Security Engineer, Software Security job opportunity at Saronic Technologies, Inc..



bot
Saronic Technologies, Inc. Security Engineer, Software Security
Experience: 6 Years
Pattern: On-site
apply Apply Now
Salary:
Status:

Cybersecurity

Copy Link Report
degreeBachelor's (B.Sc.)
loacation New Orleans, United States Of America
loacation New Orleans....United States Of America

Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms.Security at Saronic is a force multiplier. We're seeking a Security Engineer focused on software and systems security to own the security of Saronic's software platforms, build systems, and deployment infrastructure from development through production. Saronic builds on NixOS and Rust, and we need someone who understands how to secure software at every stage of the lifecycle, from reproducible builds and dependency management through CI/CD pipeline security, runtime hardening, and secure deployment to vessel and cloud environments. You will be the technical authority on how Saronic builds, ships, and runs secure software.\nKey Responsibilities:Own the application security posture for Saronic's software platforms, including Rust-based services, system software, and supporting applicationsLead secure code review, SAST, DAST, and fuzzing efforts, and define secure coding standards for Rust development including memory safety practices, safe FFI boundaries, and secure error handlingConduct threat modeling for software systems and translate findings into actionable security requirements integrated into design reviews and sprint planningDrive vulnerability management for software dependencies, including tracking, prioritization, and remediation of vulnerabilities in third-party crates and librariesSecure and harden NixOS configurations for vessel platforms and development infrastructure, leveraging Nix's reproducibility and declarative model for security enforcementDesign system hardening profiles in NixOS including kernel hardening, service isolation, mandatory access controls, and minimal attack surface configurationsDefine and enforce package management and dependency policies within the Nix ecosystem, ensuring build closures are auditable, reproducible, and free from unauthorized or vulnerable packagesArchitect secure system update and rollback mechanisms using NixOS capabilities, ensuring fleet-wide consistency and integrityDesign and implement security controls across the CI/CD pipeline including source integrity, build isolation, artifact signing, and deployment verification with build environments that are ephemeral, isolated, and hardenedBuild and maintain software supply chain security practices aligned to SLSA framework principles, including provenance tracking, hermetic builds, signed attestations, and SBOM generationIntegrate security scanning (SAST, SCA, container scanning, secrets detection) into CI/CD pipelines as automated guardrails, and create self-service pipeline templates that enable teams to ship without bottlenecksDesign secure deployment patterns for vessel software updates, including secure delivery, integrity verification, and rollback capabilitiesImplement runtime application security controls including logging, monitoring, and anomaly detection for deployed servicesDefine software and systems security standards, patterns, and reference architectures that engineering teams adopt as the default secure pathRequired Qualifications:6+ years of hands-on experience in application security, product security, DevSecOps, or a closely related software security engineering roleStrong experience with Rust security including safe/unsafe boundaries, FFI security, memory safety patterns, and dependency auditingDemonstrated experience securing Linux-based systems, with specific experience or strong aptitude for NixOS, Nix package management, and declarative system configurationDeep expertise in CI/CD pipeline security including build system hardening, artifact signing, supply chain integrity (SLSA), and automated security scanning integrationProven experience building DevSecOps programs that embed security into development workflows without creating bottlenecksStrong understanding of software supply chain security including dependency management, SBOM, provenance tracking, and vulnerability management for third-party componentsProficiency in Rust, Python, Go, or Nix for building security tooling, automation, and pipeline integrationsAbility to obtain and maintain a security clearancePreferred Qualifications:Experience in defense, aerospace, robotics, autonomy, or other high-assurance environmentsHands-on NixOS experience including writing Nix derivations, managing flakes, and building custom NixOS modules for system hardeningExperience securing software for embedded or resource-constrained Linux environmentsFamiliarity with NIST SP 800-171, NIST SP 800-53, NIST SP 800-218, or supply chain signing frameworks (sigstore, in-toto, Notary)Experience operating in AWS GovCloud or FedRAMP-regulated environmentsRelevant certifications such as OSWE, OSCP, GWAPT, GWEB, AWS Security Specialty, or equivalent\nBenefits:Medical Insurance: Comprehensive health insurance plans covering a range of servicesSaronic pays 100% of the premium for employees and 80% for dependentsDental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision careSaronic pays 100% of the premium under the basic plan for employees and 80% for dependentsTime Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parentsCompetitive Salary: Industry-standard salaries with opportunities for performance-based bonusesRetirement Plan: 401(k) plan with company matchStock Options: Equity options to give employees a stake in the company’s successLife and Disability Insurance: Basic life insurance and short- and long-term disability coveragePet Insurance: Discounted pet insurance options including 24/7 Telehealth helplineAdditional Perks: Free lunch benefit and unlimited free drinks and snacks in the officeThis role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in 8 U.S.C. 1324b(a)(3). Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.

Other Ai Matches

Emergency Preparedness & Management (EPM) Specialist Applicants are expected to have a solid experience in handling G&A related tasks
Senior Electrical Engineer – PCBA Schematic & Layout Applicants are expected to have a solid experience in handling Engineering related tasks
Policy Analyst Applicants are expected to have a solid experience in handling Government Relations related tasks
Machinist Applicants are expected to have a solid experience in handling Production related tasks
Contracts Manager Applicants are expected to have a solid experience in handling Growth related tasks
Global Security Operations Center (GSOC) Operator Applicants are expected to have a solid experience in handling G&A related tasks
Marine Designer/Drafter Applicants are expected to have a solid experience in handling Engineering related tasks
Trim & Drill – Composites Technician Applicants are expected to have a solid experience in handling Production related tasks
Structures Engineer Applicants are expected to have a solid experience in handling Engineering related tasks
Superintendent of Heavy Lift Operations Applicants are expected to have a solid experience in handling Port Alpha related tasks
Technical Writer Applicants are expected to have a solid experience in handling Engineering related tasks
Training Improvement Specialist Applicants are expected to have a solid experience in handling Engineering related tasks
Configuration Manager – CAD Administration Applicants are expected to have a solid experience in handling Engineering related tasks
Diesel Mechanic Applicants are expected to have a solid experience in handling Mission Services related tasks
Diesel Mechanic Applicants are expected to have a solid experience in handling Mission Services related tasks
Production Manager Applicants are expected to have a solid experience in handling Production related tasks
Material Handler- 2nd Shift Applicants are expected to have a solid experience in handling Supply Chain related tasks
Finishing – Composites Technician Applicants are expected to have a solid experience in handling Production related tasks
Supplier Quality Engineer Applicants are expected to have a solid experience in handling Supply Chain related tasks
Mission Operations Coordinator, Training Applicants are expected to have a solid experience in handling Training related tasks
Hardware Engineer - New Orleans Applicants are expected to have a solid experience in handling Engineering related tasks
Staff Naval Architect Applicants are expected to have a solid experience in handling Engineering related tasks
Loads & Dynamics Engineer Applicants are expected to have a solid experience in handling Engineering related tasks