← Back to job listings
RM
Senior Infrastructure Engineer (Cloud Security)
Rocket Money · Washington, United States
About The Role
Join our Cloud Infrastructure team as a Senior Infrastructure Engineer, Cloud Security. In this role, you will lead the security evolution of our platform, ensuring our cloud security posture matches our scale. You will own the security posture of our cloud infrastructure, contribute to day-to-day engineering work, and partner with various internal teams. This position offers a range of benefits, including health plans, unlimited PTO, and learning opportunities.
- Evolving the AWS account strategy, VPC design, and workload segmentation as the infrastructure footprint grows.
- Owning the firewalls, and edge security strategy across the cloud footprint, and enhancing IaC security scanning.
- Contributing to day-to-day Cloud Infrastructure work alongside your security specialty, including Terraform reviews and platform backlog.
- You have evaluated SIEM approaches — vendor-hosted, self-operated, or hybrid — and can make a principled choice for a given organization's scale and risk tolerance
- You treat detection as a product and have experience consolidating vulnerability and misconfiguration programs where tooling produced more noise than signal
- You have deep experience in at least one major cloud (AWS preferred, GCP acceptable), including account strategy, network design, and least-privilege IAM
- You believe that secure defaults and paved roads are more effective than gates and approvals; low-friction compliance is the goal
- You understand the security implications of LLMs, agents, and AI-enabled developer tooling, and can set a reasonable bar for their safe adoption
- You have 6+ years of hands-on cloud engineering experience, with substantial time spent on cloud security in production — IAM, network architecture, blast-radius reduction, and vulnerability management
- You work well on a collaborative Cloud Infrastructure team and partner effectively with InfoSec, IT, and parent-company security functions
- You write production Terraform fluently and have experience authoring custom IaC security scanning rules, pinning module versions, and hardening CI/CD pipelines
- You have led a cloud security migration or modernization project where you defined the vision, approach, and delivered the implementation
- You have built or open-sourced internal security tooling, libraries, or scanning rules that improved how teams work with cloud infrastructure
- You have experience translating compliance frameworks (SOC 2, PCI-DSS, or GLBA) into engineering controls without creating friction for development teams
- You have hands-on experience securing production AI or ML systems — including prompt injection defenses, agent sandboxing, or model supply chain risk
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring