
Platform Security Engineer – AMER/EMEA
Posted Sep 2

Posted Sep 2
This is a fully remote position, open to applicants anywhere in the world.
• Identify and mitigate security risks across AWS, Kubernetes, containerized workloads, and platform infrastructure.
• Perform threat modeling, architecture evaluations, and technical risk assessments.
• Collaborate with infrastructure, platform, and SRE teams to create practical controls and secure-by-default patterns.
• Enhance Kubernetes and container security through workload isolation, RBAC, admission control, secrets management, network policies, and runtime hardening.
• Evaluate container runtime and Linux isolation risks, including capabilities, seccomp/AppArmor, namespaces, cgroups, and potential container escape scenarios.
• Fortify AWS security encompassing IAM, account boundaries, network controls, logging, detection, encryption, and service configuration.
• Develop scalable automation, guardrails, paved paths, detection mechanisms, secure defaults, and review frameworks.
• Differentiate theoretical risk from actual platform risk to effectively prioritize security initiatives.
• Work in conjunction with infrastructure, platform, SRE, product engineering, and technical leadership to diminish risk across Supabase systems.
• Senior-level expertise in platform security, cloud security, infrastructure security, container security, or security engineering.
• Extensive hands-on experience with AWS, Kubernetes, containers, and foundational Linux security.
• Background in large cloud environments, multi-cluster Kubernetes configurations, developer platforms, SaaS solutions, or high-scale infrastructure teams.
• Capability to analyze identity, networking, workload isolation, runtime security, secrets, supply chain, and blast radius.
• Effective communication skills across both technical and non-technical audiences.
• Experience working in a written, asynchronous environment.
• Proficiency in managing security initiatives across complex projects with diverse stakeholders.
• Experience in addressing real-world infrastructure security challenges and navigating uncertainty.
• Preference for developing guardrails, automation, and secure defaults.
• Required application details include passport country and country of residence.
• Applicants must be at least 18 years old.
• Fully remote work environment.
• WeWork membership or co-working allowance applicable anywhere globally.
• ESOP (equity ownership) available for all team members.
• Technology allowance for acquiring laptops, monitors, headphones, or other work-related equipment.
• Full health insurance coverage for employees.
• 80% health insurance coverage for dependents.
• Annual company off-site events.
• Flexible working arrangements with asynchronous operations and self-managed schedules.
• Annual education allowance for courses, books, conferences, or other learning opportunities.
The College Board
KnowBe4
SeatGeek
Sigma Software Group
Get handpicked remote jobs straight to your inbox weekly.