> Markdown version of [/jobs/ext/2720011-infrastructure-security-engineer](https://www.wearedevelopers.com/jobs/ext/2720011-infrastructure-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Infrastructure Security Engineer - **Company:** Ridgeline, Inc. - **Location:** United States - **Experience:** Expert - **Salary:** $149,000.0 - $250,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Amazon S3, Cloud Computing Security, Code Review, Cyber Security, Continuous Integration, Persistent Data Structure, Amazon DynamoDB, Monitoring of Systems, Identity and Access Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), Key Management, Network Security, Cloud Services, TypeScript, Load Balancing, Large Language Models, Amazon Virtual Private Cloud (VPC), Kotlin, Infrastructure Automation Frameworks, AWS Fargate, Free and Open-Source Software, Cloudwatch, Terraform - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-security-engineer-infrastructure-ridgeline-9802872 ## About the Role * Bachelor's degree in Computer Science or equivalent practical experience. * 5+ years of relevant experience in cloud security or platform engineering, including experience independently leading complex initiatives within your team and collaborating effectively with adjacent teams. * Advanced proficiency in at least one high-level language (Python strongly preferred; Kotlin or TypeScript a plus). * Experience with AWS, especially in the following areas: * Identity and Access Management (IAM, Orgs & SCPs, Identity Center) * Networking (VPC, Security Groups, Transit Gateway, Load Balancers) * Compute (Lambda, ECS or EKS, Fargate) * Data Persistence (S3, Aurora, DynamoDB) * Logging & Monitoring (GuardDuty, CloudTrail, CloudWatch) Demonstrated success in designing and implementing access management strategies and policy frameworks (IAM/SCPs). Strong understanding of cloud workload protection, infrastructure monitoring, and threat detection in AWS-native environments. Fluency with infrastructure-as-code (e.g., Terraform) and CI/CD practices. Strong written and verbal communication skills, with the ability to explain security tradeoffs clearly to engineers, product partners, and stakeholders. Demonstrated ability to make sound architectural tradeoffs within your services, improve long-term code and system health, and collaborate with adjacent teams when changes have cross-team impact. Nice-to-Have's: * Familiarity with key concepts in network security: firewalls, IDS/IPS, and traffic segmentation. * Contributions to security tooling, open source projects, or published security research. * Experience with AI or LLM tools in a development or security context. ## Description * Independently perform cloud architecture and network security reviews for your product areas in AWS and select third-party cloud services, and help embed security-by-design practices within your team and adjacent teams. * Develop and maintain scalable security tooling, with a heavy emphasis on effectively leveraging AI augmented tooling where appropriate. * Contribute to the design and implementation of guardrails and controls in our AWS environment (e.g., SCPs, IAM boundaries, AWS managed security services, custom-built solutions, and policy-as-code), and own guardrails for specific domains or services. * Monitor and enhance workload security, integrating detection and alerting into observability systems to safeguard services at runtime. * Build and champion frameworks for secure platform integrations with third-party cloud services and internal tools. * Embed security into CI/CD and infrastructure automation, ensuring reproducible, testable, and auditable deployments. * Implement and improve access management, least-privilege enforcement, encryption/key management, and runtime protections within your services. * Utilize AI tools and platforms to improve security operations and development workflows; actively contribute to AI-integrated processes and team efficiencies. * Think creatively, own problems, seek solutions, and communicate clearly along the way. * Partner with other engineers through code reviews, pairing, and design consultation. * Collaborate with engineering, product, and compliance partners to define and deliver security requirements for the services you support, and provide clear technical guidance during design and implementation. ## Related Videos - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [WeAreDevelopers LIVE - CSS is DOOMed](https://www.wearedevelopers.com/videos/1838-wearedevelopers-live-css-is-doomed) - [Kotlin Multiplatform - True power of native code reuse](https://www.wearedevelopers.com/videos/4-kotlin-multiplatform-true-power-of-native-code-reuse) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)