Назад
Company hidden
7 часов назад

Staff Infrastructure Security Engineer (USA)

168 000 - 238 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Infrastructure Security Engineer (FedRAMP and Cloud Security): Securing GitLab's FedRAMP environment and GitLab Dedicated for Government with an accent on cloud infrastructure security, compliance automation, and technical leadership. Focus on threat modeling, continuous monitoring, AI-assisted security engineering, and translating complex security and FedRAMP control requirements into scalable platform patterns.

Location: Remote, United States; must be based in the United States and be a United States citizen

Salary: $168,000–$238,000 USD annually

Company

hirify.global provides an intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, security, compliance, and digital transformation.

What you will do

  • Set technical direction, architectural patterns, reference implementations, and foundational security automation for hirify.global's FedRAMP environment.
  • Own the security posture of the FedRAMP environment and partner with the Public Sector SRE team.
  • Lead multi-quarter infrastructure security initiatives, including continuous monitoring, control implementation, and authorization-impacting changes.
  • Conduct security reviews and threat modeling for complex infrastructure components and drive remediation of systemic risks.
  • Define effective approaches to AI-assisted security engineering within a FedRAMP-authorized environment.
  • Provide technical leadership across engineering, compliance, and senior leadership while mentoring security engineers.

Requirements

  • United States citizenship and residency are required.
  • Expertise in cloud infrastructure security across AWS, GCP, or Azure, plus Kubernetes and infrastructure and data security.
  • Deep knowledge of FedRAMP Moderate and/or High and continuous monitoring of authorized environments.
  • Programming proficiency in multiple languages, including Go, Python, or Ruby, with experience delivering production-quality security tooling.
  • Extensive experience with Infrastructure-as-Code security, Terraform, Ansible, CloudFormation, policy-as-code, and automated compliance.
  • Experience leading ambiguous, multi-team technical initiatives and communicating security and compliance tradeoffs to technical and non-technical stakeholders.

Nice to have

  • Familiarity with NIST 800-53, FIPS 140-2/3, ISO 27001, SOC 2, or PCI-DSS.
  • Hands-on experience applying AI to security workflows in compliance-constrained environments.

Culture & Benefits

  • Remote-first work environment with location-based eligibility requirements for some roles.
  • Flexible paid time off.
  • Health, financial, and well-being benefits.
  • Equity compensation and an employee stock purchase plan.
  • Growth and development fund, parental leave, and team member resource groups.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →