Назад
3 дня назад

Senior Platform Security Engineer (AWS/Kubernetes)

200 000 - 250 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US/Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Platform Security Engineer (AWS/Kubernetes): Securing production AWS and Kubernetes environments behind high-value financial products with an accent on cloud identity, workload isolation, infrastructure as code, and software supply chain security. Focus on designing least-privilege access, building automated remediation, hardening CI/CD systems, and protecting mission-critical infrastructure at scale.

Location: Fully remote for candidates based in the US and Canada

Salary: $200,000–$250,000 base annually, plus equity and benefits

Company

Phantom develops a self-custody platform for open-market finance, including perpetuals, prediction markets, tokenized assets, stablecoins, and digital wallets.

What you will do

  • Own and improve security across a multi-account AWS environment, including IAM, networking, compute, storage, secrets, logging, and organization-level guardrails.
  • Secure production Kubernetes environments running on Amazon EKS, including RBAC, workload identity, admission controls, network boundaries, secrets, container security, and tenant isolation.
  • Design least-privilege, scoped, auditable, and time-bound access for engineers, services, and automation.
  • Lead security architecture for new infrastructure and major platform changes supporting mission-critical systems.
  • Build reusable controls and automated remediation with Pulumi, Terraform, Kubernetes policy engines, and configuration validation.
  • Harden CI/CD and software supply chains while partnering with Infrastructure, SRE, Developer Experience, and product engineering teams.

Requirements

  • 7+ years of experience in platform security, cloud security, infrastructure security, security engineering, or a related engineering role.
  • Deep hands-on experience securing production AWS environments and Kubernetes, preferably Amazon EKS.
  • Strong understanding of identity, authorization, least privilege, isolation, blast-radius reduction, and mission-critical systems.
  • Experience securing CI/CD and software supply chains, including GitHub Actions or similar systems, build runners, artifacts, workload federation, and production deployment paths.
  • Experience with infrastructure as code using Pulumi, Terraform, CloudFormation, or similar tools, plus production-quality coding in TypeScript, Python, Go, or Rust.
  • Strong ownership, communication, and collaboration skills, with the ability to take ambiguous security problems through verified remediation.

Nice to have

  • Experience with AWS Nitro Enclaves, trusted execution environments, key-management infrastructure, AWS KMS, CloudHSM, or cryptographic signing systems.
  • Experience securing financial, payments, wallet, custody, blockchain, or other high-value transaction systems.
  • Experience with multi-region AWS and Kubernetes environments, service meshes, cloud-native networking, GitHub OIDC, Argo CD, Helm, Crossplane, or observability platforms.
  • Experience building policy-as-code, automated remediation, or security tooling for large engineering organizations.

Culture & Benefits

  • Fully remote work with flexible hours and a supportive remote environment.
  • Competitive salary, equity, and eligibility for a performance bonus program.
  • Medical, dental, and vision insurance with 100% coverage, plus a 401(k) retirement plan.
  • Unlimited vacation, remote-work setup stipend, monthly wellness benefit, and weekly meal benefit.
  • Global off-sites and an AI-native security team focused on engineering and automation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →