Senior Platform Engineer, Security
Founding Platform Engineer, Security building secure multi-tenant infrastructure, golden paths, and automation for Decagon's conversational AI platform. Requires 5+ years infrastructure experience, deep GCP/AWS knowledge, and strong IaC and coding skills.
Responsibilities
- Design and implement secure, multi-tenant infrastructure that isolates customer data while enabling efficient AI model serving across the platform
- Build "golden paths" for security including service templates, libraries, terraform policies, and automation so new services are secure and production-ready by default
- Own infrastructure-as-code (Terraform) and GitOps best practices, including reusable modules and policy-as-code
- Expand and help operate the platforms behind alerting detection, secrets management, IAM, and automated remediation, integrating them cleanly into CI/CD and developer workflows
- Partner with Security, Infrastructure, and product engineering teams to translate enterprise and compliance requirements (SOC 2, ISO 27001, GDPR) into reliable, automated technical controls
- Participate in security on-call and continuously raise the bar on operability, runbooks, and incident learnings
Requirements
- 5+ years building and operating production infrastructure, with meaningful exposure to security or a strong interest in moving deeper into security problems
- Deep knowledge of Google Cloud Platform and/or AWS, including compute, networking, IAM, and security services
- Proficiency with infrastructure-as-code (Terraform, Ansible, or similar) and a track record of building developer-facing tooling and automation
- Strong coding ability in at least one systems language (Python, Go, TypeScript) and comfort building paved-path tooling teams actually adopt
- Experience applying AI-assisted tooling (Cursor, Claude Code, and similar) to make engineers dramatically more effective
- Experience with secure container deployment, service mesh, and Kubernetes security best practices
- Observability and incident-response tooling experience (instrumentation, alerting, dashboards), with a bias toward eliminating toil
- Clear written communication and the ability to turn ambiguous requirements into simple, reliable designs
Nice-to-Haves
- Track record of being an early or founding platform/infrastructure/security engineer at another company
- Experience building internal platforms: service templates, paved-road deployment, self-serve environments, or developer portals
- Security-minded approach to the software supply chain (provenance, secrets, least privilege) and familiarity with static analysis tooling (Semgrep, CodeQL)
- Experience with detection and response data pipelines (Kafka/Pulsar, Splunk/Panther/RunReveal, or similar)
- Knowledge of enterprise compliance requirements (SOC 2, ISO 27001, GDPR) from an infrastructure and platform perspective
Compensation & Benefits
- $200K – $330K + equity
- Take what you need vacation policy
- Medical, Dental, and Vision benefits
- Life Insurance and Disability Benefits
- Retirement Plan (e.g., 401K)
- Parental Leave
- Fertility and family building benefits through Carrot
- Daily lunches and snacks in the office
Senior Privacy Engineer
Lead privacy engineering projects protecting user data across search, browser, and AI features. Own major privacy components, participate in audits, and mentor engineers using Go, Node.js, Python, or Perl.
Product Security Engineer
Product Security Engineer embedding into engineering workflows to conduct architecture reviews, threat modeling, and penetration testing coordination while serving as GCP security SME. Requires 5-7 years experience and strong GCP and Python skills.
Senior Product Security Engineer II
Senior security engineer focused on offensive security testing, penetration testing, and scaling security practices across Instacart's product suite. Requires 7+ years in security engineering or pentesting with experience in mobile, cloud, or AI security.
Staff Software Engineer, Security
Staff Security Software Engineer designing and building scalable security infrastructure, identity systems, and compliance automation platforms. Requires 8+ years software engineering experience with deep Kubernetes, Go/Rust, and cloud platform expertise.