Sr. Network Security Engineer
Career Integrity & Compliance Audit Report
This vacancy has been independently reviewed by the OppaJob Transatlantic Career Intelligence Desk to confirm authentic direct employer recruiting, verify compensation transparency, and eliminate applicant processing fees.
Transatlantic Cost of Living & Purchasing Power Benchmark
Compare US ($) vs UK (Β£) Salary & Net Take-Home Pay
Calculate tax deductions, living costs, and purchasing power parity across US & UK metros.
Position Overview & Specifications
SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal ofΒ enabling human life on Mars.
SR. NETWORK SECURITY ENGINEER
SpaceX is looking for a Sr. Network Security Engineer with deep expertise in network security technologies and a strong emphasis on remote access VPN solutions (particularly Tailscale and WireGuard). This role requires a strong networking, infrastructure, systems, and software background and will focus heavily on designing, deploying, managing, securing, and troubleshooting enterprise remote VPN infrastructure. The employee will be a member of the Network Security Engineering team. The ideal candidate will be flexible, excel at multi-tasking, and flourish in a fast-paced and challenging environment. This person should be a self-starter, self-motivator, and possess the ingenuity to excel in this position.
RESPONSIBILITIES:
- Provide subject matter expertise on network security, firewalls, zero-trust architectures, and industry best practices, with primary focus on modern remote access VPN technologies.
- Architect, design, deploy, and secure enterprise remote access VPN solutions end-to-end (including supporting components such as routers, exit nodes, and connectors), with strong emphasis on Tailscale, WireGuard, IPsec, and SSL-based implementations.
- Own the full lifecycle of remote access infrastructure from initial design and ground-up implementation through ongoing management, policy definition, client distribution, and performance optimization.
- Configure, deploy, and support VPN clients across multiple platforms (Windows, macOS, Linux, iOS, Android) while performing advanced troubleshooting of complex connectivity and performance issues.
- Manage Linux-based infrastructure and network security systems with end-to-end ownership of configuration, custom tooling, and operational reliability.
- Develop automation and CI/CD workflows (Python or similar) to streamline deployment, policy enforcement, monitoring, and maintenance of remote access and security systems.
- Implement and support zero-trust remote access architectures; manage firewall policies and network security appliances with tight integration of VPN solutions.
- Serve as an escalation point for complex network security and remote connectivity challenges; collaborate cross-functionally with engineering and operations teams to gather requirements, design secure solutions, and communicate best practices.
- Monitor VPN performance, logs, and overall security posture; proactively identify issues, drive resolutions, and formalize processes and change management for remote access infrastructure.
- Apply system patches, perform periodic maintenance, and continuously improve the reliability and security of the remote access environment.
BASIC QUALIFICATIONS:
- Bachelorβs degree in a STEM field and 5+ years of network security experience; OR 8+ years of network security experience in lieu of a degree.
- 3+ years of experience securing networks, IT infrastructure, applications, endpoints, and/or APIs.
PREFERRED SKILLS AND EXPERIENCE:
- Proven experience leading the design, deployment, and operation of enterprise remote access VPN solutions (Tailscale, WireGuard, or comparable SSL/IPsec/WireGuard-based platforms) in large-scale, multi-site or multi-region environments with high reliability requirements.
- Deep hands-on expertise with modern remote access platforms, including client management, access policies, split-tunneling, performance tuning, and complex troubleshooting across diverse operating systems.
- Strong systems engineering foundation: deep networking knowledge, experience managing Linux infrastructure, and the ability to design and implement solutions from the ground up rather than solely administer existing systems.
- Demonstrated automation and software skills in Python for building custom tooling, services, and CI/CD workflows, with strong system design thinking to evaluate second- and third-order effects and build resilient systems.
- Comfortable reading and reviewing Go code, particularly in the context of understanding upstream changes in projects.
- Experience with dynamic routing (eBGP, iBGP, OSPF, SD-WAN), network segmentation, logging/alerting with SIEMs, and zero-trust architectures.
- Ability to diagnose low-level connectivity and performance issues and to work effectively with stakeholders and end users.
- Self-starter with excellent time-management, communication (written and verbal), and collaboration skills; mid-career professional who has successfully owned similar infrastructure or remote-access initiatives.
ADDITIONAL REQUIREMENTS:
- This role requires you to be onsite. Hybrid or remote work will not be considered.
- Willingness to work extended hours and weekends as needed.
COMPENSATION AND BENEFITS:
Pay Range:
Level 3: $165,000.00 - $235,000.00
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.
Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Employees in Washington State accrue paid sick time in compliance with state and federal law. Company shuttles are offered to employees for roundtrip travel from select Seattle locations to the SpaceX Redmond office Monday to Friday.Β Β Β
ITAR REQUIREMENTS:
- To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. Β§ 1157, or (iv) Asylee under 8 U.S.C. Β§ 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. Β
SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
Applicants wishing to view a copy of SpaceXβs Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out toΒ EEOCompliance@spacex.com.Β
Candidate Selection & Onboarding Process
Application & Resume Screening
Submit your tailored CV/Resume directly to the talent acquisition portal.
Technical & Competency Interviews
Virtual interviews with the hiring manager and multidisciplinary team.
Formal Offer & Benefits Negotiation
Written agreement outlining compensation, equity, retirement vesting, and relocation allowances.
Onboarding & Corporate Integration
Equipment provisioning, team orientation, and commencement of duties.
United States Work Authorization & Sponsorship Guide
Under United States immigration law (INA Β§ 101(a)(15)(H)), foreign nationals seeking full-time professional positions typically navigate either non-immigrant specialty occupation classifications or immigrant visa sponsorship:
Requires a relevant Bachelor's degree or higher. Employers must file an approved Labor Condition Application (LCA) with the US Department of Labor confirming the prevailing wage rate.
Canadian and Mexican citizens qualify under USMCA (TN status). F-1 STEM graduates benefit from 36-month aggregate work authorization through E-Verify enrolled employers.
Candidate Preparation Blueprint: Technology
Based on transatlantic hiring benchmarks for Sr. Network Security Engineer roles across SpaceX's corporate sector, successful applicants typically excel across three core dimensions:
Demonstrated portfolio evidence, architecture/system design case studies, or validated professional certifications directly applicable to Technology.
STAR method competency responses highlighting cross-functional leadership, conflict resolution, and delivering measurable enterprise ROI under tight timelines.
Total compensation expectation aligned within the benchmarked Salary Disclosed on Application bracket, including retirement vesting and health parity.
Explore Related Opportunities (El Segundo, CA)
Other high-paying verified positions matching your industry profile.
Senior Full Stack Cloud Architect (AI Platform)
Critical Care & ICU Registered Nurse (RN)
Renewable Power Systems & Grid Engineer
Director of Corporate Operations & Strategy
Lead Quantitative Risk Analyst
Staff Machine Learning & LLM Systems Engineer
Apply for this Position
Receive high-paying Technology openings directly to your inbox.