Senior Infrastructure Security Engineer
Indexed description
Key Responsibilities
- Own and enhance vulnerability management processes across infrastructure, cloud platforms, container environments, and supporting services.
- Implement and maintain security monitoring and threat detection capabilities to improve visibility and response across enterprise platforms.
- Collaborate with engineering and infrastructure teams to integrate security scanning, assessment, and remediation workflows into CI/CD pipelines and Infrastructure-as-Code deployments.
- Lead vulnerability triage efforts and partner with stakeholders to prioritize and remediate security findings based on risk.
- Perform security assessments, attack surface reviews, and threat modeling activities across infrastructure and application environments.
- Develop automation to continuously evaluate security posture and improve operational efficiency.
- Contribute to security standards, tooling, and best practices while promoting a security-focused engineering culture.
- Monitor emerging threats and vulnerabilities and recommend mitigation strategies where appropriate.
- 6+ years of experience in security engineering with a focus on infrastructure, platform, cloud, or application security.
- Hands-on experience with vulnerability management, security monitoring, and cloud security technologies.
- Strong understanding of infrastructure security, container security, software supply chain risks, secrets management, and secure system configuration.
- Experience securing Kubernetes or other container orchestration platforms in cloud environments such as AWS, Azure, or GCP.
- Strong Linux administration and troubleshooting skills.
- Experience integrating security controls into CI/CD pipelines and Infrastructure-as-Code workflows.
- Scripting or development experience with languages such as Python, Bash, Go, or similar.
- Familiarity with vulnerability prioritization methodologies, risk scoring frameworks, and remediation practices.
- Strong communication and collaboration skills with the ability to work effectively across engineering and security teams.
- Experience with runtime security monitoring, behavioral detection, or cloud-native security tooling.
- Familiarity with software supply chain security concepts, artifact integrity, and secure development practices.
- Exposure to security operations, incident response, threat intelligence, or detection engineering functions.
- Relevant security certifications such as OSCP, GIAC, CISSP, AWS Security Specialty, or similar.
- Experience supporting large-scale distributed infrastructure and cloud-native environments.
*please note this position does not offer sponsorship
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search