1

Security Engineering Jobs in California (NOW HIRING)

As a Security Engineering Lead, you will design, build, and own the security infrastructure that protects Northwood's ground station network, cloud environments, and corporate systems. This senior ...

As a Manager of Security Engineering, you will be responsible for leading the security team, managing vulnerability processes, and ensuring compliance with security standards while collaborating with ...

As Security Engineering Lead, you will design, build, and own the security infrastructure that protects Northwood's ground station network, cloud environments, and corporate systems. Responsibilities ...

As the Security Engineering Lead, you will build and own corporate IT and security operations, overseeing day-to-day management while establishing a security monitoring foundation for mission ...

Security Engineering Manager

Torrance, CA · On-site

$156K - $232K/yr

As Security Engineering Lead, you will design, build, and own the security infrastructure that protects Northwood's ground station network, cloud environments, and corporate systems. This is a senior ...

This leader will own the core security engineering platform, including identity and access management, security tooling, and the systems that help engineers build and operate secure products by ...

About the Role Reporting to the Infrastructure Director of Engineering, you are a pragmatic security leader who acts as a business enabler rather than a gatekeeper. You thrive in a high-velocity, non ...

next page

Showing results 1-20

Security Engineering information

See California salary details

$60.7K

$150.8K

$202.8K

How much do security engineering jobs pay per year?

As of Aug 25, 2026, the average yearly pay for security engineering in California is $150,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $141,100.00 and $156,400.00 per year, depending on experience, location, and employer.

What is security engineering?

Security engineering is a field focused on designing, implementing, and maintaining systems and processes that protect computer systems, networks, and data from unauthorized access, attacks, and other security threats. Security engineers analyze potential vulnerabilities, develop security protocols, and respond to incidents to ensure the safety and integrity of digital assets. They work with a range of technologies, including firewalls, intrusion detection systems, encryption, and access controls, often collaborating with IT and development teams to integrate security best practices throughout an organization’s infrastructure.

What are the key skills and qualifications needed to thrive as a security engineer, and why are they important?

To thrive as a Security Engineer, you need expertise in network security, threat analysis, vulnerability assessment, and typically a degree in computer science or a related field. Familiarity with security tools like SIEM platforms, firewalls, intrusion detection systems, and certifications such as CISSP or CEH are commonly required. Strong problem-solving skills, attention to detail, and effective communication help you anticipate risks and work collaboratively to safeguard systems. These skills are crucial for protecting organizational assets, mitigating cyber threats, and ensuring regulatory compliance.

What are some common challenges security engineers face when working with cross-functional teams?

Security Engineers often collaborate closely with developers, IT operations, and compliance teams to ensure that security best practices are integrated throughout the organization. One common challenge is bridging the knowledge gap between security requirements and business objectives, as other teams may not always understand the implications of security vulnerabilities. Security Engineers must balance advocating for robust security measures while supporting the team's need for agility and innovation. Strong communication skills and a collaborative mindset are essential for addressing these challenges and fostering a security-focused culture across departments.

What is the difference between Security Engineering vs Security Analyst?

AspectSecurity EngineeringSecurity Analyst
Required CredentialsCertifications like CISSP, CEH, Security+; Bachelor's in CS or related fieldCertifications like Security+, GIAC, CISSP; Bachelor's in CS, IT, or related field
Work EnvironmentDesigning and implementing security systems, working with development teamsMonitoring security alerts, analyzing threats, responding to incidents
Employer & Industry UsageTech companies, cybersecurity firms, large enterprisesAny organization with IT infrastructure, government, finance, healthcare

Security Engineering focuses on designing, building, and maintaining security systems, while Security Analysts monitor and respond to security threats. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ: one creates security solutions, the other manages security operations.

How much do security engineers earn?

Security engineers typically earn a median annual salary ranging from $90,000 to $130,000, depending on experience, location, and certifications such as CISSP or CEH. Entry-level positions may start lower, while experienced professionals with specialized skills can earn over $150,000 annually.

What do you do as a security engineer?

A security engineer designs, implements, and maintains security systems to protect an organization’s networks, systems, and data. They analyze vulnerabilities, develop security protocols, and use tools like firewalls and intrusion detection systems, often holding certifications such as CISSP or CEH. Their work involves continuous monitoring and updating security measures to defend against cyber threats.
Infographic showing various Security Engineering job openings in California as of August 2026, with employment types broken down into 82% Full Time, 14% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $150,773 per year, or $72.5 per hour.

Security Engineering Manager

Torrance, CA • On-site

Northwood
Health Care and Social Assistance • 51 - 200 employees

$150 - $230/hr

Other

Re-posted 15 days ago


Job description

Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology. We are building a global network of phased array ground stations that enable real‑time, reliable communication for satellite missions such as national security, global connectivity, and disaster response. With a vertically integrated approach, Northwood designs, builds, and rapidly deploys scalable systems that power the next generation of space missions.

As a Security Engineering Lead, you will design, build, and own the security infrastructure that protects Northwood's ground station network, cloud environments, and corporate systems. This senior technical leadership role calls for an engineer equally comfortable architecting security platforms and mentoring a growing team. You will lead the buildout of our SIEM and EDR capabilities, own corporate network security infrastructure including firewall management, and drive secure deployments across on‑premises environments and AWS GovCloud and Microsoft GCC.

Responsibilities
  • SIEM & Detection Engineering
    • Own the full lifecycle of Northwood's SIEM platform — architecture, log source onboarding across ground stations and cloud infrastructure, correlation rule development, tuning, and automated alerting.
    • Build and maintain EDR platform operations, including agent deployment, policy management, alert triage, and integration with SIEM workflows.
    • Develop and continuously improve detection content, incident response playbooks, and SOC processes for a distributed, mission‑critical environment.
    • Integrate security tooling with broader infrastructure through APIs and automation, reducing manual operational burden over time.
    • Lead the deployment and ongoing tuning of User and Entity Behavior Analytics (UEBA) capabilities within the SIEM environment, establishing behavioral baselines and refining detection models to surface insider threats and anomalous activity.
    • Develop and maintain UEBA use cases, correlation rules, and risk scoring models, working closely with the SOC to ensure alerts are actionable and high‑fidelity.
    • Analyze UEBA telemetry to identify patterns indicative of insider risk, compromised accounts, or policy violations, and drive remediation in coordination with HR, legal, and security leadership.
  • Network & Infrastructure Security
    • Manage and maintain FortiGate firewall infrastructure, including policy management, segmentation, firmware lifecycle, and log integration.
    • Administer and optimize Cloudflare VPN and Zero Trust Network Access (ZTNA) configurations to support secure remote access and site connectivity.
    • Deploy, harden, and maintain security infrastructure across on‑premises environments and AWS GovCloud and Microsoft GCC, adhering to applicable compliance frameworks.
    • Partner with product infrastructure engineers to ensure security is embedded in network and system architecture from the ground up.
    • Deploy and manage email security infrastructure, including administration of platforms such as Proofpoint or Sublime Security, policy tuning, threat response, and integration with SIEM workflows.
  • DLP Policy & Controls
    • Design, implement, and maintain Data Loss Prevention (DLP) policies across endpoint, network, and cloud environments to protect sensitive data in alignment with CMMC and NIST 800‑53 control requirements.
    • Develop and enforce DLP rules and rule sets across email, web, and SaaS platforms, continuously tuning policies to reduce false positives while maintaining strong data protection coverage.
    • Partner with legal, compliance, and IT teams to classify data assets and translate classification requirements into enforceable DLP controls across the enterprise.
  • Identity & Access
    • Support Okta administration in coordination with the IT operations team, including SSO integrations, MFA policy enforcement, lifecycle management, and SIEM log ingestion.
    • Ensure routine integrations between identity, endpoint, and security tooling are maintained as new systems are onboarded — this role is not responsible for general IT helpdesk or end‑user support operations.
  • Infrastructure as Code & Automation
    • Define and enforce IaC practices (Terraform, Ansible, or equivalent) for all security infrastructure deployments, ensuring repeatability, auditability, and compliance alignment.
    • Develop scripting and automation (Python, Bash, PowerShell) to operationalize security workflows, reduce toil, and support compliance evidence collection.
  • Team Leadership
    • Hire, mentor, and develop security engineers as the team scales.
    • Serve as the primary security engineering subject‑matter expert in cross‑functional collaboration with network operations, mission management, and product engineering teams.
    • Contribute to security architecture reviews and provide technical guidance on regulatory requirements including CMMC, NIST 800‑171, and FedRAMP.
Basic Qualifications
  • 5+ years in security engineering or DevSecOps with demonstrated experience in a technical leadership capacity.
  • Hands‑on experience building and operating SIEM platforms, including log ingestion, detection rule development, and alert management.
  • Experience deploying and managing EDR solutions in a production environment.
  • Demonstrated FortiGate administration experience, including firewall policy management and network segmentation.
  • Experience deploying and securing workloads in AWS GovCloud and/or Microsoft GCC environments.
  • Proficiency with Infrastructure as Code tooling (Terraform, Ansible, or equivalent) applied to security infrastructure.
  • Experience administering Okta, including SSO, MFA, lifecycle management, and SIEM integration.
  • Familiarity with compliance frameworks relevant to defense and government environments (CMMC, NIST 800‑171, FedRAMP).
  • Ability to obtain and maintain a TS/SCI clearance.
  • U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations.
Preferred Qualifications
  • Active TS clearance or higher.
  • Experience with Cloudflare Zero Trust / ZTNA configuration and administration.
  • Hands‑on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or Panther.
  • Experience with EDR platforms such as CrowdStrike Falcon or SentinelOne.
  • Experience building and maintaining User and Entity Behavior Analytics (UEBA) capabilities for insider risk detection, including rule development, baselining, and integration with SIEM or dedicated UEBA platforms.
  • Background in aerospace, defense, critical infrastructure, or other regulated industries.
  • ITAR compliance experience.
  • CISSP, CISM, CISA, or equivalent professional certification.
Additional Requirements

This position requires successfully obtaining and maintaining a Top Secret Security Clearance as a condition of employment. While the clearance may not be immediately necessary upon hire, we encourage you to initiate the application process promptly upon accepting this offer. Your ability to secure the necessary clearance is essential for fulfilling key responsibilities of the role. Should you be unable to obtain it, Northwood Space reserves the right to modify or terminate your employment to align with optional needs.

Additional Information

If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know.

To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

Northwood Space is an Equal Opportunity Employer; employment with Northwood Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

#J-18808-Ljbffr