Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Software Engineer, Security Infrastructure

Siftstack
CompanySiftstack
CategoryEngineering
LocationMarina Del Rey
RemoteHybrid
EmploymentNot stated
LevelNot stated
SalaryUSD 170k–220k
Posted24 Apr 2026
Last verified30 Jul 2026
SourceEmployer career page (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
ABOUT SIFT Sift is the data infrastructure platform for hardware engineering teams. Sift turns high-frequency telemetry into engineering insights for mission-critical systems. Teams use Sift to build and operate rockets, satellites, autonomous vehicles, energy systems, defense platforms, and more. Founded by former SpaceX engineers who built the tools behind Dragon and Starlink, Sift is building the data infrastructure to herald the AI era for physical systems. About the Role As a Software Engineer, Security Infrastructure, you will not just maintain a security checklist; you will define the posture, architecture, and practices that keep our products and infrastructure secure in the most demanding environments. You will be both hands-on and strategic, building controls, automating compliance, and owning SIFT’s security posture end-to-end, with technical security engineering as the primary focus. You will set the standard for how we protect our systems and data, ensuring resilience against modern threats while partnering with external compliance specialists to meet the requirements of aerospace, defense, and enterprise sectors. In This Role, You’ll: - Build and maintain tooling, scripts, services, and automation that assess, enforce, and monitor security and compliance controls across our AWS cloud environments, Kubernetes clusters, and CI/CD pipelines. - Develop lightweight internal solutions (e.g., policy-as-code, custom scanners, CI/CD integrations) that make security and compliance automatic, auditable, and invisible to the rest of engineering. - Embed security guardrails directly into infrastructure-as-code (Terraform), container orchestration, and deployment workflows so that secure-by-default becomes the path of least resistance. - Partner closely with the infrastructure and platform engineering teams to harden cloud-native systems, implement access controls, encryption, logging/monitoring, and vulnerability management at scale. - Improve visibility into our overall security posture through automated reporting, dashboards, and real-time observability that highlight risks and control coverage. - Translate compliance requirements (SOC 2, FedRAMP, and related frameworks) into pragmatic, enforceable technical implementations rather than manual checklists. - Reduce toil by automating security workflows, compliance validation, and remediation so engineering can ship fast without compromising security. - Support incident response and post-incident improvements by building better observability and tooling that accelerates detection and recovery. - Conduct security reviews of new features, services, and infrastructure changes, providing clear guidance that helps teams design and implement secure solutions. The Skillset You’ll Bring: Technical Skills - 4–7+ years of hands-on experience in security engineering, platform/DevSecOps, or cloud infrastructure roles (founding or early-stage security builder experience strongly preferred). - Proven track record shipping production-grade security automation in cloud-native environments (AWS strongly preferred) — not just documenting or managing compliance programs. - Deep familiarity with implementing technical controls for SOC 2, FedRAMP, or similar frameworks in real production systems. - Strong proficiency in scripting and automation (Python, Go, Bash, or similar) and a bias toward building custom tooling over relying solely on off-the-shelf products. - Hands-on experience with Infrastructure as Code (Terraform or equivalent), containerized environments (Kubernetes), and CI/CD systems — and how to embed security directly into them. - Working knowledge across core security domains: - Access control, identity management, and least-privilege enforcement - Logging, monitoring, auditing, and security observability - Encryption, key management, and secrets handling - Vulnerability scanning, policy-as-code, and
HOUSE ADYou found the opening. Now track it.Tracker, radar and AI drafts in one place.erioun.com →