vouch-inc~3h ago
New
New
Staff Infrastructure & Security Engineer
EngineeringSecurity Engineer
0 views0 saves0 applied
Quick Summary
Key Responsibilities
Serve as the technical DRI for the Infra & Security group: own the architecture, set the standards, and make the technical calls across infrastructure, DevOps, and security engineering.
Technical Tools
EngineeringSecurity Engineer
Responsibilities
~1 min read- →Serve as the technical DRI for the Infra & Security group: own the architecture, set the standards, and make the technical calls across infrastructure, DevOps, and security engineering.
- →Own the cloud platform end-to-end: infrastructure reliability, CI/CD and delivery automation, and the infrastructure-as-code beneath them.
- →Drive a simpler, isolated architecture through shrinking the surface area we defend and maintain: Retire legacy and unused services, consolidate SaaS and vendors, and unwind standing external dependencies.
- →Own infra & security incident-response: a staffed rotation with no single point of failure, severity-matched response, actionable alerting, and runbooks.
- →Bring identity and access under a single source of truth: human, service, machine, and agent identity.
- →Build the Production-agent Infrastructure that lets autonomous agents run and self-verify safely in production.
- →Drive and maintain our security-compliance and supply-chain scanning programs.
- Deep cloud engineering experience, primarily in AWS: designing, building, and operating production infrastructure at scale.
- Strong in CI/CD and delivery automation (CircleCI, Nomad, or equivalent) and infrastructure-as-code (Terraform), with ownership of a real production system's reliability.
- Apply security pragmatically: isolation, least-privilege, RBAC, blast-radius containment.
- A formal background in information security or cybersecurity, including having led a SOC 2 (or similar) compliance audit.
- Has led at least one enterprise security-breach or data-leak incident response.
- Comfortable as a hands-on technical lead and DRI: work through architecture, standards, and code review, set technical direction, and raise the bar across a team.
- A bias toward simplicity and subtraction.
- AI-forward: build for isolation, safe data, and non-human identity, and the infrastructure behind it.
- Communicate crisply across engineering, IT/Security, Legal, and Finance.
Nice to Have
~1 min read- Experience operating Temporal or similar durable-workflow infrastructure in production.
- Hands-on with supply-chain / dependency vulnerability scanning (Endor Labs, Snyk, or equivalent).
- Compliance-as-code experience: treating controls and evidence as an engineering artifact.
- Familiarity with agent / sandbox isolation patterns: dedicated accounts, scoped tokens, ephemeral environments, and data masking.
- Secrets and credential management at scale (1Password, AWS SSM, or equivalent).
- Experience in insurance, fintech, or another regulated domain.
- A university degree in cybersecurity or a related field.
What We Offer
~2 min read✓💰 Competitive compensation and equity packages
✓⚕️ Health, dental, and vision insurance
✓🍼 Parental leave
✓🌴 Flexible vacation time
✓🪷 Wellness allowance
✓🛜 Technology allowance
✓📚 Company-sponsored personal and professional development
✓🏫 L&D: Partnerships with Ethena and monthly Lunch & Learns
✓🧘 Wellbeing: access to many wellbeing perks, including Peloton, Fetch, OneMedical, Headspace care+, etc.
✓🤗 Caregiver Support: company seed into the dependent care FSA and company sponsored Care.com membership.
✓📊 Regular performance reviews: Vouch conducts regular performance discussions with all team members, offering goal setting and check-ins, development discussions, and promotion opportunities.
(Please note these steps may vary slightly depending on the role)
- 30-minute phone call with our recruiting team
- 30-45 minute video interview with the hiring manager
- Case study/technical screen
- Meet the team! 30-45 min 1:1 video discussion with 3-4 team members you’d work closely with in the role
- Executive chat
Location & Eligibility
Where is the job
Chicago, United States
Hybrid — some on-site time required
Who can apply
US
Listing Details
- First seen
- September 26, 2026
- Last seen
- September 27, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 54%
- Scored at
- September 26, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
External application
Similar Security Engineer jobs
View all →Cybersecurity Engineer Sr
Security Engineer – Produktsicherheit (m/w/d)
Cloud Security Engineer - OCI (Oracle Cloud Infrastructure)
Remote
Cloud Security Engineer (Oracle Cloud Infrastructure - OCI)
Remote
Cloud Security Engineer (Oracle Cloud Infrastructure - OCI)
Remote
Senior Security Engineer - Detection & Response
Browse Similar Jobs
Devops Engineer3.2kFullstack Developer1.9kEngineering Manager1.9kSecurity1.7kSoftware Architect1.6kQa Engineer1.6kMechanical Engineer1.5kElectrical Engineer1.4kBackend Developer1.3kProject Engineer1.2kDevOps & Infrastructure1.2kFrontend Developer979Design Engineer942Process Engineer672Mobile Developer655Quality Engineer650Product Engineer649Backend Engineering599Data Engineering543Embedded Engineer498
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.