682,533open jobs
39,508companies
99,689added this week
Browse all
Salary
$200k – $250k per year
Location
Remote (United States)
Seniority
Staff · 7+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is a Belgian recruitment platform built entirely around remote and flexible work, aggregating openings from thousands of employers that allow work from outside an office. Its matching engine ranks roles against a candidate's skills, seniority and stated preferences on location and flexibility, rather than leaving people to filter a keyword search, and it verifies how genuinely remote each posting is. The company also runs an AI screening layer that shortlists applicants for employers, and publishes research and guidance on distributed work practices alongside the job marketplace itself.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Platform Security Engineer (Security) based in United States.

This is a senior, hands-on platform security role focused on protecting critical cloud and infrastructure environments at scale. You will own security across AWS and Kubernetes, securing identities, workloads, control planes, deployment systems, and mission-critical infrastructure. The role combines deep technical execution with architectural influence, automation, incident response, and cross-functional leadership. You will work closely with Infrastructure, SRE, Developer Experience, and engineering teams to build practical controls that strengthen security without slowing product delivery. The environment is fully remote, highly engineering-driven, and designed for people who take ownership of complex security challenges from investigation through verified remediation. You will also help shape an AI-native security function by applying automation and AI-assisted workflows where they can meaningfully improve security coverage and response speed.

Accountabilities:

    • Own and continuously improve security across a multi-account AWS environment, including IAM, Identity Center, networking, compute, storage, secrets, logging, and organization-level security guardrails.
    • Secure production Kubernetes environments running on Amazon EKS, covering cluster configuration, workload identity, RBAC, admission controls, network boundaries, secrets, container security, and tenant isolation.
    • Design least-privilege access models for engineers, services, and automation, while creating scoped, auditable, and time-bound access paths for sensitive production systems.
    • Protect mission-critical infrastructure supporting products and services that process sensitive data and high-value operations, with a focus on reducing compromise risk, excessive privilege, and operational impact.
    • Lead security architecture for new infrastructure, platform services, and major architectural changes, ensuring security requirements are incorporated early in the design process.
    • Build reusable security controls through infrastructure and policy as code using technologies such as Pulumi, Terraform, Kubernetes policy engines, and automated configuration validation.
    • Strengthen CI/CD and software supply chain security across build, deployment, and release systems, including GitHub Actions, workload federation, build runners, dependencies, artifacts, signing, provenance, and production access.
    • Develop security automation that identifies and remediates cloud and Kubernetes risks at scale, applying AI-assisted workflows when they can materially improve analysis, coverage, or response speed.
    • Partner closely with Infrastructure, SRE, Developer Experience, and product engineering teams to establish practical platform-security standards and drive effective adoption across engineering.
    • Requirements:

      • Bring 7+ years of experience in platform security, cloud security, infrastructure security, security engineering, or a closely related engineering discipline.
      • Have deep, hands-on experience securing production AWS environments, including IAM and resource policies, workload identity, network security, secrets management, logging, organization-level controls, and common cloud security failure modes.
      • Demonstrate strong production Kubernetes security experience, preferably with Amazon EKS, including RBAC, workload identity, admission policies, network policies, pod security, secrets, and cluster hardening.
      • Have experience designing or securing mission-critical systems where compromise, excessive privilege, or loss of availability could create significant customer or business impact.
      • Possess a strong understanding of identity, authorization, least privilege, isolation, and blast-radius reduction across both human and machine access.
      • Have experience securing CI/CD and software supply chains, including GitHub Actions or similar platforms, build runners, workload federation, artifacts, and production deployment paths.
      • Be experienced in writing and reviewing infrastructure as code using tools such as Pulumi, Terraform, CloudFormation, or comparable technologies.
      • Be able to write production-quality code or automation in a language such as TypeScript, Python, Go, or Rust.
      • Demonstrate high agency and ownership, with the ability to take ambiguous platform-security problems from initial investigation through implementation and verified remediation.
      • Communicate clearly and collaborate effectively with infrastructure and engineering teams while maintaining a high security standard and balancing practical delivery needs.
      • Experience with AWS Nitro Enclaves or other trusted execution environments, financial or high-value transaction systems, key-management infrastructure, multi-region environments, service meshes, cloud-native networking, or blockchain infrastructure is advantageous.
      • Familiarity with technologies such as AWS KMS, CloudHSM, GitHub OIDC, Argo CD, Helm, Crossplane, Istio, PrivateLink, Transit Gateway, eBPF-based controls, Wiz, Datadog, GuardDuty, Security Hub, or CloudTrail is a plus.
      • Be legally authorized to work in the applicable job location and able to travel when required; the role does not provide visa sponsorship.
      • Benefits:

        • Competitive base salary ranging from $200,000 to $250,000 USD, plus equity and benefits, with final compensation influenced by skills, relevant experience, interview performance, market factors, and location.
        • Eligibility to participate in a performance bonus program.
        • Comprehensive medical, dental, and vision insurance with 100% coverage.
        • Stipend to support an ideal remote work setup.
        • Flexible working hours within a supportive fully remote environment.
        • Unlimited vacation to support flexibility and time away when needed.
        • 401(k) retirement plan.
        • Monthly wellness benefit and weekly meal benefit.
        • Opportunities to work on high-impact security challenges involving AWS, Kubernetes, cloud identity, production access, workload isolation, software supply chains, and mission-critical infrastructure.
        • Global off-site opportunities and exposure to an engineering-focused, AI-native security environment.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
682,533 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$101k – $135k per year • In office • Full-Time • 8+ years exp • PhD • Rome
Python
JavaScript
TypeScript
Apex
Databases
Snowflake
Databricks
AI/ML
Cursor
LangChain
Claude
LlamaIndex
Prompt Engineering
AI Agents
Agentforce
LLM Guardrails
Multi-Agent Systems
DevOps
CI/CD
Apply
up to $60k per year • Remote • Freelance • Chennai
Python
JavaScript
TypeScript
Python
FastAPI
Databases
PostgreSQL
Redis
Apache Kafka
AI/ML
Prompt Engineering
AI Agents
NLP
Frontend
React.js
DevOps
Docker
Apply
$68k – $175k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Abu Dhabi
Python
JavaScript
AI/ML
Copilot
Claude Code
Prompt Engineering
AI Agents
OpenAI Codex
Copilot Studio
DevOps
Azure
Management
Power Automate
Apply
Remote/Hybrid • 5+ years exp • Bachelor's Degree
Python
JavaScript
PowerShell
C#
Bash
C#
.NET
DevOps
Rest API
GCP
Azure
CI/CD
AWS
Apply
AI Engineer 4 hours ago
Remote/Hybrid • 10+ years exp
Python
C#
C#
.NET
Databases
Weaviate
Milvus
Pinecone
FAISS
AI/ML
LangGraph
LangChain
LlamaIndex
LoRA
Vertex AI
Fine-tuning
Embeddings
RLHF
Reinforcement Learning
Prompt Engineering
Function Calling
AI Agents
PEFT
QLoRA
RAG
OpenAI
Anthropic
Amazon SageMaker
DPO
SFT
PPO
GRPO
LLM Guardrails
Multi-Agent Systems
Tool Use
DevOps
GCP
Azure
AWS
Kubernetes
Vector
Apply
Senior Tax Analyst 4 hours ago
$75k – $120k per year • Equity • Remote • Full-Time • Bachelor's Degree
Apply
$138k – $246k per year • Remote • Full-Time • 7+ years exp • Bachelor's Degree
Management
Agile
Apply
$115k – $135k per year • Remote • Full-Time • 8+ years exp • Bachelor's Degree
Apply
$38k – $80k per year (Estimated) • Remote • Full-Time • 2+ years exp • High School Diploma
Management
Outlook
Apply
$112k – $120k per year • Remote • Full-Time • 4+ years exp • Bachelor's Degree
Apply
See all jobs
This is one of many
682,533 more open roles from verified company boards, updated every day.