Senior Infrastructure Security Engineer
Senior security engineer to build security controls, advise engineering teams, and ensure the safety of cloud and compute platforms.
Coinbase Cloud Security (CloudSec) is seeking a senior security engineer to build security controls and advise engineering teams on secure architecture requirements and best practices. CloudSec is responsible for the safety of cloud and compute platforms on which Coinbase applications are built. As an engineer on the CloudSec team you are a trusted expert on the security of these platforms. You will ensure the security of these platforms through security consultations, configuration reviews, policy-as-code, and development of guardrails and automation.
What you’ll be doing (ie. job duties):
- Develop threat models for cloud and compute paved roads to identify security risks.
- Apply your expert knowledge of security best practices for AWS, GCP, and Kubernetes to inform remediations and the team’s control roadmap.
- Review configuration changes and write policies to detect security invariants.
- Build guardrails to make cloud and compute platforms safe by default.
- Write code for automations that support security requirements like threat detection, incident containment, and network access management.
- Partner with engineering teams to review cloud and compute architecture design changes.
What we look for in you (ie. job requirements):
- At least 5 years of experience in cloud security with deep expertise in AWS.
- At least 2 years of experience building and configuring security controls for applications on Kubernetes.
- An ability to deploy cloud infrastructure with Terraform and to develop automations or guardrails with Golang or Ruby.
- An execution-focused mindset, capable of navigating through ambiguity and delivering results.
- Your passion for building an open financial system that brings the world together drives you to excel in this role.
Nice to haves:
- You have written rego rules for Open Policy Agent (OPA) or similar policy as code implementations.
- You have worked with detection platforms like Wiz, AWS Config.
- You have advanced cloud security certifications like AWS Certified Security - Specialty, and/or Certified Kubernetes Security Specialist (CKS).
P64298
Pay Transparency Notice: Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include target bonus + target equity + benefits (including medical, dental, vision and 401(k)).
Pay Range:
$186,065—$218,900 USD