Infrastructure Security Engineer
Skills
About the Role
You will build security platforms, controls, and tooling that enable secure, high-velocity cloud infrastructure operations. You will work across security, software, and infrastructure engineering to implement secure-by-default patterns, remediate vulnerabilities, improve production security, and strengthen software supply-chain controls.
Requirements
- Strong engineering background with experience building and shipping production systems
- Proven track record of building and scaling security programs
- Fluency in at least one programming language, such as Python, TypeScript, or Golang, and ability to maintain production-quality code
- Hands-on experience with AWS or GCP, Kubernetes, and Terraform
- Strong understanding of IAM, networking, PKI, and Linux internals
- Experience securing CI/CD pipelines against supply-chain attacks
- Experience securing AI or machine learning systems, including training pipelines
- Background in developer experience or platform engineering and developer tooling
- Contributions to open-source security projects, published research, or security conference talks
- Experience working in regulated environments such as SOC 2, ISO 27001, PCI, or HIPAA
Responsibilities
- Design and build security tools and guardrails that integrate into infrastructure and products
- Review application architectures, develop threat models, and implement secure-by-default patterns throughout the software development lifecycle
- Identify, prioritize, and remediate security vulnerabilities across the stack
- Ship security features that improve the security posture of production products
- Design and implement supply-chain security controls across build and deployment pipelines, including artifact signing, provenance, dynamic admission controls, and SBOM generation
Benefits
- Annual discretionary professional development stipend
- Annual discretionary social travel stipend
- Annual company offsite
- Monthly co-working stipend for employees not near main hubs
