooling.
  • Understanding of software-defined networking and security policy enforcement in mesh environments.
  • Contributions to open-source security tools or frameworks.
  • Familiarity with space mission operations or aerospace-specific security challenges.
 *Research shows that while men apply to jobs where they meet an average of 60% of the criteria, women and other marginalized people tend to only apply when they meet 100% of the qualifications. At Loft, we value respectful debate and people who aren’t afraid to challenge assumptions.  We strongly encourage you to apply, even if you don’t check all the boxes.
Who We Are
Loft Orbital builds “shareable” satellites, providing a fast & simple path to orbit for organizations that require access to space. Powered by our hardware & software products, we operate satellites, fly customer payloads onboard, and handle entire missions from end to end - significantly reducing the lead-time and risk of a traditional space mission.
Our standard interface enables us to fly multiple customer payloads on the same satellite, with capabilities such as earth imagery, weather & climate /science data collection, IoT connectivity, in-orbit demonstrations, and national security missions. Our customers trust us to manage their space infrastructure, so they can focus on what matters most to them: operating their mission and collecting their data.
At Loft, you’ll be given the autonomy and ownership to solve significant challenges, but with a close-knit and supportive team at your back. We believe that diversity and community are the foundation of an open culture. We are committed to hiring the best people regardless of background and make their time at Loft the most fulfilling period of their career.
We value kind, supportive and team-oriented collaborators. It is also crucial for us that you are a problem solver and a great communicator. As our team is international, you will need strong English skills to better collaborate, easily communicate complex ideas and convey important messages.
With 4 satellites on-orbit and a wave of exciting missions launching soon, we are scaling up quickly across our offices in San Francisco, CA | Golden, CO | and Toulouse, France.
As an international company your resume will be reviewed by people across our offices so please attach a copy in English.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  3  1  0

Tags: Application security AWS Azure CI/CD Cloud Compliance DAST DevSecOps Forensics GCP GitLab Incident response IoT ISO 27001 Java Kubernetes Pentesting Python SAST Scripting Security assessment SOC SOC 2 Terraform Threat intelligence Vulnerabilities

Perks/benefits: Startup environment

Regions: Remote/Anywhere Europe
Country: France

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.