Back to Jobs
Blue Moon Metals
Engineering & Architecture 7h ago

Senior Security Risk Engineer

Muon Space
United StatesUnited States
Full-time
$154,000 - $207,000
Senior-Level

Job Description

Key Skills Required

Master these to land this role

QA Engineer1h 50mFree Trial ✨
Start 10-Day Free Trial
CybersecurityRisk AssessmentITAR/EARNIST 800-171

Want to know if you're a match for this job?

Calculate My Match Score

Muon seeks a Senior Security Risk Engineer to join their Security Engineering & IT team. The ideal candidate brings 5+ years of deep expertise across multiple security domains and can operate independently to protect Muon’s infrastructure, data, and people.

The role focuses on security risk — identifying, assessing, and helping address risks across the environment and every company function, from engineering and IT to operations, finance, and the supply chain. You will run risk assessments, prioritize what matters most, drive remediation with the teams that own it, and give leadership a clear, current picture of Muon’s risk posture, including compliance efforts such as NIST 800-171 and ITAR/EAR.

This position may be fully on-site at their San Jose office, hybrid, or fully remote from an approved U.S. location.

Responsibilities:

  • Lead security risk assessments across the company — identify, analyze, and prioritize risks across engineering, IT, operations, and business functions
  • Maintain a risk register and provide a clear, current view of Muon’s risk posture for leadership
  • Partner with teams across the company to drive remediation of identified risks and track them to closure
  • Assess the security risk of new tools, vendors, third parties, and architectural or process changes before adoption
  • Define and apply a consistent risk framework and methodology — likelihood and impact scoring, risk acceptance, and exceptions
  • Map risks and controls to compliance requirements such as NIST 800-171 and CMMC, and support audits and assessments
  • Report risk trends and metrics to leadership and recommend where to invest to reduce the most risk
  • Help teams build risk-aware processes and take ownership of the risks they hold

Qualifications:

  • 5+ years in information security, security engineering, or security risk/GRC roles
  • Hands-on experience running security risk assessments and managing a risk register
  • Strong understanding of security risk frameworks and methodologies (e.g., NIST RMF / 800-30, FAIR, or similar)
  • Familiarity with compliance frameworks such as NIST 800-171, CMMC, SOC 2, or ISO 27001
  • Excellent written and verbal communication skills — able to convey risk and priorities to both engineers and leadership

Nice-to-Have Skills:

  • Relevant certifications (CISSP, CRISC, CISA, or similar)
  • Background in environments subject to ITAR/EAR export control requirements

How would you rate this job post?

See what other professionals think about this role.

banner
logo

Blue Moon Metals

View Company Profile

Blue Moon Metals is a premier, enterprise-grade mineral exploration platform engineered to orchestrate massive-scale polymetallic resource ecosystems and intelligent geological workflows. Operating as a highly integrated critical metals hub, the company eliminates the operational friction of traditional localized extraction by seamlessly deploying advanced subterranean data telemetry, rigorous resource estimate architectures, and cohesive brownfield development frameworks. Moving beyond rigid legacy mining operations, Blue Moon Metals empowers global supply chains, clean energy conglomerates, and industrial manufacturers to dynamically synchronize their critical mineral pipelines with elite exploration execution. Under the hood, their sophisticated geological infrastructure natively handles complex 3D deposit modeling, instantaneous assay data ingestion, and seamless sustainable extraction planning, ensuring frictionless asset readiness and uncompromising environmental stewardship. What sets Blue Moon Metals apart is its uncompromising dedication to frictionless exploration orchestration; by bridging the gap between strategic tier-1 jurisdiction acquisition and rigorous polymetallic development, the company empowers the critical metals market to radically accelerate its resource velocity, optimize capital cost intensity, and build an unassailable foundation for continuous commercial dominance in the modern mining landscape.

Safety First

  • Never pay for a job application.
  • Do not share sensitive bank info.
  • Verify the client before starting work.
Learn More