
Security and Infrastructure Engineer
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in Canada.
• Take full ownership of cloud and platform security from start to finish across AWS and Azure, including Ada’s agentic AI platform.
• Architect, design, and manage security technologies across various layers such as cloud, network, identity, endpoint, and application.
• Develop cloud security reference architectures, threat models, and guardrails that align with zero trust principles and least privilege access.
• Oversee the lifecycle of security tools, which includes cloud-native security services, SIEM, CSPM, CIEM, EDR, DLP, and platforms for vulnerability management.
• Implement safety guardrails within the agentic platform and collaborate with the Reasoning Engine and Playbooks teams.
• Establish standards for secure coding, review processes, and threat modeling for new agentic features.
• Create security observability, detection, alerting, and response mechanisms integrated with Datadog and Sentry.
• Develop automated response and remediation workflows utilizing cloud-native automation, SOAR, and infrastructure as code.
• Lead investigations into cloud security incidents and participate in on-call duties related to security.
• Transform recurring security and infrastructure requests into self-service tools and incorporate security into CI/CD and deployment processes.
• Convert NIST SP 800-53, PCI DSS, CIS Benchmarks, and AWS Well-Architected requirements into actionable technical controls.
• Assist with vendor and dependency security, audits, risk assessments, and the collection of evidence.
• Act as a subject matter expert in cloud and platform security, mentor engineers, and influence architectural decisions to shape the long-term security posture.
• Deliver infrastructure that is secure by default, address gaps in agent guardrails, enhance incident readiness, and facilitate quicker secure engineering delivery.
• Within the first 90 days, map the attack surface and access model, replace one high-volume manual request with self-service tooling, and address a guardrail gap.
• A minimum of 8 years of experience in cloud, infrastructure, or security engineering, with a proven track record of setting technical direction across multiple teams.
• Extensive hands-on experience with at least one major cloud provider, preferably AWS; experience with Azure is advantageous.
• Strong expertise in designing and securing cloud IAM, networking, secrets management, and large-scale distributed systems.
• Significant experience with infrastructure as code, including tools like Terraform or CloudFormation, and policy as code implementation.
• Proficiency in building or managing detection and response systems, including SIEM, CSPM/CIEM, and cloud security monitoring solutions.
• Experience or a well-informed perspective on securing LLM and agentic AI systems, focusing on guardrails, safe tool usage, and failure isolation.
• A history of converting recurring security and infrastructure requests into self-service tools.
• Capability to translate compliance and risk requirements into technical implementations effectively.
• Ability to influence architectural and engineering decisions across teams while mentoring senior engineers.
• Comfortable working independently, taking ownership of long-term technical initiatives, and participating in security-related on-call duties.
• Unlimited Vacation: Recharge when you need to.
• Comprehensive Benefits: Extended health coverage, dental, vision, travel, and life insurance.
• Wellness Account
• Employee & Family Assistance Plan
• Flexible Work Schedule
• Remote-First, In-Person Friendly: Options to work from home or at our local hub.
• Learning & Development Budget
• Work from Home Budget
• Access to Cutting-Edge AI Tools
• Hands-On with LLMs
• A Thriving Industry: Join the forefront of innovation in AI, shaping the future of technology.
• Benefits and perks apply to full-time, permanent employees.
Trilon Group
Carbon60
fal
LatamCent
Get handpicked remote jobs straight to your inbox weekly.