Infrastructure Security Engineer - London
Summary
Infrastructure Security Engineer at xAI securing multi-cloud and hybrid infrastructure: designing secure cloud architectures, hardening Kubernetes/containers, embedding security in IaC and CI/CD, and building detection and security-ops tooling. Core stack includes AWS/GCP/Azure, Terraform, Python, and SIEM platforms.
SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.
ABOUT THE ROLE:
We are seeking a talented and motivated Infrastructure Security Engineer to join our security team. In this role, you will design, implement, and maintain secure cloud and hybrid infrastructure, and ensure the integrity of our cloud-native applications.
This role focuses on securing critical infrastructure across multi-cloud and hybrid environments, with work that may span platforms such as SpaceXAI, X Social, X Money and related systems. You’ll operate with an automation-first mindset: building secure foundations, hardening platforms at scale, and partnering closely with engineering teams so security is embedded in how we build and run systems—not bolted on after the fact.
RESPONSIBILITIES:
Cloud & infrastructure security
- Design and implement secure cloud architectures across multiple cloud platforms (e.g., AWS, GCP, Azure)
- Build and secure mission-critical applications in hybrid cloud and on-premises environments
- Develop and maintain Infrastructure as Code (IaC) templates with embedded security controls
- Assist with regular security assessments and audits of cloud infrastructure and services
- Implement and manage cloud security tools and services (e.g., CSPM, CWPP, CASB)
- Manage identities and roles effectively across cloud and hybrid environments
- Monitor and remediate infrastructure to comply with regulations and best practices (e.g., PCI, NIST CSF, GDPR, HIPAA)
Platform, containers & developer enablement
- Design and implement secure container standards and automation that enable frictionless developer workflows
- Maintain Kubernetes security aligned with current best practices
- Collaborate with development teams to ensure security best practices are integrated into CI/CD pipelines
- Secure and enhance CI/CD pipelines; integrate and maintain code scanning platforms
Detection, operations & tooling
- Monitor and respond to security events and incidents in cloud and hybrid environments
- Maintain SIEM data pipelines needed for reliable alerting
- Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management (e.g., Puppet)
- Develop dashboards and alerts from security metrics
- Develop and maintain cloud security policies, standards, and procedures
- Own security projects end to end: identify issues and implement solutions
- Stay current with emerging cloud security threats and mitigation strategies
BASIC QUALIFICATIONS:
- Bachelor's degree in Computer Science, Cybersecurity, or a related field
- 3–5 years of experience in cloud security, infrastructure security, or related roles
- Strong understanding of cloud security principles, compliance frameworks, and best practices
- Proficiency in at least one cloud platform (AWS, GCP, or Azure) and associated security services
- Proven experience securing hybrid AWS/on-premises (or multi-cloud) environments, including IAM and overall security posture
- Experience with Infrastructure as Code tools (e.g., Terraform, CloudFormation)
- Familiarity with containerization technologies and their security implications
- Knowledge of network security concepts and protocols
- Experience with scripting languages (e.g., Python, Bash) for automation and tool development
- Proactive mindset with strong ownership, critical thinking, and problem-solving skills
- Located in the EU/UK or willing to relocate
PREFERRED SKILLS AND EXPERIENCE:
- Relevant security certifications (e.g., CCSP, CSSK, AWS Security Specialty)
- Deep expertise in Kubernetes and container security
- Experience with multi-cloud environments and cloud-to-cloud security
- Knowledge of CI/CD best practices and tools
- Familiarity with regulatory compliance requirements (e.g., GDPR, HIPAA, PCI DSS, NIST CSF)
- Strong proficiency with Python, Terraform, and configuration management (e.g., Puppet)
- Hands-on experience building GitHub Actions and workflows
- Experience with observability and security operations tooling (e.g., Prometheus, Grafana, CloudWatch, Karma; SIEM platforms such as Wazuh)
- Experience in building custom cloud security tools or integrations
- Interest in leveraging AI for cloud security monitoring and automation
- Contributions to open-source cloud security projects
- Experience with securing AI/ML workloads in cloud environments
- Experience in banking, money transmission, P2P payments, or similarly regulated financial platforms.
SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
Skills
- AI
- Automation
- AWS
- Azure
- Bash
- CI/CD
- Cloud
- Cloud Native
- Cloud Security
- CloudFormation
- CloudWatch
- Container Security
- Containerization
- Cybersecurity
- Data Pipelines
- GCP
- Gdpr
- GitHub
- GitHub Actions
- Grafana
- Hipaa
- IAM
- Infrastructure as Code
- Kubernetes
- Machine Learning
- Network Security
- Nist
- Observability
- Pci Dss
- Prometheus
- Puppet
- Python
- Regulatory Compliance
- SIEM
- Terraform
As published by greenhouse · 15 questions · 2 written answers
Basics
First Name, Last Name, Email, Phone, Resume/CV, Cover Letter, Location
Short answers (9)
- Preferred First Name optional
- Full Legal Name
- Full Legal Name in Native Language (e.g. Chinese Characters, Cyrillic, Farsi etc)
- GitHub Profile optional
- Google Scholar optional
- Website optional
- LinkedIn Profile optional
- X Profile optional
- Your Location
Pick from a list (4)
- Please select if you are a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or (v) eligible to obtain the required authorizations from the U.S. Department of State.
- Have you worked with us before?
- How did you hear about us?
- If you are not currently residing near one of our EU/UK office locations, are you willing to relocate to support full-time on-site work (5 days per week) in our office?
Written answers (2)
- What exceptional work have you done?
- What makes you the ideal candidate for this position? optional