Lead, mentor, and grow a high-performing team of infrastructure and security engineers. Hire, coach, and develop the talent on it, and set the bar for who joins.
Own our infrastructure: multi-cloud and on-prem deployment, reliability and SLOs, private networking, and the cost of running all of it.
Own our security posture: identity and least-privilege access, secrets management, vulnerability management, and the controls behind SOC 2.
Build security into how engineering already works rather than bolting it on afterward. Guardrails in CI/CD, and paved roads teams take because they are the easiest path.
Set a high bar for what done means: tested code, observability, operational readiness, and runbooks someone who did not build the system can work from. AI-assisted work ships with a human owning it.
Run a planning rhythm where the team commits to an outcome and the reason it matters. We measure the risk we remove, not the tickets we close.
Protect a sustainable pace. Heroics are a signal that a system needs fixing, not something to celebrate.
Translate a fast-moving risk picture into something leadership and customers can act on, including enterprise security reviews.
5+ years managing engineers, on top of a strong hands-on infrastructure or security engineering background.
Deep grounding in cloud-native architecture: AWS and/or GCP, Kubernetes, infrastructure as code, and CI/CD.
Real depth in security engineering: identity and access, least-privilege models, secrets management, and vulnerability management. Enough to build it, not only to review it.
A track record of taking a loosely defined, high-stakes mandate and turning it into sequenced, measurable delivery.
Experience shipping through teams you do not own, where relationships rather than org charts decide whether the work lands.
Experience putting risk in front of executives and customers, including saying clearly what is still unknown.
Comfortable when requirements change week to week and the right answer is not known yet.
Clear written and verbal communication with engineers, executives, and customers.
SOC 2 Type I/II, ISO 27001, or similar audits taken end to end.
Compliance automation tooling such as Vanta or Drata.
Multi-tenant SaaS, or on-prem and customer-hosted deployment.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career