> Markdown version of [/jobs/ext/730539-senior-platform-engineer-security](https://www.wearedevelopers.com/jobs/ext/730539-senior-platform-engineer-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Platform Engineer - Security - **Company:** Rumble Inc. - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $122,000.0 - $205,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Bash Shell, Cloud Computing, Cloud Engineering, CompTIA Security+, Cyber Security, Linux, Python (Programming Language), Key Management, Linux Distribution, Linux Security Modules, Network Control, OAuth, OpenID, OpenStack, Package Management Systems, PCI Data Security Standards, Reliability Engineering, Ansible, Security Information and Event Management, Software Vulnerability Management, Ceph (Software), Data Logging, Scripting, Openstack Neutron, Selinux, Kubernetes, Infrastructure Automation Frameworks, Cinder (Software), CIS Benchmarks, Terraform, Splunk, Devsecops - **Published:** June 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9f8f71aa78a41a1b ## About the Role Do you have experience in Vulnerability management?, * Strong Linux systems engineering background (systemd, networking, storage, package management) on major Linux distributions. * Hands-on experience applying security hardening standards such as CIS Benchmarks, STIGs, or equivalent at production scale. * Solid understanding of vulnerability management (CVSS scoring, risk-based prioritization) and Linux security controls (SELinux or AppArmor, auditd, PAM, host firewalling). * Experience with infrastructure automation using Ansible, Terraform, and scripting in Bash and/or Python. * Experience supporting compliance or audit activities, including evidence collection, control documentation, and working directly with auditors or security teams. * Strong understanding of identity and authentication concepts (SSO, OAuth2/OIDC, privileged access) and excellent documentation skills. Preferred Qualifications * Security certifications such as CISSP, CISM, CCSP, GSEC, GCIH, Security+, or equivalent; more senior certifications are a significant plus. * Experience supporting ISO 27001, SOC 2, PCI DSS, or FedRAMP audits in a hands-on capacity. * Familiarity with OpenStack services (Nova, Neutron, Keystone, Cinder) and/or Ceph. * Experience with Kubernetes security and hardening, including CIS Kubernetes Benchmarks and Pod Security Standards. * Background with SIEM, EDR, or log aggregation tools (Elastic, Splunk, Wazuh, Falco), secrets management (Vault), and disk encryption (LUKS/dm-crypt). ## Description Rumble Cloud is seeking a Senior Platform Engineer (Security) to help operate, secure, and continuously harden the infrastructure that powers our public cloud, built on OpenStack and Ceph. This role sits at the intersection of platform engineering and security operations: you'll apply and maintain security hardening across our Linux fleet and cloud control plane, track vulnerabilities through to remediation, and serve as a key engineering partner for internal and external audits. Strong Linux fundamentals are essential, and demonstrated security expertise, ideally backed by certification, is a significant differentiator. You'll work across operating systems, OpenStack and Ceph components, and Kubernetes, using automation to keep baselines consistent and auditable. You'll partner closely with cloud engineering, DevSecOps, and compliance stakeholders to ensure the platform meets both reliability and security expectations as it grows. If you enjoy hardening Linux at scale, working directly with vulnerability and control frameworks such as CIS Benchmarks and ISO 27001, and contributing to the security posture of mission-critical cloud infrastructure, this role offers substantial impact and technical depth., * Assess, implement, and maintain security hardening (CIS Benchmarks, STIGs, or equivalent) across Linux hosts, hypervisors, and the cloud control plane, using automated baselines with tools such as Ansible and Terraform. * Track and remediate vulnerabilities at the infrastructure layer, including operating systems and platform components such as OpenStack, Ceph, and Kubernetes, maintaining accurate inventory, patch SLAs, and risk-based prioritization. * Coordinate with the DevSecOps Engineer on application- and pipeline-layer remediation, ensuring alignment between platform hardening and SSDLC practices. * Serve as a primary technical contributor to internal and external audits, including evidence collection, control narratives, and responses to auditor questions, mapping work to ISO 27001 and other relevant frameworks. * Operate and improve core platform services on Linux infrastructure, contributing to automation, capacity planning, incident response, and reliability engineering. * Help design logging, monitoring, and alerting that support both operational and security use cases, in collaboration with platform, security, and SRE teams. * Document hardening baselines, security controls, and operational procedures clearly so that they are repeatable, testable, and auditable. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Kubernetes Security - Challenge and Opportunity](https://www.wearedevelopers.com/videos/412-kubernetes-security-challenge-and-opportunity) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)