368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$200k – $300k per year
Location
In office (New York)
Seniority
Staff · 6+ years exp
Overview
Company
Impact
Profile match
Point72 is a global, multi-strategy hedge fund manager founded by Steven A. Cohen that invests across discretionary long/short equity, systematic, and macro strategies. The firm relies heavily on fundamental research, quantitative models, and advanced data analytics to allocate capital across international financial markets. Headquartered in Stamford, Connecticut, it also manages Point72 Ventures, an early-stage venture capital arm focused on investing in emerging technology startups.

A Career with Point72’s Technology Team

As Point72 reimagines the future of investing, our Technology team is constantly evolving our firm’s IT infrastructure and engineering capabilities, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts who experiment and work to discover new ways to harness open-source solutions, modern cloud architectures, and sophisticated Artificial Intelligence (AI) solutions, while embracing enterprise agile methodologies. Our commitment to building and innovating in the AI space provides the framework intended to drive smarter decision making and enhance how we build and operate our platforms and applications.

As a member of Point72’s Technology team, we encourage and support your professional development from day one-helping you advance your technical skills, contribute innovative ideas, and satisfy your own intellectual curiosity-all while delivering real business impact for our multi-billion-dollar global business

What you’ll do

As the Linux Security Lead, you will own and drive a consistent and enforceable security posture across the firm's Linux fleet - building enforceable baselines, automated drift detection, and verified remediation patterns that scale across a hybrid on-premises and cloud environment. You will report directly to the Head of Infrastructure Security and serve as the technical authority for Linux hardening, operating within a sprint-based engineering discipline and working closely with the Linux Infrastructure team. Specifically, you will:

  • Own the Linux security baseline program end-to-end, including defining hardening intent per distribution and workload class (RHEL, Ubuntu, Amazon Linux), enforcing standards through Ansible and configuration management tooling, and driving continuous drift reconciliation.
  • Build and operate automated drift detection workflows by translating desired state into enforcement, generating alerts with remediation paths, and reducing MTTR for high-risk deviations.
  • Integrate Linux posture signals, including compliance state, vulnerability exposure, and audit telemetry, into broader access policy and detection pipelines.
  • Partner with security automation teams to build scalable, version-controlled delivery patterns with validation and rollout safeguards.
  • Maintain exception governance discipline, such as time-bounded exceptions with explicit ownership, compensating controls, and regular burn-down reviews.
  • Drive verified vulnerability closure for Linux-specific exposure classes
  • Establish and embed Linux-specific secure engineering principles, such as least privilege daemons, immutable configuration patterns, kernel hardening, and audit telemetry standards, into engineering standards and peer review processes.
  • Contribute to the firm's broader CIS Benchmark compliance posture, maintaining mappings to CIS Controls v8 and NIST CSF 2.0 for audit and regulatory defensibility.

What’s required

  • 6+ years of experience in Linux system administration or security engineering, with at least 3 years focused on Linux security hardening and compliance in an enterprise environment.
  • Demonstrated expertise with configuration management tooling, specifically Ansible, and infrastructure-as-code practices, including version control, peer review workflows, and pipeline-driven enforcement.
  • Hands-on experience with CIS Benchmarks for Linux (RHEL, Ubuntu, or equivalent) and familiarity with the NIST Cybersecurity Framework (CSF 2.0) and STIG compliance frameworks.
  • Proven ability to build and operate drift detection and reconciliation tooling, as well as experience with Qualys, CrowdStrike, or equivalent endpoint monitoring platforms.
  • Working knowledge of Linux kernel security features such as SELinux or AppArmor, auditd, system hardening, privilege separation, and secure boot patterns.
  • Experience operating in an engineering delivery model, specifically with sprint cadence, backlog prioritization, Definition of Done tied to verification, and peer review for high-impact changes.
  • Strong collaboration skills with the ability to define and maintain explicit interfaces with adjacent teams and communicate posture risk clearly to technical and non-technical stakeholders.
  • Commitment to the highest ethical standards. 

We take care of our people

We invest in our people, their careers, their health, and their well-being. When you work here, we provide:

  • Fully-paid health care benefits
  • Generous parental and family leave policies
  • Mental and physical wellness programs
  • Volunteer opportunities
  • Non-profit matching gift program
  • Support for employee-led affinity groups representing women, minorities and the LGBT+ community
  • Tuition assistance
  • A 401(k) savings program with an employer match and more

About Point72

Point72 Asset Management is a global firm led by Steven Cohen that invests in multiple asset classes and strategies worldwide. Resting on more than a quarter-century of investing experience, we seek to be the industry’s premier asset manager through delivering superior risk-adjusted returns, adhering to the highest ethical standards, and offering the greatest opportunities to the industry’s brightest talent. We’re inventing the future of finance by revolutionizing how we develop our people and how we use data to shape our thinking. For more information, visit  www.Point72.com/working-here

The annual base salary range for this role is $200,000-$300,000 (USD), which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
New York
$38k – $96k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Madrid
DevOps
Ansible
CI/CD
Configuration Management
GitLab
GitLab CI
HPC
Red Hat
Ubuntu
Apply
$20k – $48k per year (Estimated) • In office • Full-Time • 5+ years exp • Chennai
PowerShell
Python
DevOps
Ansible
CI/CD
Configuration Management
GitLab
GitLab CI
VMWare
Apply
DevOps Lead 5 hours ago
up to $70k per year • Remote • 5+ years exp • Moscow
Databases
Apache Kafka
OpenSearch
PostgreSQL
RabbitMQ
DevOps
Amazon S3
Ansible
CI/CD
Git
GitLab
GitLab CI
Grafana
Kibana
Kubernetes
OpenShift
Platform Engineering
Terraform
VictoriaMetrics
Zabbix
Chips/EDA
PoC Library
Apply
$118k – $240k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Tysons
C#
Go
JavaScript
Python
SQL
TypeScript
C#
.NET
AI/ML
Embeddings
Human-in-the-Loop
LLM Guardrails
RAG
Semantic Search
Semantic Search
DevOps
AWS
CI/CD
Vector
Cybersecurity
Least Privilege
Apply
$113k – $188k per year • In office • Full-Time • 6+ years exp • Bachelor's Degree • Tysons
Python
SQL
Python
pySpark
Databases
Amazon Redshift
Apache Iceberg
Databricks
Delta Lake
AI/ML
Airflow
Anomaly Detection
ChatGPT
Copilot
Cursor
GraphRAG
Knowledge Graph
RAG
Spark
DevOps
Amazon Kinesis
Amazon S3
AWS
AWS CDK
AWS Lambda
AWS Step Functions
CI/CD
CloudFormation
Docker
Git
GitHub
GitHub Actions
IAM
Jenkins
Terraform
Vector
Cybersecurity
Least Privilege
Analytics
ETL/ELT
Power BI
Tableau
Apply
$24k – $66k per year (Estimated) • In office • 3+ years exp • Bengaluru
Java
SQL
TypeScript
JavaScript
Databases
Redis
AI/ML
AI Agents
Frontend
Angular
DevOps
AWS
CI/CD
Kubernetes
Apply
$28k – $71k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Bengaluru
Python
DevOps
Amazon EC2
Amazon EKS
AWS
Azure
CI/CD
GCP
GitOps
Kubernetes
Terraform
Amazon ECS
IAM
Apply
$127k – $281k per year (Estimated) • In office • Internship • Bachelor's Degree • New York
Python
SQL
Apply
$91k – $218k per year (Estimated) • In office • New York
C++
Python
SQL
Apply
$59k – $155k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree • Stamford
Apply
$155k per year • In office • Full-Time • New York
Apply
$220k – $350k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York • Princeton
AI/ML
AI Agents
LLM Guardrails
Model Context Protocol
DevOps
Azure
Azure DevOps
CI/CD
GitHub
Platform Engineering
Design
Figma
Management
Jira
QA
Playwright
Apply
$160k – $283k per year • Equity • In office • 5+ years exp • New York
AI/ML
AI Agents
Apply
$80k – $115k per year • In office • Full-Time • PhD • New York
Apply
$60k – $116k per year (Estimated) • Remote/Hybrid • Bachelor's Degree • New York
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.