POSITION SUMMARYSince Axiom Space is a very complex work environment, we are looking for a resilient, high-energy Senior Detection Engineer who is a technical lead responsible for designing, building, and maturing a world-class threat detection program. This role ensures the confidentiality, integrity, and availability of mission-critical data by transforming raw telemetry into high-fidelity, actionable intelligence. You will engineer the eyes of our security operations, utilizing the
MITRE ATT&CK framework to identify visibility gaps and deploying automated detection logic to defend against sophisticated actors. You will be the technical authority on monitoring standards, ensuring all systems from orbital modules to terrestrial networks comply with
NIST 800-53/171 and
ITAR/EAR export control requirements.
KEY DUTIES & RESPONSIBILITIES- Detection Engineering: Lead the end-to-end detection lifecycle, including requirement gathering, log ingestion, query authoring (KQL/SPL), and continuous tuning of alerts in SIEM/EDR platforms
- Adversary Research: Proactively research modern adversary Tactics, Techniques, and Procedures (TTPs) and operationalize that knowledge by mapping coverage to the MITRE ATT&CK framework
- Advanced Telemetry Orchestration: Design and maintain complex logging pipelines, ensuring that identity, network, and application telemetry are normalized and searchable for rapid investigation
- Security Automation (SOAR): Architect and implement automated response playbooks to enrich alerts, reduce false positives, and accelerate containment of potential threats
- Regulatory Monitoring: Develop specialized monitoring logic to enforce ITAR/EAR data fencing and ensure technical alignment with NIST 800-53/171 auditing and monitoring controls
- Purple Teaming & Validation: Execute atomic red team simulations and breach and attack exercises to verify detection efficacy and identify defensive blind spots
- Threat Hunting: Conduct hypothesis driven hunts to find sophisticated threats that evade traditional signature-based security controls
- Incident Escalation: Act as a Tier 3 technical subject matter expert during high severity security incidents, providing deep dive forensic log analysis and root-cause reconstruction
- Detection as Code: Maintain detection logic using version control and CI/CD pipelines to ensure scalable, peer reviewed, and repeatable security operations
- Communicating project progress, status, and potential issues to stakeholders and leadership
- Implementing and maintaining agile project management methodologies throughout the project lifecycle
- Perform additional job duties as assigned
QUALIFICATIONS: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Education & Experience- Bachelor's degree in Computer Science, Information Security, or a related technical field (experience may be considered in lieu of a degree) with 7+ years of progressive experience in Detection Engineering, Threat Intelligence, or Senior Security Operations (SOC)
- CISSP, GCIA, GCDA, GDAT, or equivalent advanced technical certifications are highly desired
- Track record of making things happen in ambiguous, fast-moving environments
- Uses good judgement to problem-solve proactively, positively impacting hard challenges
- Demonstrated organization skills to meet tight deadlines with high quality results
Core Skills- Passion for space and the mission
- Entrepreneurial, growth mindset
- High EQ and ability to collaborate within teams and cross-functionally
- Tech-solutioning in using systems and tools to move smarter and faster
Core Competencies:Embody our core values of
leadership,
innovation, and
teamwork. In addition, to perform the job successfully, an individual should demonstrate the following competencies:
- Accountability
- Technical Rigor
- Execution Discipline
- Pride of Delivery
WORK ENVIRONMENT:Generally, an office environment, but can involve inside or outside work depending on the task.
Requirements- This position may require access to export controlled technical data or technology subject to NASA regulations, International Traffic in Arms Regulations (ITAR), or Export Administration Regulations (EAR). In accordance with U.S. export control laws, final candidates may be required to undergo additional export control screening to determine eligibility for access. Meeting these requirements is a condition of employment
- Management has the prerogative to select at any level for which the position is advertised
- Must be willing to work evenings and weekends as needed to meet critical project milestones
Physical Requirements- Work may involve sitting or standing for extended periods (90% of the time)
- May require lifting and carrying up to 25 lbs. (5% of the time)
- Equipment and Machines
- Standard office equipment (PC, phone, printer, etc.)