Senior Security Engineer - Infrastructure
You will secure cloud, network, and infrastructure-as-code environments. You will design identity, network segmentation, secrets management, IaC guardrails, runtime posture, and offensive testing practices. You will work with incident response and product security stakeholders on detection coverage, threat models, and infrastructure-rooted incidents. You will also mentor engineers on threat modeling and secure infrastructure patterns.
Responsibilities
- Own cloud security posture across AWS and GCP, including IAM, networking, encryption, logging, and account structure
- Prioritize cloud security findings, drive remediation through engineering, and measure progress
- Design and enforce infrastructure-as-code guardrails through policy-as-code, required modules, and CI gates
- Lead identity and access design across cloud, identity provider, and developer platforms
- Own secrets management strategy and migrate away from long-lived credentials
- Run offensive testing against infrastructure and translate findings into durable controls
- Partner on detection coverage for cloud control-plane abuse and infrastructure application threat models
- Drive third-party and supply-chain risk management for infrastructure components
- Lead incident response for infrastructure-rooted incidents
- Mentor engineers on threat modeling, secure infrastructure patterns, and blast-radius analysis
Requirements
- 3–5+ years of security engineering experience focused on cloud and/or infrastructure
- Strong infrastructure-as-code skills
- Production experience with AWS, GCP, or Azure
- Hands-on experience with a cloud security platform
- Strong scripting skills in Python or Go
- Working knowledge of Kubernetes security
- Ability to own a domain end-to-end across design, build, and operations
Benefits
- Future token rights and/or equity
- Medical, vision, and dental benefits
- Flexible vacation policy
- Remote-first work