← Back to all positions

Infrastructure Security Engineer

Full-time

Security · Remote (US time zones) · Posted 2026-05-04

Protect the physical and network infrastructure that underpins our encryption platform. This role focuses on hardware security, network defense, and supply chain integrity — from BIOS firmware to BGP routes.

Responsibilities

  • Harden our bare-metal server fleet — secure boot, TPM, firmware integrity
  • Design and enforce network security policies across our data center fabric
  • Build intrusion detection and response systems
  • Conduct supply chain security assessments for hardware and software vendors
  • Manage secrets infrastructure — HSMs, key ceremonies, hardware roots of trust
  • Lead incident response for infrastructure-level security events

Requirements

  • 5+ years of infrastructure or network security experience
  • Deep knowledge of Linux security — SELinux, seccomp, namespaces, capabilities
  • Experience hardening bare-metal servers — BIOS, BMC, TPM, measured boot
  • Strong networking security — firewall policy design, DDoS mitigation, BGP security
  • Experience with hardware security modules (HSMs) or TPM-based attestation
  • Ability to write automation in Python or Go

Nice to Have

  • Experience with physical data center security assessments
  • Background in hardware reverse engineering or firmware analysis
  • CISSP, OSCP, or similar certifications
  • Experience managing PKI at scale

Apply for this position

Send us your resume and a brief cover letter. We review every application.

Apply Now

We respond within 5 business days.