{"id":1937744,"url":"https://alion.io/job/umbra-security-operations-engineer","title":"Security Operations Engineer","company":{"id":58866,"name":"Umbra","domain":"umbra.space","url":"https://alion.io/company/umbra-space","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workable","truth_index":{"grade":"A","score":89,"open_postings":8,"ghost_share":0,"stale_share":0.25,"repost_share":0,"time_to_fill_p50_days":63,"computed_at":"2026-10-08T05:49:30Z"}},"role":"Security","role_family":"Security","seniority":null,"employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Arlington, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":145000,"max":175000,"currency":"USD","period":"year","gross":null,"usd_annual":175000},"salary_estimate":null,"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"DLP","optional":false},{"name":"DNS","optional":false},{"name":"FedRAMP","optional":false},{"name":"FortiGate","optional":false},{"name":"IAM","optional":false},{"name":"Least Privilege","optional":false},{"name":"Nessus","optional":false},{"name":"Okta","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"TCP/IP","optional":false},{"name":"VPN","optional":false},{"name":"Windows","optional":false}],"status":"live","first_seen_at":"2026-10-05T00:00:00Z","employer_posted_date":"2026-10-05","last_verified_at":"2026-10-08T21:18:05Z","board_verified":true,"closed_at":null,"days_open":4,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":4},"description":"Umbra is an American space technology company delivering advanced systems, from sensors to spacecraft, that empower customers worldwide with unmatched access to critical information from space. Our mission is simple and ambitious: redefine space-for people, systems, and missions in every domain. Umbra’s ecosystem operates through three business units: Remote Sensing (the data), Space Systems (the components), and Mission Solutions (the platforms). Together, our teams develop capabilities that deliver persistent access, resilient performance, and mission-ready solutions, advancing U.S. space leadership while keeping the world safe and informed.\nAbout the Team\nUmbra’s Information Technology organization operates as a shared service and strategic capability, embedding security, automation, and operational rigor directly into the platforms the business depends on. Security is not an overlay, it is designed, implemented, and evidenced through IT platforms.\nAbout the Role\nThe Security Operations Engineer is a hands-on technical role responsible for designing, implementing, operating, and continuously improving security controls across Umbra’s corporate technology platforms. This position serves as the primary conduit between Information Security (InfoSec) and IT execution, ensuring security policy is translated into durable, auditable technical controls.\nSitting within Core Infrastructure, this role owns the security configuration control plane for corporate IT: identity, access, email security, data protection, network security, endpoint posture, vulnerability management, logging, and detection. The role partners closely with InfoSec on risk management, program deployment, POA&M execution, and audit readiness.\nThis is an engineering-first role focused on building and integrating secure-by-default platforms, not a SOC-only or alert-triage position.\nThis position is based on-site in either our Arlington, VA office or Reston, VA office.\nKey Responsibilities\nSecurity Engineering: Design, implement, and operate technical security controls across identity, endpoint, network, cloud, email, and SaaS environments, translating InfoSec policies and standards into enforceable configurations and platform guardrails.\nVulnerability Management: Own the technical vulnerability management lifecycle across corporate IT platforms, including scanning and coverage, risk-based prioritization, remediation coordination, validation, exception tracking, and reporting.\nAdminister vulnerability scanning tools and partner with infrastructure and application owners to drive remediation of vulnerabilities, configuration issues, and critical or actively exploited exposures.\nEmail Security: Design and maintain email security controls, including SPF, DKIM, DMARC, secure mail routing, monitoring, and protection against phishing, spoofing, and domain abuse.\nData Loss Prevention: Design, implement, and tune DLP controls across email, endpoints, cloud storage, messaging, and SaaS platforms, including controls supporting CUI and other regulated data.\nIdentity & Access: Secure and operate IAM capabilities including SSO, MFA, SCIM/JIT, PAM, least-privilege access, and access-review remediation.\nEndpoint Security: Partner with IT teams to implement and maintain security baselines across Windows and macOS environments, including encryption, patching, device trust, and endpoint security tooling.\nNetwork & Cloud Security: Implement and maintain security controls across network and cloud environments, including segmentation, firewalls, ZTNA/VPN, logging, and cloud security guardrails.\nDetection & Incident Response: Operate and tune security monitoring and detection capabilities, integrating signals across identity, endpoint, email, and DLP platforms and supporting investigation and remediation of security incidents.\nCompliance & Audit Readiness: Maintain technical documentation, configuration artifacts, and evidence supporting NIST, CMMC, FedRAMP, and other applicable security and compliance requirements.\nAutomation & Continuous Improvement: Automate security controls, vulnerability management, evidence collection, and compliance workflows to improve reliability and reduce manual effort.\nCross-Functional Collaboration: Partner closely with InfoSec, Core Infrastructure, Digital Workplace, Enterprise Applications, Legal, and other stakeholders to implement security requirements and remediate technical risks.\nParticipate in security-related change reviews, CABs, and other governance forums as needed.\nPerform other duties as assigned.\nRequirements\nRequired Qualifications\n5+ years of experience in security engineering, security operations, or infrastructure security roles.\nHands-on experience managing the vulnerability lifecycle, including authenticated scanning, finding validation, risk-based prioritization, remediation coordination, and verification of closure.\nStrong hands-on experience designing and deploying:\nEmail authentication: SPF, DKIM, and DMARC\nEnterprise DLP controls\nStrong hands-on experience implementing security controls across:\nIdentity & Access Management\nEndpoint management (Windows/macOS)\nNetwork and cloud platforms\nDemonstrated ability to translate security policy into enforceable technical implementation.\nExperience coordinating patches, upgrades, and configuration changes across technical teams while balancing security risk, operational availability, and change-management requirements.\nExperience supporting & automating audit and compliance evidence collection.\nStrong troubleshooting and incident response skills.\nDesired Qualifications\n10+ years of experience in security engineering, security operations, or infrastructure security roles.\nExperience with vulnerability assessment platforms, such as Tenable/Nessus, and patch management tooling, such as BigFix.\nExperience with Okta: IdP, SSO, MFA, SCIM, and workflows.\nStrong hands on experience designing and deploying eDiscovery and retention workflows.\nExperience with FortiGate & Cisco network technologies.\nStrong understanding of TCP/IP, DNS, HTTP/S, VPNs, SD-WAN, and routing/switching.\nExperience deploying DLP in regulated environments.\nFamiliarity with NIST, CMMC, and FedRAMP.\nExperience automating security controls, vulnerability remediation workflows, or evidence collection.\nExposure to cloud security tooling and observability platforms.\nProficiency in Python, Bash, or PowerShell.\nBenefits\nFlexible Time Off, Sick, Family & Medical Leave\nMedical, Dental, Vision, Life, LTD, STD (employer funded)\nVol Life, Critical Illness, Accidental, Hospital Indemnity, Pet Insurance (employee funded)\n401k with 3% non-elective company contribution\nStock Options\nFree Parking\nFree lunch daily in office\nUmbra is an Equal Opportunity Employer. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religious creed, national origin, physical or mental disability, protected veteran status, or any other characteristic protected by federal, state, or local law.\nEmployment Eligibility Verification\nIn compliance with federal laws, all hired persons will be required to verify their identity and eligibility to work in the United States by completing the required Employment Eligibility Verification Form (I-9 Form) upon hire.\nITAR/EAR Requirements\nThis position may include access to technology and/or data that is subject to U.S. export controls pursuant to ITAR and EAR. To comply with federal export controls, all persons hired must be a U.S. citizen, U.S. national, U.S. lawful permanent resident, refugee or asylee as defined by 8 U.S.C. § 1324b(a)(3), or must otherwise be eligible to obtain the required authorizations from the U.S. Department of State and/or U.S. Department of Commerce as applicable.\nPay Transparency\nThis job posting may cover multiple career levels. To ensure greater transparency, we provide base salary ranges for all roles, regardless of location. Our standard pay ranges are based on the role’s function and level, benchmarked against similar growth-stage companies. Compensation may vary based on geographical location, as certain regions may have different cost-of-living factors. The final offer will also be influenced by the candidate's skills, responsibilities, and relevant experience.\nCompensation Range\nThe Compensation Range for this role is $145,000 - $175,000 DOE.","description_format":"text","description_chars":8381,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["401k plan","Flexible time off","Stock options"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Space & Aerospace","Earth Observation"],"lifecycle":[{"event":"open","at":"2026-10-06T00:21:18Z"}],"visa":[],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":3,"expected_fill_days":63,"reasons":["conf:1","velocity","win:early"],"computed_at":"2026-10-08T05:49:30Z"},"pay":{"stated_usd_annual":175000,"is_top_pay":true},"html_url":"https://alion.io/job/umbra-security-operations-engineer","json_url":"https://alion.io/job/umbra-security-operations-engineer.json","meta":{"generated_at":"2026-10-09T00:24:19Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":481,"day_limit":5000,"remaining_today":4519,"minute_limit":60,"resets_at":"2026-10-10T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":58866},"rest":"https://alion.io/mcp/rest/get_company?id=58866"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fumbra-security-operations-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fumbra-security-operations-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fumbra-security-operations-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/umbra-security-operations-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fumbra-security-operations-engineer"}]}