> Markdown version of [/jobs/ext/2608384-security-infrastructure-engineer](https://www.wearedevelopers.com/jobs/ext/2608384-security-infrastructure-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security & Infrastructure Engineer - **Company:** CHRIS YOUNG FILMS, LLC - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $195,000.0 - $220,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Cyber Security, Continuous Delivery, Continuous Integration, Key Management, Network Segmentation, Node.Js, PostGIS, TypeScript, Datadog, Data Logging, Terraform, Marketplace - **Published:** August 31, 2026 - **Apply:** https://www.careerbuilder.com/job-details/senior-security-infrastructure-engineer--3852751f-52fb-4112-a324-7d4532e0aebc ## About the Role * You've been through a FedRAMP authorization before - Agency or JAB, Moderate or above - and can speak candidly about what actually consumed the time * Deep AWS experience and strong infrastructure-as-code fundamentals * Comfortable owning both the engineering and the paperwork; you can write a control narrative and also fix the Terraform it describes * Experience with SOC 2 / StateRAMP / TX-RAMP, continuous monitoring tooling, and threat modeling * Bonus: Node/TypeScript environments, PostGIS, GovTech or public sector delivery, Amazon Web Services (AWS), Automation, Business Strategy, Compensation Management, Continuous Deployment/Delivery, Continuous Integration, Government, Incident Response, Machine Tool, Security Infrastructure, Tax Regulations, Team Lead/Manager, Threat Modeling ## Description As a Senior Security & Infrastructure Engineer, you will own the security and compliance posture of our AWS infrastructure end-to-end - from the authorization boundary and continuous monitoring through to the automation that keeps it all running - while driving our FedRAMP authorization forward. You'll act at the intersection of security engineering, infrastructure, and compliance, partnering directly with our compliance lead and engineering team to make security decisions land as defaults rather than review gates., * Own the security and compliance posture of our AWS infrastructure (us-east-1 commercial, targeting Moderate): authorization boundary, KSI evidence, continuous monitoring, and the automation behind all of it * Drive FedRAMP execution alongside our compliance lead: machine-readable evidence in Vanta, control implementation, 3PAO coordination through assessment and Marketplace listing * Harden and modernize production infrastructure: IaC, network segmentation, secrets management, logging and detection in Datadog, incident response * Keep the guardrails from becoming a tax: build compliance into CI/CD and developer workflows rather than bolting it on * Partner directly with engineering (~12 people, two product teams) so security decisions land as defaults, not as review gates ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Stop using Node.js like in 2020! What changed and what you can do today with Node.js](https://www.wearedevelopers.com/videos/100011-stop-using-node-js-like-in-2020-what-changed-and-what-you-can-do-today-with-node-js) - [Tracking vehicles at scale](https://www.wearedevelopers.com/videos/1999-tracking-vehicles-at-scale) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) - [Stop Using Node.js Like It’s 2020! - Alfonso Graziano](https://www.wearedevelopers.com/videos/1863-stop-using-node-js-like-it-s-2020-alfonso-graziano) - [Software Engineering Social Connection: Yubo’s lean approach to scaling an 80M-user infrastructure](https://www.wearedevelopers.com/videos/1583-software-engineering-social-connection-yubo-s-lean-approach-to-scaling-an-80m-user-infrastructure) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)