Infrastructure Security Engineer

Hidden Jobs

United States

Hybrid

USD 120,000 - 150,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work
CTO exposure
Tooling budget

Job summary

Hidden Jobs is seeking a hands-on infrastructure security engineer to own the security of a Linux-based gaming platform, including hosts, containers, MongoDB, and edge networks connected to partners.

You will write security protocols, implement them on the infrastructure, keep them running, and update them as threats and regulatory requirements evolve, reporting directly to the CTO and partnering with platform engineering and compliance teams.

Qualifications

  • 4+ years of hands-on security engineering in production environments.
  • Strong Linux admin skills (Debian/RHEL) with patching and hardening.
  • Experience with Docker/container security and MongoDB security (TLS, RBAC, auditing).

Responsibilities

  • Own security protocols lifecycle from write to update.
  • Define Linux, Docker, MongoDB baselines for production, staging, dev.
  • Maintain runbooks for patching, credentials rotation, backups, incident handling.
  • Translate ISO 27001 controls into testable configurations.
  • Harden server estate, container platform, secrets management, network segmentation.
  • Lead incident response with external testers and drive closure.

Skills

Linux administration
Docker security
Networking basics
Scripting (Bash/Python)
Incident response
ISO27001 knowledge
DevSecOps
TLS / encryption concepts

Tools

MongoDB security
SIEM tooling
Vulnerability scanners
Secrets management
Container image scanning

Job description

Role overview

Hands-on infrastructure security engineer role owning the security of a Linux-based gaming platform, including hosts and containers that serve games, a MongoDB data layer, and the network edge that operator partners connect to. You will write security protocols, implement them on the infrastructure, keep them running, and update them as threats and regulatory requirements evolve. The role reports directly to the CTO and partners with platform engineering and technical compliance teams.

Responsibilities
  • Own the full lifecycle of technical security protocols: write, implement, maintain, and update on a defined review cadence
  • Define hardening baselines for Linux hosts, Docker images and containers, MongoDB clusters, and network devices across production, staging, and development
  • Maintain operational runbooks for patching, access provisioning, key and certificate rotation, backup verification, and incident handling
  • Translate ISO 27001 controls and regulator technical standards into concrete testable configuration
  • Harden the Linux server estate, container platform, MongoDB clusters, secrets management, and network segmentation
  • Lead incident response, coordinate with external forensic or penetration testing providers, and drive issues to closure
Requirements
  • 4+ years of hands-on experience in security engineering, DevSecOps, or infrastructure security, with demonstrable ownership of a production environment
  • Strong Linux administration and hardening skills (Debian or RHEL family), including SSH, firewalls, systemd, auditd, and patching
  • Solid MongoDB security knowledge covering authentication, RBAC, TLS, encryption at rest, auditing, and backup protection
  • Docker and container security in production, including image hygiene, scanning, registries, runtime hardening, and secrets handling
  • Strong networking fundamentals: TCP/IP, DNS, TLS, routing, firewalls, VPNs, load balancers, segmentation, and WAF/CDN configuration
  • Experience selecting and operating security tooling such as SIEM, IDS/IPS, vulnerability scanners, endpoint protection, and secrets management
  • Scripting and automation in Bash and Python or equivalent
  • Incident response experience on live systems, including evidence handling and root cause analysis
  • Working knowledge of ISO 27001 controls and how they map to technical implementation
  • Located within the European time zone (plus or minus 2 hours)
Nice to have
  • Infrastructure-as-code tools (Terraform, Ansible) combined with policy-as-code or IaC scanning
  • Experience with both public cloud and bare-metal or co-located hosting
  • Penetration testing or offensive security background
  • Professional certifications such as OSCP, CISSP, CCSP, GIAC, or CompTIA Security+
Benefits and work setup
  • Competitive base salary with a performance-linked bonus
  • Flexible and/or hybrid working arrangements
  • Ownership of the security function for a live high-traffic platform, with direct CTO exposure
  • Budget and autonomy to choose and implement the tooling you need
  • International regulatory exposure across multiple licensed jurisdictions
  • Clear career pathway toward Head of Security or CISO as the function grows
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

xbowcareers • United States

Remote
USD 140,000 - 210,000
Competitive salary
Equity or incentive plan
401k plan
DevSecOps Engineer
DevSecOps Engineer

Tari Labs, LLC. • United States

On-site
USD 135,000 - 220,000
Cyber Security Engineer
Cyber Security Engineer

Qualibar • United States

Hybrid
USD 120,000 - 180,000
Member of Technical Staff (Security) - AI Infrastructure
Member of Technical Staff (Security) - AI Infrastructure

Hamilton Barnes Associates Limited • United States

On-site
USD 213,000 - 288,000
Equity
Full Healthcare
Infra Security Engineer — CTO‑level Ownership, Hybrid
Infra Security Engineer — CTO‑level Ownership, Hybrid

Hidden Jobs • United States

Hybrid
USD 120,000 - 150,000
Hybrid work
CTO exposure
Tooling budget
Infrastructure Security Engineer
Infrastructure Security Engineer

The available sources do not contain information about the company name for rounx.com. • United States

On-site
USD 150,000 - 230,000
Network Security Engineer
Network Security Engineer

Partnerverse • Indiana (PA)

On-site
USD 100,000 - 130,000
Senior Platform Security Engineer
Senior Platform Security Engineer

NMC2 • Dallas (TX), Northern (KY)

Hybrid
USD 150,000 - 230,000
Staff Cloud Security Engineer
Staff Cloud Security Engineer

Hidden Jobs • United States

Hybrid
USD 145,000 - 207,000
Flexible work arrangements
Security Engineer
Security Engineer

Enterprise Engineering Inc. (EEI) • New York (NY)

On-site
USD 120,000 - 160,000