Infrastructure Security Engineer

Ridgeline, Inc.
United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$149,000.0 - $250,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Amazon S3 Cloud Computing Security Code Review Cyber Security Continuous Integration Persistent Data Structure Amazon DynamoDB Monitoring of Systems Identity and Access Management Intrusion Detection and Prevention
+15 more
Intrusion Detection Systems Python (Programming Language) Key Management Network Security Cloud Services TypeScript Load Balancing Large Language Models Amazon Virtual Private Cloud (VPC) Kotlin Infrastructure Automation Frameworks AWS Fargate Free and Open-Source Software Cloudwatch Terraform

Job description

  • Independently perform cloud architecture and network security reviews for your product areas in AWS and select third-party cloud services, and help embed security-by-design practices within your team and adjacent teams.
  • Develop and maintain scalable security tooling, with a heavy emphasis on effectively leveraging AI augmented tooling where appropriate.
  • Contribute to the design and implementation of guardrails and controls in our AWS environment (e.g., SCPs, IAM boundaries, AWS managed security services, custom-built solutions, and policy-as-code), and own guardrails for specific domains or services.
  • Monitor and enhance workload security, integrating detection and alerting into observability systems to safeguard services at runtime.
  • Build and champion frameworks for secure platform integrations with third-party cloud services and internal tools.
  • Embed security into CI/CD and infrastructure automation, ensuring reproducible, testable, and auditable deployments.
  • Implement and improve access management, least-privilege enforcement, encryption/key management, and runtime protections within your services.
  • Utilize AI tools and platforms to improve security operations and development workflows; actively contribute to AI-integrated processes and team efficiencies.
  • Think creatively, own problems, seek solutions, and communicate clearly along the way.
  • Partner with other engineers through code reviews, pairing, and design consultation.
  • Collaborate with engineering, product, and compliance partners to define and deliver security requirements for the services you support, and provide clear technical guidance during design and implementation.

Requirements

  • Bachelor’s degree in Computer Science or equivalent practical experience.
  • 5+ years of relevant experience in cloud security or platform engineering, including experience independently leading complex initiatives within your team and collaborating effectively with adjacent teams.
  • Advanced proficiency in at least one high-level language (Python strongly preferred; Kotlin or TypeScript a plus).
  • Experience with AWS, especially in the following areas:

  • Identity and Access Management (IAM, Orgs & SCPs, Identity Center)
  • Networking (VPC, Security Groups, Transit Gateway, Load Balancers)
  • Compute (Lambda, ECS or EKS, Fargate)
  • Data Persistence (S3, Aurora, DynamoDB)
  • Logging & Monitoring (GuardDuty, CloudTrail, CloudWatch)

Demonstrated success in designing and implementing access management strategies and policy frameworks (IAM/SCPs).

Strong understanding of cloud workload protection, infrastructure monitoring, and threat detection in AWS-native environments.

Fluency with infrastructure-as-code (e.g., Terraform) and CI/CD practices.

Strong written and verbal communication skills, with the ability to explain security tradeoffs clearly to engineers, product partners, and stakeholders.

Demonstrated ability to make sound architectural tradeoffs within your services, improve long-term code and system health, and collaborate with adjacent teams when changes have cross-team impact.

Nice-to-Have’s:

  • Familiarity with key concepts in network security: firewalls, IDS/IPS, and traffic segmentation.
  • Contributions to security tooling, open source projects, or published security research.
  • Experience with AI or LLM tools in a development or security context.

Benefits & conditions

The typical starting salary range for this role is: $149,000 - $250,000. Final compensation amounts are determined by multiple factors, including candidate experience and expertise, and may vary from the amount listed above.

As an employee at Ridgeline, you’ll have many opportunities for advancement in your career and can make a true impact on the product.

In addition to the base salary, Ridgeline employees can participate in our Company Stock Plan subject to the applicable Stock Option Agreement. We also offer rich benefits that reflect the kind of organization we want to be: one in which our employees feel valued and are inspired to bring their best selves to work. These include unlimited vacation, educational and wellness reimbursements, and $0 cost employee insurance plafis. Please check out our Careers page for a more comprehensive overview of our perks and benefits.

About the company

Ridgeline is on the hunt for an experienced Infrastructure Security Engineer. As an Infrastructure Security Engineer at Ridgeline, you will play a key role in securing Ridgeline’s cloud environments, with ownership over security for specific platforms and services. You will help define and implement cloud security best practices for your teams and share those practices with peers through reviews, documentation, and pairing. You will ensure that our cloud development, deployment, and methodologies comply with industry standards and regulations.

This position requires close collaboration and partnership with our Engineering/DevOps, Product Management, and Technology organizations. Your role is just as much teaching and bringing those around you on the cloud security journey as it is doing the work. We believe in a culture where security is everyone’s responsibility and an integral part of our engineering philosophy.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:09 min

Understanding Kotlin Multiplatform and its compiler targets

Petar Marijanović · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

3:43 min

The enduring legacy of the amazon S3 storage API

Chris Heilmann +3 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:18 min

Recommended resources and frameworks for learning Kotlin natively

Iris Hunkeler · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all