← Back to results

Sr. Cyber Assurance Analyst, Data Centers

Own and scale cyber assurance for SpaceX data centers with a focus on compliance and security frameworks.

Location
Memphis, TN
Compensation
Not disclosed
Level
senior
Type
full time · On-site

Posted by employer 5 days ago

First seen on Joblaze 4 days ago

Last verified on the company career page 12 hours ago

What you'll build

  • Execute information security compliance and certification
  • Build and maintain audit-ready evidence packages
  • Partner with engineering to validate technical evidence
  • Plan and support internal and external audits
  • Develop and improve information security policies

Must have

  • 5+ years of experience in cybersecurity compliance
  • 5+ years of experience with control testing
  • High school diploma or equivalency certificate

Nice to have

  • Experience liaising with Facility Operations
  • Hands-on experience implementing controls against ISO/IEC 27001
  • Working knowledge of AI management systems
  • Direct experience supporting external ISO 27001 certification audits
  • Experience with GRC or continuous compliance platforms

Practical constraints

  • This role requires you to be onsite
  • Must be willing to travel (<25%)
  • Must be willing to work extended hours and/or weekends

Requirements

Experience
5+ years
Education
High school
Visa
No sponsorship (stated in posting)

Not disclosed in this posting: compensation.

Joblaze summary

The Sr. Cyber Assurance Analyst for SpaceX's data centers is responsible for ensuring compliance with key security frameworks like ISO 27001 and SOC 2 by designing and validating security controls, collecting evidence, and managing audits. This role requires expertise in cybersecurity compliance and a strong understanding of technical security measures, particularly in data center environments. It is suited for experienced professionals who can navigate complex regulatory landscapes and communicate effectively with both technical and non-technical stakeholders. The position emphasizes collaboration with engineering teams to ensure that security measures are effectively implemented and mainta

Joblaze insights

  • Listed 4 days ago — first seen on Joblaze September 22, 2026. Last confirmed on SpaceX's careers page September 26, 2026.
  • SOC 2 appears in 8.7% of 310 comparable senior security roles in United States; Information Security appears in 0.3% of 310 comparable senior security roles in United States.

Quick facts

Is the Sr. Cyber Assurance Analyst, Data Centers role remote?
No — this is an on-site role in Memphis, TN.
How much experience is required?
At least 5 years of relevant experience for this Sr. Cyber Assurance Analyst, Data Centers role.
Where is the role based?
SpaceX is hiring for this position in Memphis, TN.
What's the tech stack?
Joblaze extracted these technologies from the posting: Audit, Cybersecurity, ISO/IEC 27001, ISO/IEC 42001, Information Security, SOC 2.
What seniority level is this role?
SpaceX targets senior candidates for this position.
Is this full-time or contract?
Full-time for this Sr. Cyber Assurance Analyst, Data Centers role at SpaceX.

From the original posting

SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.

SR. CYBER ASSURANCE ANALYST, DATA CENTERS

Cyber Assurance is the practice of providing confidence that systems, products, and processes meet security, regulatory, and compliance obligations. It bridges governance with technical execution — validating that controls are in place, risks are managed, and requirements are met for both internal and customer-facing systems.

As a teammate on the Information Assurance team, you will own and scale cyber assurance for SpaceX data centers with a primary focus on ISO/IEC 27001, ISO/IEC 42001, and SOC 2. You will operate from an information security perspective: designing and validating controls, collecting and reviewing technical and operational evidence, driving remediation, and keeping the data center portfolio audit-ready across sites. You will partner closely with engineers and cross-functional operators so controls are implemented in the environment — not only documented after the fact.

The ideal candidate lives at the intersection of security, compliance, and critical infrastructure. You are comfortable translating ISO 27001, ISO 42001, and SOC 2 Trust Services Criteria into concrete control narratives; digging into access logs, configurations, and monitoring evidence; and explaining framework obligations to non-security partners. You are firm when it matters, flexible when alternative controls still meet the objective, and effective at running concurrent audit and remediation workstreams across a multi-site data center footprint.

RESPONSIBILITIES:

  • Own and execute information security compliance and certification for the data center portfolio across ISO/IEC 27001, ISO/IEC 42001, and SOC 2 (Type I/Type II), including control mapping, gap assessment, evidence collection, testing support, and remediation tracking.
  • Build and maintain audit-ready evidence packages for data center information security controls — including logical and physical access control, logging and monitoring, change management, vulnerability management, media handling, and availability-related security controls — suitable for external assessors.
  • Partner with engineering and system owners to gather and validate technical evidence (configurations, logs, designs, operational procedures) and to confirm controls operate as designed in production data center environments.
  • Plan, coordinate, and support internal and external audits and assessments for owned and operated data centers; act as a primary information security liaison to auditors for ISO 27001, ISO 42001, and SOC 2 scopes that include data center operations.
  • Perform information security and compliance risk assessments of data center systems, networks, and supporting processes; identify deviations from policy, standards, or framework requirements; advise on remediation; and drive timely closure with accountable owners.
  • Develop, maintain, and continuously improve information security policies, standards, procedures, and control documentation that support the data center ISMS / AI management system / SOC 2 control environment.
  • Identify and drive assurance efficiency through better evidence pipelines, tooling integration, reuse of control testing, and process improvement across sites so audit readiness scales with the portfolio rather than relying on point-in-time scrambles.
  • Maintain an up-to-date understanding of emerging information security risks, changes to ISO 27001 / ISO 42001 / SOC 2 expectations for data center and AI-enabled environments, and new assurance techniques; propose pragmatic, business-enabling actions.
  • Mentor fellow teammates and take an active role in their development.

BASIC QUALIFICATIONS:

  • High school diploma or equivalency certificate.
  • 5+ years of experience in cybersecurity compliance, audit or technical security roles with strong knowledge in security compliance frameworks.
  • 5+ years of experience with control testing, security standards/policy development, security audits, or security risk management.

PREFERRED SKILLS AND EXPERIENCE:

  • Experience liaising with Facility Operations, Physical Security, and Environmental, Health, and Safety (EHS) teams (including HVAC, fire detection/suppression, and related site systems) to obtain and validate information security-relevant evidence for ISO 27001, ISO 42001, and SOC 2 — while keeping the assurance focus on information security outcomes rather than facilities ownership.
  • Hands-on experience implementing or operating controls against ISO/IEC 27001 & 420001 and/or SOC 2 or equivalent industry certifications — including evidence collection and audit support.
  • Working knowledge of AI management systems and how AI-related controls intersect with data center and infrastructure assurance scopes.
  • Demonstrated ability to evaluate control objectives against enterprise grade IT, network, and infrastructure configurations and to work with technical teams on remediation.
  • Familiarity with data center information security control themes commonly in scope for ISO 27001 Annex A and SOC 2 (e.g., physical access and visitor management as security controls, environmental monitoring as availability/security evidence, secure media handling, and continuity interfaces) from an assurance and evidence perspective.
  • Ability to interpret configurations, logs, and system/network designs for compliance implications; experience with security tooling such as vulnerability scanners, SIEM, and configuration baseline checks (e.g., CIS Benchmarks).
  • Direct experience supporting external ISO 27001 certification audits and/or SOC 2 examinations for infrastructure or data center scopes.
  • Experience with GRC or continuous compliance platforms and with improving evidence collection through automation or process redesign.
  • Strong communication skills across organizational levels; able to explain framework requirements and risk tradeoffs to engineers, operators, and leadership in plain language.
  • Project and program management experience delivering concurrent audit and remediation workstreams in highly fluid environments.
  • Professional certifications such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Implementer/Auditor, or equivalent.

ADDITIONAL REQUIREMENTS:

  • This position is based in Memphis, TN. This role requires you to be onsite; remote/hybrid work will not be considered.
  • Must be willing to travel (<25%) domestically (and internationally as needed) in support of data center audits and other assurance activities.
  • Must be willing to work extended hours and/or weekends as needed to support audit windows and critical remediation.

ITAR REQUIREMENTS:

Standard company text repeated across SpaceX's postings is omitted here.

Similar positions

SpaceX
SpaceX
SpaceX
SpaceX
SpaceX
Sr. Security Analyst
SpaceX · Redmond, WA