Infrastructure Security Engineer, Public Sector
Infrastructure Security Engineer securing large-scale cloud environments, Kubernetes clusters, and infrastructure-as-code (Terraform) for the Public Sector team. Requires active Top Secret clearance, infrastructure security experience, and proficiency in cloud, Kubernetes, and scripting languages.
About the job
Responsibilities
- Secure infrastructure across large cloud hosting providers (e.g., AWS, Azure, GCP).
- Implement and maintain robust security configurations and policies for cloud environments.
- Conduct regular security assessments and audits of infrastructure to identify vulnerabilities and areas for improvement.
- Develop and enforce security best practices for infrastructure automation and orchestration.
- Collaborate with Developer Experience, IT, and product teams to integrate security into all stages of the infrastructure lifecycle.
- Review and secure infrastructure as code (e.g., Terraform, CloudFormation).
- Educate and mentor team members on infrastructure security best practices and emerging threats.
Requirements
- At least an active Top Secret clearance (required; candidates without will not be considered).
- Proven experience as a Security Engineer with a focus on infrastructure security.
- Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.
- Strong understanding of modern Javascript application design.
- Production experience with Kubernetes backed services.
- Hands-on experience with SAST and DAST tools and methodologies.
- Familiarity with Terraform orchestration for infrastructure management.
- Ability to structure complex problems and diagnose root causes independently.
- Excellent communication skills, with the ability to clearly present technical concepts to both technical and non-technical stakeholders.
- Demonstrated ability to influence security strategies and drive improvements within a team.
Nice-to-Haves
- Relevant security certifications (e.g., CISSP, CEH, OSCP).
Skills
AWS, Azure, GCP, Terraform, Kubernetes, Node.js, TypeScript, Python, JavaScript, SAST, DAST
Similar jobs
Security Engineering jobsBuild automated detection, investigation, and incident-response systems for a cloud-native platform. The role requires strong software engineering, security incident investigation, cloud infrastructure, Kubernetes, Linux, networking, and SQL experience, with opportunities to apply LLMs to security operations.
Manages FedRAMP compliance for a cloud service provider by implementing security controls, supporting audits and remediation, maintaining SSP documentation, and coordinating authorization activities. Requires 5+ years of IT audit or compliance experience and hands-on FedRAMP ATO leadership.
Build and operate automated corporate security controls across endpoint devices, identity, network access, and enterprise AI tooling. The role requires 3–5 years of endpoint, identity, or corporate security experience, strong macOS and Okta expertise, and scripting skills.
Protects a cloud-native fintech environment by building detections, investigating threats, operating vulnerability management, and automating security workflows. Requires 5+ years in security operations or related fields, strong Python skills, cloud experience, and expertise in telemetry-driven threat detection.
Security Engineer on the Cyber Threat Intelligence team responsible for developing threat intel tooling, conducting threat hunting, analyzing malware, and operationalizing intelligence into detections and response workflows.