onsite
Security Engineer, Infrastructure Security - SERVAL
Security Engineer
Lead the design and implementation of secure infrastructure for an AI‑native automation platform, ensuring compliance, threat mitigation, and continuous security monitoring across cloud, container, and CI/CD environments.
About the role
Key Responsibilities
- Architect and maintain secure cloud infrastructure on AWS, leveraging IaC with Terraform and ensuring least‑privilege IAM policies.
- Implement and enforce container security best practices in Kubernetes clusters, including image scanning, runtime protection, and network segmentation.
- Integrate security controls into CI/CD pipelines, automating vulnerability scanning, code analysis, and compliance checks.
- Conduct threat modeling, risk assessments, and penetration testing to identify and remediate security gaps.
- Collaborate with DevOps, product, and compliance teams to develop incident response playbooks and security incident handling procedures.
Requirements
- 5+ years of experience in infrastructure security, preferably in fast‑moving SaaS or AI platforms.
- Proficiency with AWS services (EKS, ECS, IAM, GuardDuty, Security Hub) and Kubernetes security.
- Hands‑on experience with Terraform, GitOps, and automated security tooling (e.g., Snyk, Aqua, Trivy).
- Strong understanding of network security, encryption, and secure coding practices.
- Excellent communication skills and a proactive, collaborative mindset.
Skills
awskubernetesterraformcicdiamnetwork security