Senior Infrastructure Security Engineer
Indexed description
Factorial is looking for a skilled and experienced Senior Infrastructure Security Engineer to join our team and reinforce the end-to-end security management of our systems and cloud environments. In this role, you will be the guardian of our core foundations, taking full ownership of infrastructure security from risk assessment and vulnerability management to proactive defense and incident response.
As a key member of the Security Team, you will ensure that our global infrastructure remains resilient, compliant, and secure. You’ll work closely with SRE and IT teams to maintain a strong security posture, implementing hardening strategies and managing the entire lifecycle of infrastructure risks.
The Mission:
- End-to-End Infrastructure Management: Drive the security strategy for our cloud environments, ensuring security is baked into the architecture from day one.
- Vulnerability & Risk Management: Lead the identification, assessment, and remediation of infrastructure vulnerabilities. Maintain the infrastructure risk register and prioritize mitigation efforts based on business impact.
- Hardening & Resilience: Implement and maintain rigorous hardening strategies across our infrastructure to increase resilience against sophisticated cyberattacks.
- Detection & Response: Continuously monitor security alerts and incidents. Conduct thorough incident response and detailed investigations to identify root causes within the infrastructure stack.
- Tooling & Automation: Develop and manage infrastructure security tooling (CNAPP, CSPM, Vulnerability Scanners) to ensure accurate threat detection and automated compliance.
- Secure Delivery Pipelines: Secure the infrastructure and runners within our CI/CD pipelines, ensuring the environment where code is built and deployed is protected.
- Collaboration: Partner with IT, DX and SRE teams to integrate infrastructure security best practices and automate security controls.
- Strategy & Documentation: Develop, maintain, and regularly update incident response plans and infrastructure security policies.
- 5+ years of experience in Infrastructure Security or Security Engineering, specifically within Cloud environments (AWS/Azure), Infrastructure as Code (Terraform), and Containerization (Kubernetes).
- Vulnerability Management Expert: Deep experience managing enterprise-grade vulnerability scanning and risk prioritization workflows.
- Infrastructure Specialist: Strong understanding of network security, OS hardening (Linux/Unix), and identity management (IAM).
- Threat Knowledge: Strong understanding of Cyberattacks and Threat Actor Tactics, Techniques, and Procedures (TTPs) related to infrastructure and cloud escape.
- Tooling Proficiency: Experience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions (e.g., Tenable, Qualys, or Wiz).
- Automation Mindset: Proficiency in scripting and automation using Python, Bash, or similar languages to streamline security operations.
- Education: Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experience.
- Bonus Points: Industry certifications.
Perks of being part of our team 💆
- High growth, multicultural and friendly environment 🤝🏽
- Continuous training and learning based on your needs 🤓
- Alan private health insurance 🩺
- Healthy life with Wellhub (Gyms, pools, outdoor classes) 🧘🏽♀️
- Save expenses with Cobee 💰
- Language classes with Preply 👩🏽🏫
- Get the most out of your salary with Payflow
- Breakfast in the office and organic fruit 🍏
- Nora and Apeteat discounts 🍱
- Pet Friendly 🐶
Our Values 🫀
- We own it: We take responsibility for every project.
- We learn and teach: We share knowledge every day.
- We partner: Every decision is a team decision.
- We grow fast: We act fast and learn from our mistakes.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search