Skip to content

Infrastructure Engineer, Security

200k – 475kSan Francisco, CASecurity EngineeringOnsite
Summary

Owns and evolves security infrastructure across compute, storage, networking, and data platforms for foundation models. Architects secure patterns, manages identities/secrets, builds threat models, and automates security checks in Kubernetes/cloud environments. Requires strong systems programming and infra experience.

About the role

What You’ll Do

  • Architect security patterns for platforms and services, including network segmentation, service-to-service authentication, RBAC, and policy enforcement in Kubernetes and cloud environments.
  • Manage identity, access, and secrets for humans and services: workload and cross-cloud identity, least-privilege IAM, and secrets management.
  • Build secure platforms for data ingestion, processing, and curation: classification, encryption, access controls, and safe sharing patterns across teams.
  • Write threat models and review designs with researchers and engineers to help them ship features and experiments in a safe, scalable way.
  • Automate security checks and build guardrails: policy-as-code, secure infrastructure baselines, validation in CI/CD, and tools that make the secure path the easiest one.

Skills and Qualifications

Minimum qualifications

  • Bachelor’s degree or equivalent experience in engineering, or similar.
  • Strong background with containers and orchestration (Kubernetes) and how to secure them (namespaces, network policies, pod security, admission controls, etc.)
  • Practical experience with Infrastructure as Code (Terraform or similar), including secure patterns for provisioning networks, IAM, and shared services.
  • Solid understanding of cloud networking and security: VPCs, load balancers, service discovery, mTLS, firewalls, and zero-trust-style architectures.
  • Proficiency with a systems language such as Rust and scripting in Python for building platform components and internal tools.
  • Evidence of owning complex, production-critical systems, including debugging issues that span infra, security, and application layers.

Preferred qualifications

  • Experience with ML infrastructure, GPU clusters, or large-scale training environments (schedulers, job queues, shared storage, multi-tenant clusters).
  • Background in AI labs, HPC environments, or ML-heavy organizations where both security and performance are first-class concerns.
  • Experience profiling and tuning high-throughput systems, and an ability to reason about the cost of additional security layers.
  • Talks, blogs, or publications on infrastructure security, distributed systems, or performance engineering.
  • Open-source contributions to security, orchestration, observability, or infrastructure tooling.
  • Familiarity with securing specialized hardware (GPUs, TPUs) and their integrations into training and inference pipelines.

Logistics

Compensation: Depending on background, skills and experience, the expected annual salary range for this position is $200,000 - $475,000 USD.

Benefits: Generous health, dental, and vision benefits, unlimited PTO, paid parental leave, and relocation support as needed.

Skills
KubernetesTerraformRustPythonIAMVPCsmTLSRBACCI/CDGPU clusters
Similar roles at this salary range
All Security Engineering jobs →
Everlaw

Senior Software Security Engineer

Lead security engineering efforts at Everlaw, guiding a team to build secure development practices and protect customer data on AWS. Requires 4+ years in security and Python scripting skills.

215k – 272kOakland, CASecurity EngineeringOn-site4+ YOEAWSIAM
Novig

Senior Security Engineer

Senior Security Engineer building proactive, automated security systems including SOAR/SIEM workflows, AI agents, vulnerability management, and cloud hardening for a fast-growing sports prediction market platform.

200k – 250kNew York, NYSecurity EngineeringOn-site5+ YOECDKIAM
Instacart

Senior Security Engineer, Cloud, AI, Product Security

Senior Security Engineer responsible for identifying infrastructure and product risks, defining remediation roadmaps, and building scalable secure engineering systems. Requires 5+ years in security engineering and strong IaC and code review experience.

192k – 242kUnited StatesSecurity EngineeringRemote5+ YOEGoOPA
Coinbase

Senior Software Engineer

Senior Software Engineer on the Core Cryptography team building and operating Tier-0 cryptographic infrastructure including MPC systems that secure 99% of customer assets. Requires 5+ years building highly available distributed systems and experience with applied cryptography, KMS/HSMs, and systems languages (Golang-heavy).

186k – 219kUnited StatesSecurity EngineeringRemote5+ YOEC++Java
Cardless

Security Engineer - Product

Lead product security for a fintech credit card infrastructure platform. Own API security, auth strategy, fraud primitives, secure SDLC, and compliance for partner-facing services. Hands-on engineering role reporting to Head of Engineering.

190k – 260kSan Francisco, CASecurity EngineeringOn-site7+ YOEAWSIAM