Software Engineer, Security Infrastructure

Sift

California (MO)

Hybrid

USD 170,000 - 220,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Benefits

Job summary

Sift is seeking a Software Engineer specializing in Security Infrastructure to enhance its security posture for mission-critical applications. This role involves building and maintaining tools for automating security compliance, collaborating closely with engineering teams for a secure cloud-native environment. Located in the California area, you will work in a hybrid model, ensuring robust security practices are integrated into all workflows. The position offers a competitive salary range of $170,000 to $220,000, with equity and benefits.

Qualifications

  • 4-7+ years of hands-on experience in security engineering, platform/DevSecOps, or cloud infrastructure.
  • Proven track record in shipping production-grade security automation in cloud-native environments.
  • Strong proficiency in scripting and automation (Python, Go, Bash, or similar).
  • Hands-on experience with Infrastructure as Code (Terraform or equivalent) and CI/CD systems.

Responsibilities

  • Build and maintain tooling, scripts, and automation for security and compliance controls.
  • Embed security guardrails directly into infrastructure-as-code.
  • Improve visibility into overall security posture through automated reporting.
  • Conduct security reviews of new features and services.

Skills

Security engineering
Cloud infrastructure
DevSecOps
Scripting (Python, Go, Bash)
Infrastructure as Code (Terraform)
Kubernetes
Incident response
Vulnerability scanning

Tools

AWS
CI/CD systems

Job description

At SIFT, we’re redefining how modern machines are built, tested, and operated. Our platform provides engineers with real-time observability over high-frequency telemetry, eliminating bottlenecks and enabling faster, more reliable development.

SIFT was born from our work at SpaceX on Dragon, Falcon, Starlink, and Starship—where scaling telemetry, debugging flight systems, and ensuring mission reliability demanded new infrastructure. Founded by a team from SpaceX, Google, and Palantir, Sift is built for mission‑critical systems where precision and scalability are non‑negotiable.

About The Role

As a Software Engineer, Security Infrastructure, you will not just maintain a security checklist; you will define the posture, architecture, and practices that keep our products and infrastructure secure in the most demanding environments. You will be both hands‑on and strategic, building controls, automating compliance, and owning SIFT’s security posture end‑to‑end, with technical security engineering as the primary focus. You will set the standard for how we protect our systems and data, ensuring resilience against modern threats while partnering with external compliance specialists to meet the requirements of aerospace, defense, and enterprise sectors.

In This Role, You’ll
  • Build and maintain tooling, scripts, services, and automation that assess, enforce, and monitor security and compliance controls across our AWS cloud environments, Kubernetes clusters, and CI/CD pipelines.
  • Develop lightweight internal solutions (e.g., policy‑as‑code, custom scanners, CI/CD integrations) that make security and compliance automatic, auditable, and invisible to the rest of engineering.
  • Embed security guardrails directly into infrastructure‑as‑code (Terraform), container orchestration, and deployment workflows so that secure‑by‑default becomes the path of least resistance.
  • Partner closely with the infrastructure and platform engineering teams to harden cloud‑native systems, implement access controls, encryption, logging/monitoring, and vulnerability management at scale.
  • Improve visibility into our overall security posture through automated reporting, dashboards, and real‑time observability that highlight risks and control coverage.
  • Translate compliance requirements (SOC 2, FedRAMP, and related frameworks) into pragmatic, enforceable technical implementations rather than manual checklists.
  • Reduce toil by automating security workflows, compliance validation, and remediation so engineering can ship fast without compromising security.
  • Support incident response and post‑incident improvements by building better observability and tooling that accelerates detection and recovery.
  • Conduct security reviews of new features, services, and infrastructure changes, providing clear guidance that helps teams design and implement secure solutions.
Technical Skills
The Skillset You’ll Bring:
  • 4–7+ years of hands‑on experience in security engineering, platform/DevSecOps, or cloud infrastructure roles (founding or early‑stage security builder experience strongly preferred).
  • Proven track record shipping production‑grade security automation in cloud‑native environments (AWS strongly preferred) — not just documenting or managing compliance programs.
  • Deep familiarity with implementing technical controls for SOC 2, FedRAMP, or similar frameworks in real production systems.
  • Strong proficiency in scripting and automation (Python, Go, Bash, or similar) and a bias toward building custom tooling over relying solely on off‑the‑shelf products.
  • Hands‑on experience with Infrastructure as Code (Terraform or equivalent), containerized environments (Kubernetes), and CI/CD systems — and how to embed security directly into them.
  • Working knowledge across core security domains:
    • Access control, identity management, and least‑privilege enforcement
    • Logging, monitoring, auditing, and security observability
    • Encryption, key management, and secrets handling
    • Vulnerability scanning, policy‑as‑code, and continuous compliance
    • Incident response and change management
  • Ability to quickly assess system state, identify meaningful gaps, and deliver pragmatic, high‑impact solutions in a fast‑moving environment.
  • Comfort operating as a founding security engineer: you thrive in ambiguity, own standards end‑to‑end, and focus on enabling velocity while raising the security bar.
  • Strong problem‑solving skills with a builder mindset — you enjoy making complex security requirements disappear into clean, automated systems that engineering teams actually love to use.
Location:

SIFT’s headquarters is in Marina Del Rey, CA (Next to LAX). We collaborate in person twice a week—on Mondays and Thursdays—and come together for a full week every two months. We are open to relocating candidates to LA or working from our San Francisco office for the right candidate.

Salary range: $170,000 - $220,000 per year. Plus equity and benefits.

Eligibility

U.S. Person Required: Must be a U.S. citizen, lawful permanent resident, or protected individual such as an asylee or refugee in compliance with ITAR (International Traffic in Arms Regulations) / EAR (Export Administration Regulations) regulations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer, Security Infrastructure
Software Engineer, Security Infrastructure

Sift Stack, Inc. • California (MO)

Hybrid
USD 170,000 - 220,000
Staff Backend Engineer
Staff Backend Engineer

Sift • San Francisco (CA)

Hybrid
USD 200,000 - 250,000
Equity
Comprehensive benefits
Flexible work arrangements
Senior Software Engineer, Infrastructure
Senior Software Engineer, Infrastructure

Sift Stack, Inc. • El Segundo (CA)

Hybrid
USD 170,000 - 220,000
Staff Software Engineer, Data
Staff Software Engineer, Data

Sift • San Francisco (CA)

Hybrid
USD 200,000 - 250,000
Software Engineer, Infrastructure
Software Engineer, Infrastructure

Sift Stack, Inc. • California (MO)

On-site
USD 150,000 - 200,000
Deployment Strategist
Deployment Strategist

Sift • California (MO)

On-site
USD 125,000 - 175,000
Equity
Benefits package
Relocation assistance
Software Engineer, Infrastructure
Software Engineer, Infrastructure

Sift • California (MO)

Hybrid
USD 150,000 - 200,000
Equity
Comprehensive benefits
Software Engineer, Infrastructure
Software Engineer, Infrastructure

Socket.dev • San Francisco (CA)

On-site
USD 160,000 - 200,000
Deployment Strategist
Deployment Strategist

Socket.dev • California (MO)

On-site
USD 125,000 - 175,000
Software Engineer, Infrastructure
Software Engineer, Infrastructure

Sift • San Francisco (CA)

On-site
USD 150,000 - 200,000