Axiom Space Logo

Axiom Space

Senior Detection Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in TX, USA
Senior level
Remote
Hiring Remotely in TX, USA
Senior level
Leads detection engineering across the full lifecycle, including telemetry pipelines, SIEM/EDR queries, alert tuning, threat hunting, SOAR automation, purple-team validation, and forensic incident escalation. The role maps adversary behaviors to MITRE ATT&CK, enforces NIST and ITAR/EAR monitoring requirements, and maintains detection-as-code through version control and CI/CD. It also serves as a Tier 3 technical authority and communicates project status to stakeholders.
The summary above was generated by AI

Axiom Space is a human space exploration company, building era-defining space infrastructure and delivering technology-driven solutions that will empower civilization to transcend Earth. Beginning with Axiom Station, successor to the International Space Station, the company is pioneering a next-generation orbital settlement that will foster groundbreaking innovation and research in microgravity and drive the global space economy of tomorrow. Today, guided by the vision of leading humanity's expansion off planet, Axiom Space is the principal provider of commercial human spaceflight services and developer of advanced spacesuits for the Moon and beyond. For more information about Axiom Space, visit www.axiomspace.com.

Axiom Space fosters a work environment inclusive of all perspectives. We are the pioneers of commercial space, leading the transformation of low-Earth orbit into a global space marketplace. Our mission-driven team is seeking a bold and dynamic Senior Detection Engineer who is fueled by high accountability, execution horsepower, and driven to understand our world, science/technology, and life itself, for the benefit of all on Earth and beyond.

POSITION SUMMARY

Since Axiom Space is a very complex work environment, we are looking for a resilient, high-energy Senior Detection Engineer who is a technical lead responsible for designing, building, and maturing a world-class threat detection program. This role ensures the confidentiality, integrity, and availability of mission-critical data by transforming raw telemetry into high-fidelity, actionable intelligence. You will engineer the eyes of our security operations, utilizing the MITRE ATT&CK framework to identify visibility gaps and deploying automated detection logic to defend against sophisticated actors. You will be the technical authority on monitoring standards, ensuring all systems from orbital modules to terrestrial networks comply with NIST 800-53/171 and ITAR/EAR export control requirements.

KEY DUTIES & RESPONSIBILITIES

  • Detection Engineering: Lead the end-to-end detection lifecycle, including requirement gathering, log ingestion, query authoring (KQL/SPL), and continuous tuning of alerts in SIEM/EDR platforms

  • Adversary Research: Proactively research modern adversary Tactics, Techniques, and Procedures (TTPs) and operationalize that knowledge by mapping coverage to the MITRE ATT&CK framework

  • Advanced Telemetry Orchestration: Design and maintain complex logging pipelines, ensuring that identity, network, and application telemetry are normalized and searchable for rapid investigation

  • Security Automation (SOAR): Architect and implement automated response playbooks to enrich alerts, reduce false positives, and accelerate containment of potential threats

  • Regulatory Monitoring: Develop specialized monitoring logic to enforce ITAR/EAR data fencing and ensure technical alignment with NIST 800-53/171 auditing and monitoring controls

  • Purple Teaming & Validation: Execute atomic red team simulations and breach and attack exercises to verify detection efficacy and identify defensive blind spots

  • Threat Hunting: Conduct hypothesis driven hunts to find sophisticated threats that evade traditional signature-based security controls

  • Incident Escalation: Act as a Tier 3 technical subject matter expert during high severity security incidents, providing deep dive forensic log analysis and root-cause reconstruction

  • Detection as Code: Maintain detection logic using version control and CI/CD pipelines to ensure scalable, peer reviewed, and repeatable security operations

  • Communicating project progress, status, and potential issues to stakeholders and leadership

  • Implementing and maintaining agile project management methodologies throughout the project lifecycle

  • Perform additional job duties as assigned

QUALIFICATIONS: 

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Education & Experience

  • Bachelor’s degree in Computer Science, Information Security, or a related technical field (experience may be considered in lieu of a degree) with 7+ years of progressive experience in Detection Engineering, Threat Intelligence, or Senior Security Operations (SOC)

  • CISSP, GCIA, GCDA, GDAT, or equivalent advanced technical certifications are highly desired

  • Track record of making things happen in ambiguous, fast-moving environments

  • Uses good judgement to problem-solve proactively, positively impacting hard challenges

  • Demonstrated organization skills to meet tight deadlines with high quality results

Core Skills

  • Passion for space and the mission

  • Entrepreneurial, growth mindset

  • High EQ and ability to collaborate within teams and cross-functionally

  • Tech-solutioning in using systems and tools to move smarter and faster

Core Competencies:

Embody our core values of leadership, innovation, and teamwork. In addition, to perform the job successfully, an individual should demonstrate the following competencies:

  • Accountability

  • Technical Rigor

  • Execution Discipline

  • Pride of Delivery

WORK ENVIRONMENT:

Generally, an office environment, but can involve inside or outside work depending on the task.

Requirements 

  • This position may require access to export controlled technical data or technology subject to NASA regulations, International Traffic in Arms Regulations (ITAR), or Export Administration Regulations (EAR). In accordance with U.S. export control laws, final candidates may be required to undergo additional export control screening to determine eligibility for access. Meeting these requirements is a condition of employment

  • Management has the prerogative to select at any level for which the position is advertised

  • Must be willing to work evenings and weekends as needed to meet critical project milestones

Physical Requirements

  • Work may involve sitting or standing for extended periods (90% of the time)

  • May require lifting and carrying up to 25 lbs. (5% of the time)

  • Equipment and Machines

  • Standard office equipment (PC, phone, printer, etc.)

Axiom Space is proud to be an equal opportunity employer.  Axiom Space does not discriminate on the basis of race, regional color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with disability, or other applicable legally protected characteristics.

Similar Jobs

3 Days Ago
Remote or Hybrid
US
137K-191K Annually
Senior level
137K-191K Annually
Senior level
Information Technology
Engineer AI-powered threat detections, automated response playbooks, and continuous adversary emulation. Apply machine learning and LLMs to security operations, conduct threat hunting and AI red teaming, map coverage to MITRE ATT&CK, and develop detection-as-code through CI/CD. Build production-grade Python integrations, measurable containment capabilities, and safe autonomous defenses with guardrails. Mentor security professionals and collaborate across threat response, cyber defense engineering, and platform teams.
Top Skills: AIAtomic Red TeamCalderaCi/CdCloud SecurityCobalt StrikeCrowdstrikeEntra IdInfrastructure-As-CodeLlmsMachine LearningMicrosoft DefenderMicrosoft SentinelMitre Att&CkPolicy-As-CodePythonSIEMSoarSplunkTinesXdr
12 Days Ago
Remote
United States
152K-152K Annually
Senior level
152K-152K Annually
Senior level
Security • Cybersecurity
Develop and validate high-fidelity threat detections and asset-identification analytics for industrial control system environments. Analyze threat intelligence, packet captures, host logs, network and device artifacts, and large datasets to identify adversary behaviors. Mentor detection engineers, review and triage detection requests, document analytics processes, and partner with engineering and quality teams to address platform gaps. Support ICS cyber-range activities and contribute to detection testing, tuning, and knowledge-base maintenance.
Top Skills: Advanced Audit PoliciesAi ModelsAi ServicesAi ToolsDcsEcsElasticsearchFirewallsGoIcsLinuxLuaNetworkingNgrepPythonRubyRustScadaScapySnortSplunkSuricataTcpdumpTsharkVirtualizationWindowsWindows Event LoggingWiresharkYaraZeek
2 Days Ago
In-Office or Remote
2 Locations
168K-311K Annually
Senior level
168K-311K Annually
Senior level
Artificial Intelligence • Computer Vision • Hardware • Robotics • Metaverse
Design, build, validate, and maintain high-confidence detections across SIEMs and security platforms. Translate incidents, hunts, and threat intelligence into production-ready detection logic, drive detection-as-code workflows, and partner with responders to reduce noise, improve context, and monitor detection health. Coach teams, shape telemetry requirements, and own the full detection lifecycle from development to retirement.
Top Skills: Ci/CdCrowdstrikeGitKqlMicrosoft DefenderMicrosoft SentinelPythonSplSplunkSQL

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account