Demo

Platform Security Engineer

TEAL DRONES INC
SLC, UT Full Time
POSTED ON 3/21/2026
AVAILABLE BEFORE 5/20/2026

Position Summary


Teal Drones is seeking an experienced Platform Security Engineer to own and mature our end-to-end software security posture across embedded Linux drone platforms, CI/CD infrastructure, and government cloud environments.

This role is the primary security authority responsible for threat modeling, vulnerability management, hardened firmware builds, secrets governance, and compliance assessments including Blue List / DoD evaluations.

You will collaborate directly with embedded firmware engineers, DevOps, various customers and platform teams to embed security into every layer of the software development lifecycle.  This role also includes many hands-on engineering duties.


Essential Duties and Responsibilities


Embedded Linux Platform & Firmware Security

  • Design, implement and enforce hardening standards for Ubuntu-based embedded Linux firmware running on Qualcomm QRB5165/8550 and similar SoC platforms.
  • Own the process and conduct hands-on activities of auditing, patching, and validating OS-level security updates (e.g., Ubuntu ESM, CVE triage) for offline-deployable drone firmware images.
  • Identify and eliminate unnecessary services and open from production firmware builds to reduce attack surface during compliance assessments.
  • Develop, author and maintain BitBake/Yocto security recipes and patches for Qualcomm BSP layers, ensuring build-time application of security hardening.

Software Build Pipeline Security

  • Secure CI/CD pipelines, including build isolation, artifact integrity, and protection against race conditions and cross-job artifact contamination.
  • Enforce code signing, reproducible builds, and chain-of-custody controls for firmware artifacts distributed via internal Apache/S3 infrastructure.
  • Implement and audit role-based access controls across SCM and build systems.
  • Define and enforce branch protection policies, merge request security gates, and automated SAST/SCA scanning in CI pipelines.

Secrets Management & Cryptography

  • Lead, design and implement a secrets management strategy across build servers, embedded devices, and cloud infrastructure (e.g., HashiCorp Vault, AWS Secrets Manager).
  • Govern cryptographic key lifecycle: RSA key generation, rotation, storage, and revocation for firmware signing, device authentication, and secure comms.
  • Eliminate hardcoded credentials and insecure secret injection patterns across build scripts, Dockerfiles, and configuration files.
  • Implement challenge-response and hardware-rooted authentication mechanisms for embedded device access control.

Government Cloud & Compliance Security

  • Guide and build architecture and security controls for GovCloud (AWS GovCloud, Azure Government) deployments, ensuring alignment with FedRAMP, NIST SP 800-171, CMMC, and DoD IL requirements.
  • Hands-on respond to Nessus/vulnerability scanner findings (e.g., open port documentation, service inventory) from internal security assessments and Blue List evaluations.
  • Maintain security documentation including system security plans (SSPs), POA&Ms, and network/service inventories for auditable compliance records.
  • Coordinate with assessors and program security officers during formal security reviews of drone systems and supporting infrastructure.

Network & Device Security

  • Conduct and review network security assessments of drone fleet infrastructure, including nmap/Nessus scanning, open port auditing, and firewall rule management.
  • Establish secure remote access patterns for embedded devices (ADB, SSH hardening, udev-based controls) and enforce least-privilege access models.
  • Oversee radio frequency and communications security for drone platforms, including secure licensing and MAC-based authentication workflows for radio hardware.
  • Monitor and respond to security events across fleet management infrastructure using Prometheus/Grafana or similar alerting pipelines.

Security Program Leadership

  • Define and maintain the organization’s platform security roadmap, policies, and standards across hardware, firmware, software, and cloud layers.
  • Champion a security-first engineering culture through training, threat modeling workshops, and design reviews.
  • Manage third-party security vendors, penetration testers, and compliance consultants.
  • Track and report on security KPIs and vulnerability SLA compliance to engineering leadership.

Required Qualifications


  • Bachelor's or master's degree in computer science, Computer Engineering, or a related field.
  • 5 years hands-on experience in application security engineering, product security, or a closely related security engineering role.
  • Deep experience with embedded Linux systems (Yocto/BitBake, systemd, OverlayFS, device bring-up).
  • Strong proficiency in Linux OS hardening: service minimization, Ubuntu security patching (ESM), CVE management, and secure boot.
  • Experience securing CI/CD pipelines (Jenkins, GitLab CI) including artifact signing, secret scanning, and build isolation.
  • Proficiency with container technologies, primarily Docker.
  • Solid understanding of cryptography fundamentals: RSA, TLS, symmetric encryption, PKI, key management best practices.
  • Familiarity with government cloud security frameworks: FedRAMP, NIST 800-171, CMMC Level 2/3, or DoD IL2/IL4.
  • Experience with vulnerability management tooling: Nessus, OpenVAS, nmap, or equivalent.
  • Strong proficiency in scripting (Bash, Python) for security automation and tooling.
  • Strong written communication skills for producing compliance documentation and security assessments.
  • Proficiency with secrets management platforms (HashiCorp Vault, AWS Secrets Manager, SOPS).

Additional Desired Qualifications


  • Active DoD security clearance or eligibility preferred.
  • Background in drone, robotics, or aviation ssystems security.edge of radio communications security and RF licensing compliance.
  • Relevant certifications: CISSP, OSCP, CSSLP, GREM, or equivalent.
  • Experience with Qualcomm SoC platforms (QRB5165 or similar) and Android Debug Bridge (ADB) workflows.

Physical Requirements and Working Conditions


  • Must be able to walk, stand, and navigate large indoor and outdoor facilities for extended periods of time.
  • Ability to lift, carry, and move materials and equipment weighing up to 25 lbs on a regular basis.
  • Use of personal protective equipment (PPE) may be required in designated areas or when performing specific tasks, in accordance with safety protocols and company policy.
  • May be required to climb ladders, stoop, kneel, or crouch during inspections, maintenance walk-throughs, or emergency response situations.
  • Regular exposure to facility operations including noise, dust, temperature fluctuations, and industrial equipment.
  • Occasional off-hours or weekend work required for emergency facility responses or projects as needed
  • Requires frequent use of a computer and other standard office equipment for documentation, communication, and coordination tasks.

Background Check

This position will require successfully completing a post-offer background check. Qualified candidates with a criminal history will be considered and are not automatically disqualified, consistent with federal and state law.

EEO and ITAR/EAR Work Authorization Disclosure

Red Cat Holdings provides equal employment opportunities (EEO) to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This position requires direct or indirect access to hardware, software, technology or technical data controlled under the International Traffic in Arms Regulations (ITAR) and the Export Administration Regulations (EAR). Successful candidates for positions subject to ITAR/EAR restrictions must provide proof of U.S. Citizenship or Permanent Residence and must not require sponsorship for export-restricted work authorization.

E-Verify

The company participates E-Verify ensure eligibility for employment and compliance with Right to Work rules.

Compensation: Salary plus generous annual equity package and potential bonuses.

Salary.com Estimation for Platform Security Engineer in SLC, UT
$120,102 to $143,723
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Platform Security Engineer?

Sign up to receive alerts about other jobs on the Platform Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at TEAL DRONES INC

  • TEAL DRONES INC SLC, UT
  • Position Summary Teal Drones is seeking a Customer Support Technician II who thrives in a dynamic environment and is passionate about solving technical cha... more
  • 2 Days Ago

  • TEAL DRONES INC SLC, UT
  • Position Summary The Manufacturing Team Lead is tasked with overseeing the production operations, providing a smooth and efficient manufacturing process. Y... more
  • 3 Days Ago

  • TEAL DRONES INC SLC, UT
  • Position Summary We are looking for a Propulsion Engineer to join our propulsion systems team. You will participate in the development, optimization, and t... more
  • 4 Days Ago

  • TEAL DRONES INC SLC, UT
  • Blue Ops delivers battle-proven Uncrewed Surface Vessels (USVs) with 10,000 hours in live-combat missions. Manufactured entirely in the U.S., we support Am... more
  • 4 Days Ago


Not the job you're looking for? Here are some other Platform Security Engineer jobs in the SLC, UT area that may be a better fit.

  • Proofpoint Salt Lake, UT
  • About Us Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, a... more
  • 1 Day Ago

  • lightspeeddms South Jordan, UT
  • Company Overview: Lightspeed is the leading provider of cloud-based software for dealerships, serving the Powersport, Marine, RV, Trailer, and Golf Car ind... more
  • 18 Days Ago

AI Assistant is available now!

Feel free to start your new journey!