> Markdown version of [/jobs/ext/1902831-platform-security-engineer](https://www.wearedevelopers.com/jobs/ext/1902831-platform-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Platform Security Engineer - **Company:** Superhuman LLC - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Delivery, Continuous Integration, Customer Data Management, Information Engineering, Data Security, Identity and Access Management, Python (Programming Language), M Programming Language, Release Management, Reliability Engineering, Zero Trust Network Access, Software Engineering, Software Vulnerability Management, Policy as Code, Scripting, Google Cloud, Containerization, Kubernetes, Terraform, Docker - **Published:** July 31, 2026 - **Apply:** https://www.careerbuilder.com/job-details/platform-security-engineer-san-francisco-ca--edbb820d-5359-4bac-b230-aa6dbd5d316e ## About the Role * Has 5+ years of experience securing cloud infrastructure at scale in AWS, GCP, or Azure. * Hands-on cloud security depth, designing and building (not just auditing) secure cloud architecture. * Infrastructure as code fluency, Terraform or equivalent, building reusable, secure-by-default modules and policy-as-code. * Experience with software supply chain and CI/CD infrastructure security, containerization (Docker, K8s), and an understanding of the associated risks. * Understanding of zero-trust and IAM principles for both human and non-human identities. * An interest in using AI to solve Security challenges at scale. * Familiarity with software engineering or scripting in languages like Python, Java, or Go. * The ability to think like an adversary to identify risk, and then build like an engineer to mitigate those risks. * Has a demonstrated ability to work independently with minimal guidance, proactively manages tasks and priorities across multiple projects, analyzes and executes work efficiently, collaborates effectively with cross-functional teams, and thrives in fast-paced, results-driven environments., Amazon Web Services (AWS), Analysis Skills, Artificial Intelligence (AI), Artificial Intelligence (AI) Agents, Automation, Bridge Building, Budgeting, Cloud Computing, Continuous Deployment/Delivery, Continuous Integration, Cross-Functional, Customer/Client Research, Disability Insurance, Docker, E Programming Language, Ecosystems, GCP (Good Clinical Practices), Information/Data Security (InfoSec), Java, Life Insurance, Machine Tool, Microsoft Windows Azure, Multitasking, Product Engineering, Product Support, Python Programming/Scripting Language, Release Management/Engineering, Risk, Risk Analysis, Risk Management, Scripting (Scripting Languages), Software Engineering, Supply Chain, System Operations, Team Player ## Description * Design and implement secure-by-default infrastructure that makes the secure path the easiest path for developers across Superhuman's product ecosystem. * Pioneer the use of AI and automation to scale security capabilities, from building tooling in collaboration with our SRE and Release Engineering teams to automating vulnerability remediation. * Partner with Platform, Release Engineering, SRE, Data Engineering, and Product Engineering teams to define and drive secure-by-default environments supporting product needs. * Build bridges between technical and non-technical teams by translating security requirements into actionable roadmaps aligned with business objectives. * Balance security excellence with product innovation, making risk-informed decisions that safeguard customer data while enabling Superhuman to move fast. * Stand with the Security Team at the forefront of AI security, where you'll help define the playbook for protecting AI-powered systems and tackle novel security challenges. ## Related Videos - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this)