Remote job
Senior Site Reliability Engineer, Security
Job details
About this role
Role overview This position blends senior site reliability engineering with security leadership for the cloud platform that powers a managed authorization service. The engineer will own large parts of the Kubernetes and cloud infrastructure while raising the bar on security, supply-chain integrity, and incident response. It is a high-impact role on a small, highly technical team where the engineer works across the engineering organization to embed security into the platform itself.
Responsibilities - Operate and evolve the Kubernetes-based production infrastructure that runs the managed service, with attention to availability, scalability, performance, and security. - Advance infrastructure security across networking, identity and access management, secrets management, encryption, workload identity, and service-to-service communication. - Strengthen the software supply chain end-to-end, covering CI/CD pipelines, dependencies, container images, build artifacts, provenance, scanning, and deployment controls. - Develop automated guardrails, policies, and secure defaults so security is built into the engineering platform rather than applied manually. - Improve vulnerability management, security telemetry, alerting, and detection, and help maintain and rehearse incident-response playbooks. - Participate in an SRE on-call rotation, lead or contribute to production incidents, and partner with engineering teams on architecture decisions and threat modeling.
Requirements - Significant experience operating production systems as a Site Reliability Engineer, Platform Engineer, Infrastructure Engineer, or Security Engineer. - Deep hands-on experience with Kubernetes and containerized production environments, plus strong familiarity with at least one major cloud provider (AWS, GCP, or Azure) and its security model. - Solid understanding of IAM, workload identity, networking, TLS/PKI, encryption, secrets management, and cloud-native security principles. - Experience with Infrastructure as Code (such as Pulumi, Terraform, or AWS CDK) and with designing, operating, and securing CI/CD and software delivery pipelines. - Strong grasp of Linux and container security fundamentals, alongside observability, monitoring, logging, and production incident response. - Sound software engineering skills, strong security judgment, and the ability to operate independently in a small, highly technical organization.
Nice to have - Experience operating distributed databases or other stateful distributed systems in production. - Background securing multi-tenant SaaS or cloud infrastructure. - Contributions to security architecture, threat modeling, penetration testing, or security assessments. - Relevant certifications such as CKA, CKS, AWS Security Specialty, CISSP, or CCSP.
Benefits and work setup - Fully remote role with a flexible schedule accommodating multiple time zones across North America and Europe. - Stock options in an early-stage company and a competitive salary based on experience and location. - Comprehensive benefits including healthcare and other insurance for US-based employees. - Twice-yearly team off-sites focused on collaboration and team bonding.