> Markdown version of [/jobs/ext/2580551-principal-infrastructure-security-engineer](https://www.wearedevelopers.com/jobs/ext/2580551-principal-infrastructure-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Infrastructure Security Engineer - **Company:** Brivo - **Location:** Austin, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Software as a Service, Cloud Computing, Cyber Security, Nginx, Systems Development Life Cycle, Zero Trust Network Access, Secure Coding, Software Engineering, Istio, Rate Limiting, Video Streaming, Service Stack - **Published:** August 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=a94bb16ff30f933a ## About the Role * Strategic Security Architecture: 8+ years designing, scaling, and maintaining secure SaaS infrastructure in high-availability, cloud-native environments (ideally AWS). * Security by Design (SDLC): Proven track record of embedding security early in the software development life cycle, establishing threat modeling frameworks, and partnering with engineering/product leadership to enforce secure coding and architectural standards. * API & Service Mesh Security: Deep technical expertise with edge and internal proxy architectures (Envoy, Nginx), including mTLS, rate limiting, zero-trust network models, and traffic controls for video streaming and data transpor ## Description We are seeking a Senior Security Infrastructure Engineer to maintain and improve the security of Brivo Video's SaaS Infrastructure., * Lead Security Architecture & Strategy: Design, implement, and oversee enterprise-wide security architecture. * Partner with engineering and product teams to embed security by design into the software development life cycle (SDLC) and infrastructure planning. * Respond to immediate threats: Monitor latest zero day, security threats and drive timely remediations * Conduct Advanced Threat Modeling: Continuously evaluate the organization's technology stack and interconnected systems. Perform comprehensive risk assessments and threat modeling to identify and mitigate complex vulnerabilities before they can be exploited. * Act as a Strategic Advisor: Serve as the primary liaison between technical engineering teams and executive leadership. * Effectively communicate complex cyber risks in terms of business impact, and advocate for necessary security changes. * Direct Critical Incident Response: Serve as the highest-level technical escalation point for severe security incidents ## Related Videos - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [Post-Quantum Cryptography: Preparing for Q-Day](https://www.wearedevelopers.com/videos/100179-post-quantum-cryptography-preparing-for-q-day) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Why Security-First Development Helps You Ship Better Software Faster](https://www.wearedevelopers.com/videos/1568-why-security-first-development-helps-you-ship-better-software-faster) ## Related Articles - [Security Basics for Vibe Coders](https://www.wearedevelopers.com/magazine/598-security-basics-for-vibe-coders) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)