Senior Software Engineer - Infrastructure Security
New
J
JobgetherCloud infrastructure security
Listing location: US; based in United States, Monday–Friday, 9:00 AM–3:00 PM Pacific TimeFull-TimeSenior
SalaryFor Toronto and Vancouver-based candidates: $221,209–$256,433 CAD + equity + benefits. For candidates in other Canadian locations: $206,461–$239,337 CAD + equity + benefits.
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSTerraformCloudFormation
Requirements
- Have strong experience as a software engineer, with deep technical capability in at least one infrastructure or security domain.
- Bring hands-on experience securing large-scale cloud environments, particularly AWS.
- Have a strong understanding of infrastructure-as-code tools such as Terraform or CloudFormation.
- Know AWS IAM policies, network segmentation, VPC design, cloud-native monitoring, and logging.
- Have experience identifying cloud misconfigurations, assessing security risks, and driving remediation.
- Have experience with security automation and integrating security tooling into CI/CD pipelines.
- Be familiar with SAST, DAST, dependency scanning, and secure software development practices.
- Have strong Linux and systems security knowledge, including container security, POSIX capabilities, SECCOMP, and Linux Security Modules.
- Be available for meetings and impromptu communication Monday–Friday, 9:00 AM–3:00 PM Pacific Time.
- Kubernetes security experience is valuable; familiarity with serverless architectures, OSQuery, or eBPF is also valuable.
- Product security experience is a plus, including knowledge of secure web applications, APIs, OWASP Top 10, XSS, CSRF, and SQL injection.
Responsibilities
- Review cloud and compute architecture changes with engineering teams and identify security implications.
- Develop threat models for cloud and compute platforms and inform appropriate security controls.
- Build, adopt, and maintain tools to monitor and harden cloud infrastructure and operating systems.
- Develop security logging and monitoring pipelines and support intrusion detection capabilities.
- Apply AWS and Kubernetes security expertise to guide remediation and shape the security control roadmap.
- Define security policies, monitor compliance, and help maintain alignment with established controls.
- Develop automation and security tooling for threat detection, incident containment, and network access management.
- Integrate security practices into engineering workflows and CI/CD environments.
- Triage security incidents and participate in incident response activities.
- Contribute to secure coding practices, technical standards, and knowledge sharing.
View Full Description & ApplyYou'll be redirected to the employer's site