An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Anduril Industries in Washington, DC seeks a Cyber Engineer to design and implement cryptographic and platform security for Air Defense products. You will work at the stack's lowest levels, implementing FIPS‑validated encryption, secure boot, and data protection on constrained hardware.
You will harden Linux/firmware, build validation tooling, and automate accreditation evidence. This role requires deep debugging skills, cryptography expertise, and the ability to communicate with government
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century’s most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril’s family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.
The Air Defense team is responsible for the cryptographic foundation and platform trust that makes Anduril's Air Defense products deployable in the world's most demanding environments. The team owns everything from firmware and secure boot to key management, anti-tamper, and the compliance automation that keeps systems accredited — across a portfolio of proprietary hardware and software operating in contested, classified, and often disconnected conditions.
Air Defense employs a variety of advanced proprietary software and hardware products to support global operations. The Cyber Engineer designs and implements the cryptographic and platform security that makes those products trustworthy in contested and classified environments — FIPS-validated encryption, secure and measured boot, full-disk encryption, anti-tamper and zeroization, and secure communications across degraded links.
This is a hands‑on engineering role at the lowest levels of the stack. You will implement cryptography and key handling on constrained hardware, harden Linux and firmware, build the audit and validation tooling that proves the design behaves as specified, and automate the evidence accreditation requires. You will be the engineer government reviewers talk to when they want a real technical answer - but your output is code, firmware, and systems.
We are looking for depth in how systems actually fail: someone who has implemented or attacked crypto, boot chains, and protocols, and who reaches for a debugger and a specification rather than a checklist. Backgrounds in vulnerability research, reverse engineering, or national‑security cryptographic engineering map directly onto this work.
$191,000—$253,000 USD
The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top‑tier benefits for full‑time employees, including:
At Anduril, we invest in our people. Our comprehensive, competitive benefits package (available at little to no cost to employees) ensures you’re supported in health, recovery, and whatever comes next.
For more information, Explore Our Benefits.
To view Anduril's candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.
By submitting your application, you consent to Anduril Industries using a third‑party service provider to conduct pre‑employment risk, integrity, and due diligence screening and assessing potential risks as part of your application process. This third‑party service provider provides risk‑intelligence services that may include analysis of sanctions and watchlists, adverse media, public‑record information, and other lawful open‑source or commercial data sources. This third‑party service provider does not act as a consumer reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual property, and organizational security.