Staff Platform Security Engineer (Security)
Core
Own security across critical AWS and Kubernetes infrastructure supporting products used by millions, combining security architecture with practical engineering to embed security without slowing delivery.
Role type
Staff Platform Security Engineer (Security)
Builds
Production security controls, automation, and AI-assisted workflows for cloud and Kubernetes environments.
Domain
Cloud Security / Kubernetes Security / Infrastructure Security
Deliverable
production ML models | product features | infrastructure
Required skills
AWS security (IAM, networking, secrets, logging), Kubernetes security (EKS, RBAC, admission controls, network policies), CI/CD and supply chain security, Infrastructure as Code (Pulumi, Terraform), security automation, production-quality coding (TypeScript, Python, Go, Rust), incident response, least-privilege access design.
Preferred skills
AWS Nitro Enclaves, financial/payments system security, AWS KMS/CloudHSM, multi-region scale operations, Istio/PrivateLink/eBPF, GitHub OIDC/Argo CD/Helm, security observability platforms (Wiz, Datadog, GuardDuty), blockchain/wallet architecture.
Technologies
AWS, Kubernetes, EKS, Pulumi, Terraform, GitHub Actions, TypeScript, Python, Go, Rust, Istio, Helm, Argo CD, Wiz, Datadog, GuardDuty
Responsibilities
Design and implement least-privilege access models for engineers and automation; Harden CI/CD and software supply chains; Develop security automation using AI-assisted workflows; Partner with infrastructure and SRE teams to establish platform security standards; Take ownership of security issues from investigation through verified remediation.
Seniority
Staff, hands-on IC with strategic influence