Skip to content
NotionNotion

Software Engineer, Infrastructure Security

Build and operate secure-by-default cloud infrastructure, including AWS security controls, secrets management, IAM, and authentication systems. The role requires production software development, security architecture expertise, threat modeling, and pragmatic cross-functional communication.

About the job

Responsibilities

  • Enhance the security posture of AWS accounts and cloud infrastructure.
  • Create secure frameworks for secrets management and authentication/authorization.
  • Design and deploy robust Identity and Access Management (IAM) solutions.
  • Provide guidance and education on security and privacy best practices to cross-functional partners.
  • Participate in and help drive mitigation strategies during security-related incident response.

Requirements

  • Security architecture expertise, including building and maintaining systems that secure cloud architectures, secrets management, and IAM solutions.
  • Backend and infrastructure development experience with production-grade code and secure systems design.
  • Experience debugging systems in production and continuously improving components with minimal disruption.
  • Ability to model threats, balance trade-offs, and prioritize security investments based on business impact.
  • Strong written and verbal communication skills, with an empathetic and thoughtful approach to disagreements.

Nice-to-Haves

  • AWS security best practices.
  • Zero trust architectures.
  • Deep IAM expertise.
  • Data security or privacy engineering experience.
  • Experience applying AI tooling to defensive security workflows.
  • Participation in security communities, conferences, or local and regional groups.

Compensation and Benefits

  • Competitive cash compensation, equity, and benefits.
  • Estimated base salary range for roles based in San Francisco or New York City: $230,000–$280,000 per year.

Skills

AWS, Cloud Security, Secrets Management, IAM, Authentication, Authorization, Backend Development, Infrastructure Development, Zero Trust, Threat Modeling, Incident Response, Privacy Engineering, Ai Security

Fluidstack

Fluidstack

New York, NY
Security Engineer, Threat Intelligence
$220k+/yrOn-siteSecurity Engineering

The Security Engineer will track advanced adversaries targeting frontier AI infrastructure, build intelligence pipelines, conduct threat hunts, and create production detections. The role requires hands-on malware and infrastructure analysis, production programming, and close collaboration with detection and incident response teams.

Tailscale

Tailscale

United States
Security Infrastructure Engineer
CA$218k+/yrRemoteSecurity Engineering

This role builds and improves infrastructure security controls across cloud, operating system, Kubernetes, network, and CI/CD environments. It requires cloud security expertise, programming and Infrastructure as Code proficiency, threat-modeling experience, and the ability to lead infrastructure containment during security incidents.

OpenAI

OpenAI

San Francisco, CA
Red Team Specialist - Cyber
$198k+/yrHybridSecurity Engineering

The Red Team Specialist evaluates AI models for cyber capabilities, safeguard failures, and agentic-system abuse risks. The role combines hands-on security testing, automated evaluation infrastructure, risk assessment, and cross-functional communication.

Vercel

Vercel

San Francisco, CA
Software Engineer, Trust & Safety
$196k+/yrHybrid5+ YOESecurity Engineering

Build and operate trust and safety systems that detect and mitigate abuse at internet scale. The role combines security engineering, large-scale data analysis, and applied LLM techniques, requiring 5+ years of relevant experience and strong Python and JavaScript/TypeScript skills.

1Password

1Password

United States
Manager, Security Incident Response
$192k+/yrRemote5+ YOESecurity Engineering

Leads and develops a security incident response team while driving automation, AI-assisted workflows, operational maturity, and response strategy. The role requires 5+ years of incident response experience, people leadership, technical depth, and calm management of high-severity incidents.