--- title: 'Identity & Endpoint Security Engineer at Northwood Space' canonical: 'https://feeny.ai/job/identity-endpoint-security-engineer-northwood-space-torrance-rt8gnc0f4jty' type: 'job' last_seen: '2026-09-10' --- # Identity & Endpoint Security Engineer at Northwood Space - **Company:** Northwood Space - **Location:** Torrance, CA - **Employment:** full-time - **Posted:** 2026-07-24 - **Last confirmed live:** 2026-09-10 - **Apply:** https://jobs.ashbyhq.com/northwoodspace/3f3101bf-b8f3-4a20-9364-90700b869e6a ## Job description Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology. We are building a global network of phased array ground stations that enable real-time, reliable communication for satellite missions such as national security, global connectivity, and disaster response. With a vertically integrated approach, Northwood designs, builds, and rapidly deploys scalable systems that power the next generation of space missions. If you like solving complex challenges and seeing your work deployed around the world with real impact, Northwood is the place to do it. Role: As an Identity & Endpoint Security Engineer, you will own the design and implementation of Northwood's identity architecture, ensuring that access to corporate systems, cloud environments, and sensitive government workloads is governed by robust, auditable, and least-privilege controls. This is a mid-level individual contributor role for an engineer with deep Okta expertise and a strong foundation in IAM architecture, SSO, and role-based access control across complex hybrid environments. You will serve as Northwood's IAM subject-matter expert, designing and maintaining the identity fabric that connects corporate users, contractors, and service accounts to the tools and systems they need — while enforcing the access boundaries required for CUI handling, ITAR compliance, and CMMC Level 2 certification. This role works in close partnership with the Security Engineering Lead, Security Operations Lead, and GRC Lead, and reports to the Head of Security. ## Responsibilities Identity Architecture & Okta Administration - Own Northwood's Okta environment end-to-end, including tenant configuration, application integrations, lifecycle management, MFA policy enforcement, and directory synchronization. - Design and maintain Northwood's SSO architecture, ensuring all corporate and government-facing applications are integrated into a consistent, auditable authentication framework. - Develop and enforce adaptive authentication policies, step-up MFA configurations, and risk-based access controls aligned to the sensitivity of the systems being accessed. - Manage Okta workflows and automation to support user provisioning, deprovisioning, and access change processes across the employee and contractor lifecycle. - Maintain Okta system health, audit logging, and integration reliability, ensuring identity telemetry flows into Northwood's SIEM for continuous monitoring. RBAC & Access Governance - Design and implement role-based access control frameworks across Northwood's corporate systems, cloud environments, and government workloads, ensuring access is granted on a least-privilege and need-to-know basis. - Define and maintain role taxonomies, access request workflows, and entitlement review processes that satisfy CMMC, FedRAMP, and NIST 800-171 access control requirements. - Conduct periodic access reviews and certification campaigns, working with system owners to validate that entitlements remain appropriate and revoke unnecessary access. - Develop and maintain access control documentation, including role definitions, provisioning procedures, and audit evidence required for compliance assessments. - Enforce segregation of duties controls across critical systems, identifying and remediating access conflicts that create compliance or operational risk. MDM Management & Provisioning - Architect, deploy, and manage a unified Mobile Device Management (MDM) solution across macOS, Windows, Linux, and iOS/Android endpoints, ensuring consistent security baselines and configuration compliance across all device types. - Establish and maintain OS-level hardening benchmarks (CIS, DISA STIG) across macOS, Windows, and Linux endpoints, translating requirements into enforced MDM policies and automated remediation workflows - Define and enforce MDM configuration profiles, compliance policies, and conditional access rules across all managed platforms in alignment with CMMC, NIST 800-53, and organizational security standards SSO & Application Integration - Lead SSO onboarding for new SaaS applications, internal tools, and government-facing platforms, ensuring integrations conform to Northwood's authentication standards and security policies. - Evaluate and enforce SAML, OIDC, and OAuth 2.0 implementation standards across integrated applications, identifying and remediating misconfigurations that introduce identity risk. - Partner with the Security Engineering Lead to ensure Okta log ingestion, anomaly detection, and identity-based alerting are functioning and continuously tuned within the SIEM environment. - Support integration of identity controls with endpoint management platforms, ensuring device trust policies are enforced as part of access decisions. Privileged Access & Secrets Management - Design and maintain privileged access management controls for administrative accounts, service accounts, and break-glass access procedures across corporate and government environments. - Define and enforce service account governance standards, including credential rotation policies, least-privilege scoping, and audit logging requirements. - Collaborate with the Product Security Lead on secrets management integration with identity controls, ensuring service-to-service authentication conforms to zero-trust principles. Compliance & Cross-Functional Collaboration - Ensure Northwood's IAM environment satisfies access control requirements across CMMC Level 2, FedRAMP, SOC 2, and ITAR, providing audit evidence and control documentation to the GRC Lead as needed. - Partner with the GRC Lead to support access control–related audit activities, including evidence collection, assessor walkthroughs, and remediation of identified deficiencies. - Collaborate with the network engineering team to ensure identity-aware network access controls and Zero Trust policies are consistently enforced across Cloudflare and on-premises environments. - Develop and maintain IAM architecture documentation, including data flow diagrams, integration maps, and access control matrices that reflect Northwood's current environment. ## Basic Qualifications - 3+ years of hands-on IAM engineering experience, with demonstrated ownership of Okta administration in a production environment. - Deep Okta expertise, including SSO configuration, lifecycle management, MFA policy enforcement, adaptive authentication, Okta Workflows, and SIEM log integration. - Strong understanding of SSO protocols including SAML 2.0, OIDC, and OAuth 2.0, with hands-on experience troubleshooting and hardening integrations. - Experience designing and implementing RBAC frameworks, including role taxonomy development, entitlement reviews, and access certification processes. - Familiarity with privileged access management concepts, including service account governance, least-privilege enforcement, and administrative access controls. - Understanding of IAM requirements within government compliance frameworks, including NIST 800-171 access control and identification and authentication control families. - Experience integrating identity platforms with endpoint management, cloud environments, and security monitoring tooling. - Ability to obtain and maintain a TS/SCI clearance. - U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations. ## Preferred Qualifications - Active TS clearance or higher. - Experience operating Okta in AWS GovCloud or Microsoft GCC environments, including tenant configuration for government workload access controls. - Familiarity with Okta Identity Governance (OIG) or similar identity governance and administration (IGA) platforms. - Experience with Cloudflare Zero Trust access policies and integration with Okta for identity-aware network access enforcement. - Hands-on experience with privileged access management platforms such as CyberArk, BeyondTrust, or equivalent. - Background in aerospace, defense, critical infrastructure, or other government-adjacent regulated environments. - Experience supporting CMMC, FedRAMP, or SOC 2 audits in an IAM engineering capacity. - Okta Certified Administrator, Okta Certified Professional, or equivalent identity platform certification. - CISSP, CISM, or equivalent professional security certification. Additional Information: If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know. To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State. Northwood Space is an Equal Opportunity Employer; employment with Northwood Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status. ## About Northwood Space ## Company Overview - **One-liner**: Building a global ground network for the future of space communications — delivering vertically integrated hardware, software, and shared infrastructure that lets space missions go from concept to live data delivery in months instead of years. - **Entity Type**: Private (Series B, raised $100M in January 2026) - **Headquarters**: Los Angeles, California, United States (additional offices in Torrance, CA; Washington, D.C.; with presence in the United Kingdom and India) - **Founded**: 2022 - **Founders**: Bridgit Mendler (CEO, Cofounder), Griffin Cleverly (Co-Founder, CTO), Shaurya Luthra (Co-Founder, Head of Digital) ## Core Business - **Primary industry**: Defense and Space Manufacturing; Space-to-ground infrastructure; Satellite communications. - **Target customers**: B2B and B2G — commercial satellite operators, government agencies (e.g., U.S. Space Force), and defense customers. - **Mission**: “Take space missions further, faster” by building resilient, cloud-like ground infrastructure for the next century of space operations. ## Products & Services - **Hardware (Antennas built for scale)** : Phased-array antenna systems designed for volume manufacturing and rapid deployment (hours, not months). - **Network (Shared infrastructure)** : A horizontally scalable, dynamic capacity provisioning network that eliminates single points of failure and works across multiple orbits and frequency bands. - **Software (Orchestration intelligence)** : The intelligence layer that schedules contacts, routes data, and manages the entire ground network — enabling on-demand capacity without traditional procurement cycles. ## Market Standing - **Valuation**: Not publicly disclosed. - **Key Metric**: Total funding raised — **$136.4M** across four rounds (Grant $100K in 2023, Seed $6.3M in 2024, Series A $30M in 2025, Series B $100M in 2026). - **Notable Investors/Partners**: Andreessen Horowitz (led Seed, Series A, and Series B), Founders Fund (Seed), Washington Harbour Partners (led Series B and a prior round). Strategic partners include government agencies and commercial launch providers. - **Growth Signals**: - Headcount grew **117.6% YoY** to 65 employees (as of mid-2026). - 48 active job postings (+140% YoY increase). - Successfully tested next-generation phased array antennas. - Won a U.S. Space Force contract (mentioned in news snippets). - Expanded to three U.S. offices and international presence (UK, India). ## Competitive Advantages - **Vertically integrated ground stack** — from antenna hardware to network orchestration software — collapses deployment timelines from years to months/days. - **Hardware that deploys in hours** and scales like cloud computing, avoiding traditional multi-year procurement cycles. - **Resilient, shared infrastructure** designed for multiple orbits and frequency bands, reducing single points of failure. - **Strong talent pipeline** from SpaceX, Anduril, Tesla, Palantir, and other top aerospace/defense firms. ## Strategic Focus - **Scale the global ground network** by deploying more sites and increasing capacity for both government and commercial customers. - **Volume manufacturing** of antenna systems to meet surging demand. - **Deepen partnerships** with defense and intelligence agencies (National Security Space) and commercial satellite operators. - **Continue hiring aggressively** across engineering, operations, site management, and business development. ## Why Work Here - **Culture**: Values include humility, bias to action, autonomy, and exceptionalism. Teams are trusted to own their work and make decisions. - **Impact**: Work is deployed globally — antennas built in Torrance, software orchestrated from LA, sites stood up worldwide. - **Benefits**: Competitive salary, meaningful equity, comprehensive medical/dental/vision, employer-sponsored 401(k), paid parental leave, commuter benefits, sponsored clubs and quarterly events. - **Work Model**: Likely on-site for hardware roles (Torrance, El Segundo, Washington D.C.); some software roles may offer flexibility. Two main office hubs: Los Angeles (HQ) and Washington D.C. - **Engineering culture**: Fast iteration, real-world deployment, cross-functional collaboration. “If you like building quickly and seeing your work deployed in locations around the globe, we want you at Northwood.” ## Sources 1. [northwoodspace.io](https://www.northwoodspace.io/) 2. [northwoodspace.io/about-us](https://www.northwoodspace.io/about-us) 3. [northwoodspace.io/careers](https://www.northwoodspace.io/careers) 4. [LinkedIn – Northwood](https://www.linkedin.com/company/northwood-space) 5. [Crunchbase – Northwood Space](https://www.crunchbase.com/organization/northwood-space) ## Other roles at Northwood Space - [Senior Network Engineer](https://feeny.ai/job/senior-network-engineer-northwood-space-torrance-gzdcd2kh8z9c) — Torrance, CA - [Head of Software](https://feeny.ai/job/head-of-software-northwood-space-torrance-e08xe70z96cw) — Torrance, CA - [Director, International Growth](https://feeny.ai/job/director-international-growth-northwood-space-torrance-y9qv5d3a4d86) — Torrance, CA - [Director, Commercial Growth](https://feeny.ai/job/director-commercial-growth-northwood-space-torrance-bbd2pvqm2b4w) — Torrance, CA - [Head of Quality and Reliability](https://feeny.ai/job/head-of-quality-and-reliability-northwood-space-torrance-crkadbyep88g) — Torrance, CA - [Chief of Staff to the CTO](https://feeny.ai/job/chief-of-staff-to-the-cto-northwood-space-torrance-0gmc6y3hmqjh) — Torrance, CA - [Capture Strategist](https://feeny.ai/job/capture-strategist-northwood-space-washington-6s5nreg28hen) — Washington, DC - [Mechanical Engineering Intern (2027 Summer Internship)](https://feeny.ai/job/mechanical-engineering-intern-2027-summer-internship-northwood-space-torrance-8bw3b7vr74qx) — Torrance, CA - [Software Engineering Intern (2027 Summer Internship)](https://feeny.ai/job/software-engineering-intern-2027-summer-internship-northwood-space-torrance-a4p0v8ejcwv1) — Torrance, CA - [Embedded Software Engineering Intern (2027 Summer Internship)](https://feeny.ai/job/embedded-software-engineering-intern-2027-summer-internship-northwood-space-kwmveejwr37s) — Torrance, CA