Security Infrastructure Engineer
This role designs, builds, and operates identity and access management systems that scale across cloud infrastructure, SaaS platforms, and internal services at AI companies. Engineers here balance automation with compliance, implementing SSO consolidation, RBAC models, and lifecycle management while reducing access sprawl and supporting rapid business growth. They work at the intersection of security governance and operational efficiency, partnering with infrastructure, IT, and compliance teams to embed least-privilege access into AI development workflows and multi-cloud environments. The role sits within security or infrastructure teams and demands expertise in identity platforms like Okta, cloud IAM services, and scripting automation to protect critical assets while enabling researchers and engineers to move quickly.
Skills
What companies are looking for in this role.
Designing and implementing identity and access management architectures across cloud and hybrid environments
Conducting security assessments and vulnerability scans of infrastructure and cloud environments
Implementing and maintaining least-privilege access controls and role-based access policies
Securing infrastructure-as-code through policy enforcement and automated scanning
Managing endpoint and device security across employee and operational systems
Designing zero-trust network architectures and identity-aware perimeter access models
Establishing and operating privileged access management systems with approval workflows and audit trails
Implementing single sign-on and multi-factor authentication across enterprise systems
Automating security workflows and identity lifecycle processes to reduce manual effort
Developing and enforcing cloud security posture management practices and compliance frameworks
Securing containerized workloads and managing continuous vulnerability scanning for container images
Architecting secrets management platforms with high availability and secure distribution
Building and operating large-scale mission-critical security infrastructure systems
Implementing data loss prevention and SaaS security controls across enterprise platforms
Integrating security events and audit logs into observability and monitoring platforms
Developing automation frameworks and APIs to eliminate manual security operations tasks
Securing multi-cloud deployments across heterogeneous cloud providers
Architecting security systems for AI workloads and agent-based infrastructure
Designing just-in-time and time-bound privilege elevation workflows
Implementing hardware-backed device trust mechanisms for compliant device access
Collaborating with engineering, research, and compliance teams to balance security with business velocity
Leading cross-functional technical initiatives and driving alignment across stakeholders
Establishing security standards, frameworks, and baseline configurations across the organization
Communicating complex technical security concepts to both technical and non-technical stakeholders
Mentoring and developing security and infrastructure engineering team members
Partnering with business stakeholders to design security controls that are workable in practice
Driving continuous improvement through measurable security metrics and KPIs
Technology
The tools and technologies that define this role.
Open Jobs
18 open Security Infrastructure Engineer jobs across 12 companies.
Other Infrastructure & IT roles
Provides end-user technical support including hardware, software, and account troubleshooting.
Designs, deploys, and maintains enterprise IT systems including identity management, SaaS platforms, device management, and business applications. The IT-facing systems engineer managing corporate technology.
Designs, implements, and maintains network infrastructure including LAN, WAN, backbone, and edge networks.
Operates and maintains physical IT and data-center infrastructure—servers, storage, networking equipment, and the systems running on top of them.
IT professionals who remotely manage servers, operating systems, hypervisors, and software within data center environments. Focuses on systems administration, monitoring, patching, and troubleshooting at the OS and application layer — NOT physical hardware installation.