Sr. Network Security Engineer (VPN)Active

The opportunity

SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.

What you'll do

  • Provide subject matter expertise on network security, firewalls, zero-trust: architectures, and industry best practices, with primary focus on modern remote access VPN technologies.

  • Architect, design, deploy, and secure enterprise remote access VPN solutions: end-to-end (including supporting components such as routers, exit nodes, and connectors), with strong emphasis on Tailscale, WireGuard, IPsec, and SSL-based implementations.

  • Own the full lifecycle of remote access infrastructure from initial design: and ground-up implementation through ongoing management, policy definition, client distribution, and performance optimization.

  • Configure, deploy, and support VPN clients across multiple platforms: (Windows, macOS, Linux, iOS, Android) while performing advanced troubleshooting of complex connectivity and performance issues.

  • Manage Linux-based infrastructure and network security systems with: end-to-end ownership of configuration, custom tooling, and operational reliability.

  • Develop automation and CI/CD workflows (Python or similar) to streamline: deployment, policy enforcement, monitoring, and maintenance of remote access and security systems.

What they're looking for

  • Implement and support zero-trust remote access architectures; manage firewall: policies and network security appliances with tight integration of VPN solutions.
  • Serve as an escalation point for complex network security and remote: connectivity challenges; collaborate cross-functionally with engineering and operations teams to gather requirements, design secure solutions, and communicate best practices.
  • Monitor VPN performance, logs, and overall security posture; proactively: identify issues, drive resolutions, and formalize processes and change management for remote access infrastructure.
  • Apply system patches, perform periodic maintenance, and continuously improve: the reliability and security of the remote access environment.