Skip to content
← Back to job listings

Software Engineer (Security Infrastructure)

Sift · United States

External listingfull-time22 days ago

About The Role

Join our team as a Software Engineer specializing in Security Infrastructure. In this role, you will define and implement security practices, architecture, and posture for our products and infrastructure. You will build and maintain tools and automation for security and compliance controls, partner with engineering teams to enhance security, and improve visibility into our security posture. You will also translate compliance requirements into technical implementations and support incident response efforts. This position offers unlimited PTO, top-tier health insurance, and a collaborative work environment.

  • Definir la postura, arquitectura y prácticas de seguridad para los productos e infraestructura de la empresa.
  • Construir controles, automatizar el cumplimiento y ser responsable de la postura de seguridad de SIFT de principio a fin.
  • Colaborar estrechamente con los equipos de infraestructura y plataforma para fortalecer los sistemas nativos de la nube y implementar controles de acceso, cifrado, registro/monitoreo y gestión de vulnerabilidades a escala.
  • Proven track record shipping production-grade security automation in cloud-native environments (AWS strongly preferred) — not just documenting or managing compliance programs
  • Deep familiarity with implementing technical controls for SOC 2, FedRAMP, or similar frameworks in real production systems
  • Strong proficiency in scripting and automation (Python, Go, Bash, or similar) and a bias toward building custom tooling over relying solely on off-the-shelf products
  • Strong problem-solving skills with a builder mindset — you enjoy making complex security requirements disappear into clean, automated systems that engineering teams actually love to use
  • Access control, identity management, and least-privilege enforcement
  • Encryption, key management, and secrets handling
  • Comfort operating as a founding security engineer: you thrive in ambiguity, own standards end-to-end, and focus on enabling velocity while raising the security bar
  • Ability to quickly assess system state, identify meaningful gaps, and deliver pragmatic, high-impact solutions in a fast-moving environment
  • Hands-on experience with Infrastructure as Code (Terraform or equivalent), containerized environments (Kubernetes), and CI/CD systems — and how to embed security directly into them
  • Working knowledge across core security domains:
  • Vulnerability scanning, policy-as-code, and continuous compliance
  • Incident response and change management
  • 4–7+ years of hands-on experience in security engineering, platform/DevSecOps, or cloud infrastructure roles (founding or early-stage security builder experience strongly preferred)
  • Logging, monitoring, auditing, and security observability
  • U.S. Person Required: Must be a U.S. citizen, lawful permanent resident, or protected individual such as an asylee or refugee in compliance with ITAR (International Traffic in Arms Regulations) / EAR (Export Administration Regulations) regulations

This is an external listing. JobSpring does not represent or verify the employer. Report this listing