Infrastructure Security Engineer

USD 100,000-258,000 per year
MIDDLE
✅ On-site

Tech Stack

AI @ 3 AWS @ 5 Azure @ 5 Bash @ 3 CI/CD @ 3 CloudFormation @ 3 Compliance @ 6 Data Pipelines GCP @ 5 GDPR @ 2 GitHub @ 3 GitHub Actions @ 3 Grafana @ 3 IaC Kubernetes @ 3 Machine Learning Observability @ 3 Payments @ 3 Prometheus @ 3 Puppet @ 6 Python @ 3 Security @ 5 Terraform @ 3

Details

We are seeking a talented and motivated Infrastructure Security Engineer to join the security team. The role involves designing, implementing, and maintaining secure cloud and hybrid infrastructure, ensuring the integrity of cloud-native applications, and embedding security into engineering workflows across multi-cloud and hybrid environments.

Responsibilities

Cloud and Infrastructure Security

  • Design and implement secure cloud architectures across AWS, GCP, and Azure.
  • Build and secure mission-critical applications in hybrid cloud and on-premises environments.
  • Develop and maintain Infrastructure as Code templates with embedded security controls using tools such as Terraform and CloudFormation.
  • Assist with security assessments and audits of cloud infrastructure and services.
  • Implement and manage cloud security tools and services, including CSPM, CWPP, and CASB.
  • Manage identities and roles across cloud and hybrid environments.
  • Monitor and remediate infrastructure to comply with PCI, NIST CSF, GDPR, HIPAA, and other best practices.

Platform, Containers, and Developer Enablement

  • Design and implement secure container standards and automation that support developer workflows.
  • Maintain Kubernetes security according to current best practices.
  • Integrate security best practices into CI/CD pipelines in collaboration with development teams.
  • Secure and enhance CI/CD pipelines and maintain code-scanning platforms.

Detection, Operations, and Tooling

  • Monitor and respond to security events and incidents in cloud and hybrid environments.
  • Maintain SIEM data pipelines for reliable alerting.
  • Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management tools such as Puppet.
  • Develop dashboards and alerts based on security metrics.
  • Develop and maintain cloud security policies, standards, and procedures.
  • Own security projects end to end, from issue identification through solution implementation.
  • Stay current with emerging cloud security threats and mitigation strategies.

Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • 3–5 years of experience in cloud security, infrastructure security, or related roles.
  • Strong understanding of cloud security principles, compliance frameworks, and best practices.
  • Proficiency with at least one cloud platform—AWS, GCP, or Azure—and its security services.
  • Experience securing hybrid AWS/on-premises or multi-cloud environments, including IAM and overall security posture.
  • Experience with Infrastructure as Code tools such as Terraform or CloudFormation.
  • Familiarity with containerization technologies and their security implications.
  • Knowledge of network security concepts and protocols.
  • Experience with Python, Bash, or other scripting languages for automation and tool development.
  • Proactive mindset with strong ownership, critical thinking, and problem-solving skills.
  • Located in the San Francisco Bay Area or willing to relocate.

Preferred Skills and Experience

  • Security certifications such as CCSP, CSSK, or AWS Security Specialty.
  • Deep expertise in Kubernetes and container security.
  • Experience with multi-cloud environments and cloud-to-cloud security.
  • Knowledge of CI/CD best practices and tools.
  • Familiarity with GDPR, HIPAA, PCI DSS, and NIST CSF requirements.
  • Strong proficiency with Python, Terraform, and configuration management tools such as Puppet.
  • Hands-on experience building GitHub Actions and workflows.
  • Experience with observability and security operations tooling such as Prometheus, Grafana, CloudWatch, Karma, and Wazuh.
  • Experience building custom cloud security tools or integrations.
  • Interest in using AI for cloud security monitoring and automation.
  • Contributions to open-source cloud security projects.
  • Experience securing AI/ML workloads in cloud environments.
  • Experience in banking, money transmission, P2P payments, or similarly regulated financial platforms.

Compensation and Benefits

  • Base salary: $100,000–$258,000 USD.
  • Equity.
  • Comprehensive medical, vision, and dental coverage.
  • 401(k) retirement plan.
  • Short- and long-term disability insurance.
  • Life insurance.
  • Various discounts and other perks.

More jobs at SpaceXAI

Similar jobs