Security and Infrastructure Engineer

United States Digital Space LLC

United States

Remote

USD 140,000 - 210,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Unlimited Vacation
Comprehensive Benefits
Wellness Budget
Work from Home Budget
AI Tools Access

Job summary

the company is seeking a Security Infrastructure Engineer to own end‑to‑end cloud and platform security across AWS and Azure. You’ll set guardrails, build self‑serve tooling, and lead security by design in product development.

The role requires 8+ years in security/infra with strong IAM, networking, and CI/CD security experience. You will mentor engineers, drive risk‑based decisions, and shape secure‑by‑default practices across the org.

Qualifications

  • 8+ years in cloud, infrastructure, or security roles with cross‑team leadership.

Responsibilities

  • Architect and operate security technologies across cloud, network, identity, and applications.

Skills

Cloud security strategy
Security engineering
Threat modeling
Automation & IaC
Cloud provider expertise (AWS)
Security monitoring (SIEM, CSPM, CIEM)
LLM security concepts
On-call & incident response

Tools

AWS
Azure
Terraform
CloudFormation
Datadog
Sentry

Job description

About Usthe company is an AI customer service company whose mission is to make customer service extraordinary for everyone. We're driven to raise a new standard of quality customer service at scale, enabling enterprise companies to deliver experiences that people love–instant, proactive, personalized, and effortless.

the company is an AI transformation platform and partner—combining strategic expertise with powerful AI agent management technology to accelerate businesses’ AI maturity to keep them ahead of the curve. With the company, 83% of customer conversations—and counting—are effortlessly resolved through automation, giving teams more time back, companies more resources to focus on growth, and customers more life to focus on what matters most to them.

Established in 2016, the company is a Canadian company that has powered over 5.5 billion interactions for leading brands like Square, YETI, IPSY, and Monday.com, saving millions of hours of human effort. Backed with over $250M in funding from tier-one investors including Accel, Bessemer, FirstMark, Spark, and Version One Ventures, the company is a pioneer in the management and application of AI in customer service.

At the company, we see growth as a reflection of each individual owner’s personal growth. That’s why our values are rooted in driving progress and continuous improvement. If you’re ambitious and eager to grow, the company could be the place for you.

Learn more at www.the company.cx.

Engineering at the company

As an the company engineer, you'll have the autonomy to make a huge impact and the opportunity to work alongside talented peers who challenge and inspire you. We move fast, take ownership, and always strive to improve, both as individuals and as a team. As a Security Infrastructure Engineer on the company's Security Operations team, your work will have a fundamental impact on the company's growth: our customers put an AI agent in front of their customers, and it has to be trustworthy by construction.

Our Role

We are looking for a Security Infrastructure Engineer to own cloud and platform security end to end, architecture, detection and response, and platform enablement across AWS and Azure, including the security of our agentic AI platform. This role is not focused on ticket-driven security work: you will replace manual security work with platform capabilities, build guardrails into the product itself, and set the security bar across Product Development. You will operate with a high degree of autonomy, set technical direction that other senior engineers follow, mentor security engineers, and act as the senior technical counterpart to engineering and security leadership translating risk and compliance requirements into concrete engineering solutions.

About You
  • 8+ years of experience in cloud, infrastructure, or security engineering roles, including experience setting technical direction across multiple teams, not just executing within one.
  • Deep hands‑on experience with at least one major cloud provider, preferably AWS; Azure experience is a plus.
  • Strong experience designing and securing cloud IAM, networking, secrets management, and distributed systems at scale.
  • Extensive experience with infrastructure as code (Terraform or CloudFormation) and policy as code; you default to automation and preventative controls over manual review.
  • Experience building or operating detection and response systems including SIEM, CSPM/CIEM, and cloud security monitoring.
  • Experience with or a strong point of view on securing LLM and agentic AI systems: guardrails, safe tool use, and failure isolation.
  • A track record of turning recurring security and infrastructure requests into self‑serve tooling, retiring ticket queues rather than staffing them.
  • Proven ability to translate compliance and risk requirements into technical implementations.
  • Strong communicator who can influence architecture and engineering decisions across teams, and mentor senior engineers through design reviews and hands‑on guidance.
  • Comfortable operating independently, owning long‑term technical initiatives, and carrying a share of security‑relevant on‑call.
What You Will Do
Cloud Security Architecture & Engineering
  • Architect, design, and operate security technologies across cloud, network, identity, endpoint, and application layers in public, private, and hybrid environments.
  • Define cloud security reference architectures, threat models, and guardrails aligned with zero trust and least privilege principles.
  • Own the technical lifecycle of security tooling including cloud‑native security services, SIEM, CSPM, CIEM, EDR, DLP, and vulnerability management platforms.
Agentic Platform Security
  • Build safety guardrails into the platform itself so failures like an agent bypassing a playbook safeguard cannot reach a customer.
  • Partner with the Reasoning Engine and Playbooks teams on agent behavior that is safe by construction.
  • Set the security bar inside Product Development: secure‑coding standards, review practice, and threat modeling for new agentic features.
Detection, Response & Automation
  • Stand up security observability: detection, alerting, and response for the platform, wired into Datadog and Sentry alongside the wider observability push.
  • Engineer automated response and remediation workflows using cloud‑native automation, SOAR, and infrastructure as code.
  • Lead cloud security incident investigations, carry a share of security‑relevant on‑call, and feed every incident back into tooling so it does not recur.
Self‑Serve Security Enablement
  • Turn recurring security and infra requests (access provisioning, environment setup) into self‑serve tooling — retire the ticket queue rather than staff it.
  • Embed security into CI/CD pipelines, platform tooling, and deployment workflows using policy as code and automated guardrails, so engineering teams ship faster without compromising security.
Governance, Risk & Compliance Enablement
  • Translate security and regulatory frameworks (NIST SP 800-53, PCI DSS, CIS Benchmarks, AWS Well‑Architected) into enforceable technical controls.
  • Lead the engineering side of vendor and dependency security: reviews, least‑privilege access, and cutting overlapping tools from the stack.
  • Support audits, risk assessments, and evidence collection with internal compliance and external assessors.
Technical Leadership
  • Serve as the subject matter expert for cloud and platform security and its relationship to the company's business‑critical systems.
  • Mentor security and platform engineers through documentation, design reviews, and hands‑on guidance.
  • Operate with high autonomy, making architectural decisions that shape long‑term security posture and platform scalability.
Outcomes
  • Own secure‑by‑default infrastructure for the agentic platform across AWS and Azure: identity, secrets management, network boundaries, and access control.
  • Establish a secure‑by‑default cloud security architecture that scales with the company’s growth, reducing risk through automation and preventative controls.
  • Close the guardrail gaps that could let unauthorized agent actions reach a customer.
  • Improve detection, response, and incident readiness across cloud environments.
  • Enable engineering teams to ship faster without compromising security, and raise the bar for security engineering maturity across the organization.
  • First 90 days: map the current attack surface and access model, ship one self‑serve replacement for a high‑volume manual security request, and close the guardrail gap that let unauthorized actions through.

#LI-NS1

Benefits & PerksAt the company, you’ll not only build extraordinary products but also thrive in an environment designed for your success. We prioritize your well‑being, growth, and work‑life balance. Here’s what we offer:

Benefits
  • Unlimited Vacation: Recharge when you need to.
  • Comprehensive Benefits: Extended health coverage, dental, vision, travel, and life insurance.
  • Wellness Account: Empowering you to invest in your overall well‑being and lifestyle.
  • Employee & Family Assistance Plan: Resources to support you and your loved ones.
Perks
  • Flexible Work Schedule: Balance your work and personal life.
  • Remote‑First, In‑Person Friendly: Options to work from home or at our local hub.
  • Learning & Development Budget: Invest in your long‑term growth goals and skills.
  • Work from Home Budget: Equipping you with the tools and support for a seamless remote work experience.
  • Access to Cutting‑Edge AI Tools: Work with the best AI tech stack in the industry.
  • Hands‑On with LLMs: Enhance your expertise in leveraging large language models.
  • A Thriving Industry: Join the forefront of innovation in AI, shaping the future of technology.

The above Benefits and Perks only apply to full‑time, permanent employees.

As part of our recruitment process, we may use AI enabled tools to support certain aspects of hiring, such as interview note‑taking. All hiring decisions are made by our team.

Thank you for your interest in joining us at the company. Due to the high volume of applications, we will only contact candidates whose qualifications match closely to the requirements of the position. We appreciate the time you have invested in learning more about us.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer, Product Security
Senior Security Engineer, Product Security

United States Digital Space LLC • United States

Remote
USD 140,000 - 190,000
Chief Information Security Officer (CISO) - Austin
Chief Information Security Officer (CISO) - Austin

Human Agency • United States

On-site
USD 150,000 - 200,000
AI Application Security Engineer
AI Application Security Engineer

Brain Co. • San Francisco (CA)

On-site
USD 120,000 - 160,000
Competitive salary plus equity
Daily lunches
Commuter benefits
+3
Chief Information Security Officer (CISO) - St Louis
Chief Information Security Officer (CISO) - St Louis

Human Agency • United States

On-site
USD 150,000 - 200,000
AI Application Security Engineer
AI Application Security Engineer

BrainCo • San Francisco (CA)

On-site
USD 120,000 - 160,000
Competitive salary plus equity
Daily lunches
Commuter benefits
+2
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Emeryville (CA)

On-site
USD 130,000 - 160,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
VP, Security
VP, Security

Engine • Denver (CO)

Hybrid
USD 298,000 - 400,000
Hybrid-hub model
Equity
Remote-friendly offices
VP, Security
VP, Security

Engine • United States

On-site
USD 298,000 - 400,000
Hybrid work model
Equity
Engineering Manager - Infrastructure
Engineering Manager - Infrastructure

United States Digital Space LLC • United States

Remote
USD 173,000 - 278,000
Consulting Architect - Security (EMEA / Public Sector eligible )
Consulting Architect - Security (EMEA / Public Sector eligible )

United States Digital Space LLC • United States

Hybrid
USD 150,000 - 230,000