Principal Security Engineer

Code Red Partners

San Francisco (CA)

On-site

USD 210,000 - 290,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Code Red Partners in San Francisco is seeking a hands-on cloud security/infra engineer to design and build a production-ready AWS environment, IAM, network architecture, and guardrails for agentic development.

Reporting to the Head of Security, you will own Terraform pipelines, policy as code (OPA), CI/CD gates, and secure software supply chain, with a budget and no large team.

Qualifications

  • Hands-on AWS experience at scale.
  • AWS security focused infrastructure design experience.
  • Familiarity with IAM, network architecture and guardrails for AI/development environments.
  • Terraform, CI/CD pipelines and policy-as-code tooling.

Responsibilities

  • Hardened multi-account AWS environment with SCPs and secure networking.
  • IAM at scale with least privilege and short-lived roles.
  • Guardrails for agentic development including sandboxing and restricted egress.
  • Terraform and policy-as-code (OPA), CI/CD with production gate.
  • Software supply chain integrity and tamper-resistant logging.
  • CSPM selection and secure data ingress for development mirrors production.
  • Hands-on AWS experience and budget ownership in a small team.

Job description

San Francisco, CA · On site, 5 days a week

Code Red Partners is exclusively partnering with a San Francisco investment firm on a foundational cloud security hire, reporting directly to their Head of Security. The team is small and exceptionally technical, working from an explicit thesis on where AI is heading. Development runs heavily through AI agents that write code and provision infrastructure, which makes the environment fast to work in and permissive by default.

This is a builder's role. You'll design and implement that environment yourself, from IAM to network architecture to the guardrails around agentic development. Hands on seat, real budget behind it.

  • Hardened multi account AWS environment: SCPs, network layout, private connectivity
  • IAM at real scale: least privilege, short lived roles, per workload identities
  • Guardrails for agentic development: sandboxed execution, restricted egress, anomaly detection that traces an AI action back to its instruction
  • Terraform and policy as code (OPA), CI/CD with a real review gate into production
  • Software supply chain and tamper resistant logging across control and data plane
  • CSPM selection, secure external data ingress, and a dev environment that mirrors production
  • Deep hands on AWS: IAM at scale, network design, Terraform others build on, CI/CD you ran, policy as code
  • Built something significant with little support, ideally as the only security or infra person somewhere, with budget and no team
  • A real point of view on containing agent generated code: prompt injection, sandboxing (containers, gVisor, Firecracker); production experience is a plus but not required
  • Learns fast, comfortable with a broad remit, works well with researchers and scientists
Equal Opportunity Statement

At Code Red Partners, we're deeply committed to working with equal-opportunity employers and helping to build a diverse and inclusive workforce. People are at the heart of everything we do, and we are proud to support teams shaping the future of cybersecurity through innovation, empathy, and technical excellence.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Backend Software Engineer
Senior Backend Software Engineer

Code Red Partners • San Francisco (CA)

On-site
USD 120,000 - 180,000
PTO
Member of Technical Staff, Infrastructure San Francisco, CA
Member of Technical Staff, Infrastructure San Francisco, CA

Parameter • San Francisco (CA)

Hybrid
USD 180,000 - 230,000
Member of Technical Staff (Security) - AI Infrastructure
Member of Technical Staff (Security) - AI Infrastructure

Hamilton Barnes Associates Limited • United States

On-site
USD 213,000 - 288,000
Equity
Full Healthcare
Corporate Security & IT Lead
Corporate Security & IT Lead

Code Red Partners • San Francisco (CA)

On-site
USD 180,000 - 240,000
Security Engineer, AI Agents
Security Engineer, AI Agents

Tactical Edge • Washington

On-site
USD 140,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Wintermeyer Ventures • San Francisco (CA)

On-site
USD 200,000 - 330,000
Equity
Offensive Security Engineer — Red Team for AI Security
Offensive Security Engineer — Red Team for AI Security

Anthropic Limited • San Francisco (CA), Northern (KY)

Hybrid
USD 300,000 - 320,000
Visa sponsorship
Staff Product Security Engineer
Staff Product Security Engineer

Code Red Partners • San Francisco (CA)

On-site
USD 120,000 - 150,000
Red Team Security Engineer
Red Team Security Engineer

Anthropic • New York (NY)

Hybrid
USD 300,000 - 320,000
Visa sponsorship
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Simile • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies