Senior Security Engineering Architect

Socket.dev

United States

On-site

USD 130,000 - 145,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

100% company-paid insurance premiums
401(k) plan that matches 100% up to 4%
Professional Development Reimbursement
11 Holidays + PTO accrual
Sabbatical every 5 years + Anniversary
Remote office setup stipend
Internet reimbursement
Gym membership reimbursement
Wellable subscription

Job summary

Vultr is seeking a Senior Security Engineering Architect to bridge policy and engineering practice, owning baseline standards for Linux hardening, container/Kubernetes security, and CI/CD controls. You will translate compliance into actionable guidance, embed with engineering teams, and drive remediation across bare metal, virtual, and container environments.

You will partner with DevSecOps to codify controls and ensure security is built into pipelines and images.

Qualifications

  • 5+ years of experience in security engineering, DevSecOps, or a related discipline with direct experience working alongside infrastructure and platform engineering teams.
  • Deep understanding of Linux hardening, container security, and Kubernetes security standards and their practical implementation.
  • Experience translating compliance frameworks (SOC 2, ISO 27001, PCI-DSS, or similar) into actionable engineering requirements.
  • Strong technical writing skills with the ability to produce clear, adoption-focused documentation, runbooks, and onboarding materials.
  • Experience acting in a consultant or embedded capacity with engineering teams, balancing security requirements with delivery velocity.
  • Familiarity with security scanning tools and CI/CD pipeline security controls.
  • Experience measuring and reporting on security program effectiveness using data-driven metrics.
  • Excellent communication skills with a proven ability to build cross-functional relationships and influence without authority.
  • Background in infrastructure security across bare metal, virtual, and container environments.

Responsibilities

  • Own and maintain the organization's baseline security standards for Linux hardening, VM image governance, container and Kubernetes security, and CI/CD pipeline security controls, ensuring standards are practical, well-documented, and easy for engineering teams to adopt.
  • Act as the primary bridge between Security, Compliance, and Engineering, translating regulatory and policy requirements into concrete, implementable guidance without blocking delivery velocity.
  • Engage engineering squads in a consultant capacity, embedding into team workflows to assess current security posture, identify gaps, and deliver actionable remediation plans across bare metal, virtual, and container environments.
  • Partner closely with the DevSecOps Engineer to identify security controls that can be codified, ensuring hardening standards, compliance checks, and policy enforcement are built into images, configuration management pipelines, and CI/CD workflows rather than left as manual processes.
  • Champion secure-by-default practices by making security requirements visible early in the design and architecture phase, before engineering teams build.
  • Own the security review process for infrastructure architecture changes, partnering with SecOps on tooling and third-party integration reviews to ensure engineering context and requirements are represented.
  • Develop and maintain accessible runbooks, playbooks, and onboarding materials that enable engineering teams to self-serve security best practices across bare metal, virtual, and container environments.
  • Build and maintain cross-functional relationships to surface emerging risks early, synthesizing findings from engineering teams into prioritized remediation work that can be automated and scaled.
  • Represent engineering's security needs in compliance and risk discussions, ensuring security strategy stays grounded in operational realities.
  • Measure program effectiveness through adoption metrics, policy compliance rates, and mean-time-to-remediate trends, using data to continuously improve both the standards themselves and how they are communicated.

Skills

Security engineering
DevSecOps
Infrastructure security
Technical writing
Consultant mindset
CI/CD security
Linux hardening
Kubernetes security

Tools

Security scanning tools

Job description

Who We Are

Vultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world. With 33 global cloud data center locations, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud Compute, Cloud GPU, Bare Metal, and Cloud Storage solutions. In December 2024 Vultr announced an equity financing at a $3.5 billion valuation. Founded by David Aninowsky and self-funded for over a decade, Vultr has grown to become the world’s largest privately-held cloud infrastructure company.

Vultr Cares

  • 100% company-paid insurance premiums for employee medical, dental and vision plans.

  • 401(k) plan that matches 100% up to 4%, with immediate vesting

  • Professional Development Reimbursement of $2,500 each year

  • 11 Holidays + Paid Time Off Accrual + Rolloff Plan

  • Commitment matters to Vultr! Increased PTO at 3 year and 10 year anniversary + 1 month paid sabbatical every 5 years + Anniversary Bonus each year.

  • $500 stipend for remote office setup in first year + $400 each following year

  • Internet reimbursement up to $75 per month

  • Gym membership reimbursement up to $50 per month

  • Company paid Wellable subscription

Join Vultr

Vultr is seeking a Senior Security Engineering Architect to bridge the gap between security policy and engineering practice. You will own baseline security standards and ensure they are practical, well-documented, and easy for engineering teams to adopt. The ideal candidate excels at translating compliance and regulatory requirements into concrete, implementable guidance, and thrives in a consultant capacity embedding into engineering workflows to assess posture, identify gaps, and deliver actionable remediation plans. This is your opportunity to join our fast growing team and leave your mark on Vultr and the future of Cloud Infrastructure.

Key Responsibilities

  • Own and maintain the organization's baseline security standards for Linux hardening, VM image governance, container and Kubernetes security, and CI/CD pipeline security controls, ensuring standards are practical, well-documented, and easy for engineering teams to adopt

  • Act as the primary bridge between Security, Compliance, and Engineering, translating regulatory and policy requirements into concrete, implementable guidance without blocking delivery velocity

  • Engage engineering squads in a consultant capacity, embedding into team workflows to assess current security posture, identify gaps, and deliver actionable remediation plans across bare metal, virtual, and container environments

  • Partner closely with the DevSecOps Engineer to identify security controls that can be codified, ensuring hardening standards, compliance checks, and policy enforcement are built into images, configuration management pipelines, and CI/CD workflows rather than left as manual processes

  • Champion secure-by-default practices by making security requirements visible early in the design and architecture phase, before engineering teams build

  • Own the security review process for infrastructure architecture changes, partnering with SecOps on tooling and third-party integration reviews to ensure engineering context and requirements are represented

  • Develop and maintain accessible runbooks, playbooks, and onboarding materials that enable engineering teams to self-serve security best practices across bare metal, virtual, and container environments

  • Build and maintain cross-functional relationships to surface emerging risks early, synthesizing findings from engineering teams into prioritized remediation work that can be automated and scaled

  • Represent engineering's security needs in compliance and risk discussions, ensuring security strategy stays grounded in operational realities

  • Measure program effectiveness through adoption metrics, policy compliance rates, and mean-time-to-remediate trends, using data to continuously improve both the standards themselves and how they are communicated

Qualifications

  • 5+ years of experience in security engineering, DevSecOps, or a related discipline with direct experience working alongside infrastructure and platform engineering teams

  • Deep understanding of Linux hardening, container security, and Kubernetes security standards and their practical implementation

  • Experience translating compliance frameworks (SOC 2, ISO 27001, PCI-DSS, or similar) into actionable engineering requirements

  • Strong technical writing skills with the ability to produce clear, adoption-focused documentation, runbooks, and onboarding materials

  • Experience acting in a consultant or embedded capacity with engineering teams, balancing security requirements with delivery velocity

  • Familiarity with security scanning tools and CI/CD pipeline security controls

  • Experience measuring and reporting on security program effectiveness using data-driven metrics

  • Excellent communication skills with a proven ability to build cross-functional relationships and influence without authority

  • Background in infrastructure security across bare metal, virtual, and container environments

Compensation

$130,000 - $145,000

This salary can vary based on location, years of experience, background and skill set.

[We are currently accepting applications from candidates residing in the following states: Alabama, Arizona, Colorado, Connecticut, Florida, Georgia, Idaho, Illinois, Indiana, Iowa, Kentucky, Louisiana, Maryland, Massachusetts, Michigan, Minnesota, Missouri, Montana, Nebraska, Nevada, New Jersey, New Mexico, New York, North Carolina, Ohio, Oklahoma, Pennsylvania, Rhode Island, South Carolina, Tennessee, Texas, Utah, Vermont, Virginia, Wisconsin.]

Inclusion & Privacy

Vultr is committed to an inclusive workforce where diversity is celebrated and supported. All employment decisions at Vultr are based on business needs, job requirements, and individual qualifications.

Vultr regards the lawful and correct use of personal information as important to the accomplishment of our objectives, to the success of our operations and to maintaining confidence between those with whom we deal and ourselves. As such the use of various key privacy controls enables Vultr’s treatment of personal information to meet current regulatory guidelines and laws.

Workforce members have the right under US state law where and when applicable and certain other privacy and data protection laws, as applicable, to: fair and equal treatment, knowing what personal data we gather and retain, for what purpose, and the ability to access and/or delete such data. You also have the right to opt out of communications from Vultr and approved third- parties at any time.

Inclusion & Privacy

We are an equal opportunity employer and are committed to creating an inclusive environment for all employees. We welcome applications from individuals of all backgrounds and experiences, and we prohibit discrimination based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected status under applicable laws. Vultr will consider qualified applicants with arrest or conviction records in accordance with applicable laws and will not conduct a background check until after an offer of employment has been extended and accepted.

We also take your privacy seriously. We handle personal information responsibly and follow applicable laws, including U.S. privacy rules and India’s Digital Personal Data Protection Act, 2023. Your data is used only for legitimate business purposes and is protected with proper security measures.

Where allowed by law, applicants may request details about the data we collect, access or delete their information, withdraw consent for its use, and opt out of nonessential communications. For more details, please see our Privacy Policy.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior DevSecOps Engineer
Senior DevSecOps Engineer

Vultr • United States

On-site
USD 130,000 - 145,000
Medical benefits
Dental & vision coverage
401(k) plan
+9
Platform Engineer - Cloud Native
Platform Engineer - Cloud Native

Vultr • United States

On-site
USD 90,000 - 100,000
Senior Linux System Administrator
Senior Linux System Administrator

Vultr • United States

On-site
USD 80,000 - 100,000
Health insurance
401(k) match
Professional Development Reimbursement
+6
Project Coordinator - Data Center and Network Delivery
Project Coordinator - Data Center and Network Delivery

Vultr • United States

On-site
USD 50,000 - 65,000
Medical, dental, and vision insurance
401(k) 100% match up to 4%
Professional development reimbursement
+5
Senior Software Engineer, Cloud Networking
Senior Software Engineer, Cloud Networking

Vultr • United States

Remote
USD 128,000 - 145,000
100% company paid medical benefits
401(k) matching
Professional development reimbursement
+4
Linux Systems Administrator
Linux Systems Administrator

Vultr • United States

Hybrid
USD 60,000 - 75,000
100% company-paid insurance premiums
401(k) matching plan
Professional Development Reimbursement
+4
Senior Linux System Administrator
Senior Linux System Administrator

Webhosting • Northern (KY)

Hybrid
USD 80,000 - 100,000
Health insurance
401(k) with match
Professional development reimbursement
+6
Sr. Technical Program Manager, Data Center & Network Delivery
Sr. Technical Program Manager, Data Center & Network Delivery

Vultr • United States

Remote
USD 120,000 - 150,000
100% company-paid insurance premiums
401(k) plan with matching
Professional Development Reimbursement
+4
Technical Support Specialist
Technical Support Specialist

Vultr • United States

Remote
USD 34,440 - 41,328
100% company-paid insurance premiums
401(k) plan with matching
Professional Development Reimbursement
+4
Senior Technical Project Manager, Data Center & Network Delivery
Senior Technical Project Manager, Data Center & Network Delivery

Vultr • United States

On-site
USD 110,000 - 140,000
100% company-paid insurance premiums for medical, dental, and vision plans
401(k) plan with 100% match up to 4%
Professional Development Reimbursement of $2,500 each year
+6