Senior Security Engineer – Infrastructure

🔥 57 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Ondo Finance

Ondo Finance

51 - 200 employees

₿ Crypto

💳 Fintech

💸 Finance

💰 Initial Coin Offering - Ondo Finance on 2024-01

Crypto • Fintech • Finance

Ondo is a company building institutional-grade onchain financial infrastructure and products that bridge traditional finance (TradFi) and decentralized finance (DeFi). Its offerings include tokenized public securities (Ondo Stocks) that make public securities freely transferable and usable in DeFi, USDY (a permissionless yield-bearing stablecoin), and OUSG (an institutional product offering exposure to short-term US Treasuries with 24/7 instant minting and redemptions). Ondo emphasizes compliance, institutional-grade security, third-party audits, and partnerships with asset managers and regulated service providers. The company’s Nexus technology enables instant minting and redemption for tokenized US Treasuries and stablecoins and supports omnichain issuance and distribution. Ondo works with partners like Broadridge, J. P. Morgan, Mastercard, Ripple, and asset managers to bring voting and cross-border redemption capabilities to tokenized assets.

📋 Description

• Own cloud security posture across AWS and GCPs: IAM, network, encryption, logging, and account structure. • CNAP: prioritize findings against real risk, drive remediation through engineering, and measure progress. • Design and enforce IaC guardrails: pre-merge policy-as-code, required modules, and CI gates that make the secure path the default. • Lead identity and access design across cloud, IdP, and developer platforms. Drive least-privilege as a continuously enforced property, not an annual project. • Own secrets management strategy and migration off of long-lived credentials wherever feasible. • Run focused offensive testing against our own infrastructure: cloud red-team scenarios, IAM privilege-escalation paths, CI/CD supply-chain attack paths, and lateral-movement chains. Translate findings into durable controls. • Partner with SecOps on detection coverage for cloud control-plane abuse and with Product Security on the infra side of application threat models. • Drive third-party and supply-chain risk for infra components: container base images, build pipelines, OSS dependencies in Terraform modules, and IaC providers. • Lead incident response for infra-rooted incidents alongside the SecOps lead. • Mentor engineers on threat modeling, secure-by-default infra patterns, and how to reason about blast radius.

🎯 Requirements

• 3-5+ years in security engineering with deep focus on cloud and/or infrastructure. • Strong IaC skills — you have written, reviewed, and refactored real IaC at scale, and you can explain the failure modes of large IaC codebases. • Production experience across AWS, GCP, or Azure. • Hands-on experience with a cloud security platformn • Strong scripting skills in Python or Go. • Working knowledge of Kubernetes security (RBAC, admission control, workload identity) if our stack uses it; bonus if you can operate it. • Comfort owning a domain end-to-end: design, build, operate

🏖️ Benefits

• Competitive compensation including salary, future token rights, and/or equity (according to your preferences) — we're well-funded and believe that great talent deserves great compensation • Full benefits (medical, vision, and dental) and flexible vacation policy (PTO) • Small remote-first team across many countries — you'll be an early team member helping shape our vision, culture, and design practices • A+ colleagues — our team includes alumni from: Goldman Sachs, Blackrock, Two Sigma, Bridgewater, SpaceX, AWS, Meta, Google, Pinterest, McKinsey, Circle, Uniswap, Phantom • Best-in-class investors — we are proud to be backed by leading crypto experts and VCs, including Pantera Capital, Founders Fund and Coinbase Ventures

Apply Now

Similar Jobs

🔥 59 minutes ago

Law School Admission Council (LSAC)

201 - 500

📚 Education

🤝 Non-profit

👥 B2C

Infrastructure Engineer responsible for the maintenance of enterprise infrastructure platforms. Supporting network environment and collaborating with teams at LSAC.

🔥 1 hour ago

HealthEdge

1001 - 5000

🏥 Healthcare

💼 Consulting

⚕️ Healthcare Insurance

Senior Cloud Engineer in charge of designing, implementing and maintaining cloud infrastructure for HealthEdge's digital health platforms. Collaborate with teams to ensure security and compliance.

🔥 1 hour ago

CrowdStrike

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🤖 Artificial Intelligence

Senior Infrastructure Engineer managing on-premises virtualization and cloud migration strategies at CrowdStrike. Leading technical initiatives and mentoring engineers in a large-scale production environment.

🔥 1 hour ago

Cadence Solutions

11 - 50

💼 Consulting

🏢 Enterprise

🤝 B2B

Senior Software Engineer developing scalable security infrastructure at Cadence Solutions. Involved in AI governance and risk controls to ensure compliance in the healthcare sector.

🔥 1 hour ago

MSI Technologies Inc.

51 - 200

📡 Telecommunications

🔒 Cybersecurity

💼 Consulting

Cloud Infrastructure Engineer responsible for managing, troubleshooting, and optimizing cloud-based services at MSI Technologies Inc. Supporting complex incidents and ensuring service reliability in cloud infrastructure.