Staff Infrastructure Security Engineer
Staff Infrastructure Security Engineer
Full-time | Remote (US-based preferred)
We're not looking for someone to write policies that sit untouched in a wiki. We're looking for a builder. A hands-on engineer with a deep love for infrastructure and an instinct for locking it down. If you thrive in Terraform, rebuild hardened images as second nature, and can spot risk hiding in a CI pipeline from a mile away—this role is for you.
You’ll take full ownership of the infrastructure security stack—from cloud resources to deployment pipelines. This is a high-impact position where you’ll lead by doing, not just advising.
What You’ll Do
-
Own the infrastructure security domain end-to-end—from architecture through execution.
-
Enhance and maintain Terraform configurations to ensure secure-by-default infrastructure.
-
Rebuild and automate system images as part of the CI/CD pipeline.
-
Implement and enforce infrastructure hardening standards, access control, and authentication flows.
-
Oversee PKI and certificate authority presence across systems.
-
Drive security initiatives forward: prioritize, execute, and document.
-
Partner with engineering to embed security into product development and deployment lifecycles.
-
Stay ahead of emerging threats and tools to proactively evolve our security posture.
What We’re Looking For
-
An engineer at heart—someone who builds and breaks systems with equal intensity.
-
Previous experience leading infrastructure security at a scale-focused or cloud-native organization.
-
Deep experience with Terraform, CI/CD tooling, and modern cloud infrastructure (AWS, GCP, etc.).
-
Strong grasp of system hardening, cloud IAM, and container/image security.
-
Ability to assess complex systems and identify weaknesses both on the surface and deep in the stack.
-
Strong documentation and communication skills—you can champion best practices across teams.
-
A proactive mindset—you don’t wait to be told what’s broken.
Bonus Points
-
Experience building or contributing to open-source security tools.
-
Background in automating secure image creation and deployment.
-
Familiarity with vulnerability triage, incident response, or security postmortems.
-
You’ve already used the product—or built something similar.
Compensation
$120K – $250K, depending on experience and location.