Skip to main content
NMI

Senior Staff Information Security Engineer

RemoteUnited States only
Published
Role
Security
Experience
Staff
$145k–$165k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior Staff security IC for US-remote infrastructure security across AWS and on-prem/colocation estates. Needs deep hands-on AWS security, security architecture, automation, hybrid infrastructure, and ability to lead cross-team security initiatives. Occasional in-person work at Bristol, UK office or colocation facilities may be required.

Core skills

AWSInfrastructure SecuritySecurity Automation

Required skills

IAMInfrastructure as CodeCI/CDContainersPython/Go

Optional skills

AWS certificationKubernetesContainer SecuritySoftware Supply Chain SecurityPolicy as CodeCNAPPCSPMSIEM

What you'll do

  • Help shape and advance security across a hybrid technology estate spanning AWS and on-premises infrastructure hosted in colocation facilities.
  • Provide senior technical leadership across AWS and on-premises environments.
  • Define secure architecture patterns.
  • Build scalable controls.
  • Partner with Engineering, Product, SRE, and Infrastructure teams to reduce risk without creating unnecessary barriers to delivery.
  • Remain hands-on while acting as a trusted technical authority for complex security architecture and engineering decisions.
  • Lead initiatives that cross teams and technologies.
  • Address systemic security challenges.
  • Improve how security is designed and implemented across the organisation.
  • Define and evolve security architecture across AWS and the colocation estate.
  • Establish secure reference architectures, engineering standards, and reusable control patterns.
  • Provide technical leadership for major infrastructure, platform, and product initiatives.
  • Identify systemic risks and lead practical, sustainable programmes to address them.
  • Design and improve security across cloud accounts, networks, identities, workloads, and shared services.
  • Establish effective controls for identity and access management, segmentation, encryption, secrets, logging, monitoring, and workload protection.
  • Develop preventative guardrails through infrastructure-as-code, policy-as-code, automation, and cloud-native security services.
  • Improve consistency across the enterprise including cloud, on-premises infrastructure, and the connectivity between them.
  • Engage early in the design of new products, platforms, services, and integrations.
  • Lead threat modelling, security architecture reviews, and technical risk assessments.
  • Translate security risks into clear, practical engineering recommendations.
  • Help teams adopt secure-by-design principles through reusable patterns, tooling, and documentation.
  • Design and implement security tooling, integrations, and automated controls.
  • Embed security capabilities into infrastructure provisioning, engineering workflows, and CI/CD pipelines.
  • Use AI-assisted tooling to improve scripting, detection development, alert analysis, vulnerability triage, threat modelling, and technical documentation.
  • Validate AI-generated outputs and ensure AI tools are used with appropriate controls for confidentiality, accuracy, access, and human oversight.
  • Provide technical direction for vulnerability and exposure management across AWS and on-premises infrastructure.
  • Identify recurring patterns across incidents, penetration tests, vulnerabilities, and control assessments.
  • Act as a senior technical escalation point during significant security incidents.
  • Ensure investigations and lessons learned result in durable architectural and engineering improvements.
  • Lead complex security initiatives spanning multiple teams and planning cycles.
  • Mentor security engineers and provide guidance to engineers in adjacent teams.
  • Raise the standard of security architecture, automation, documentation, and technical decision-making.
  • Communicate security risks and recommendations clearly to technical teams, product leaders, and senior stakeholders.

What they require

  • Significant experience in security engineering, infrastructure security, cloud security, security architecture, or platform engineering.
  • Deep, hands-on experience securing AWS environments.
  • Strong knowledge of AWS identity and access management, network architecture, account governance, encryption, logging, monitoring, secrets management, and workload protection.
  • Experience designing or securing on-premises, data-centre, or colocation-hosted infrastructure.
  • Strong knowledge of enterprise networking, segmentation, firewalls, secure remote access, privileged administration, and hybrid connectivity.
  • Experience with infrastructure-as-code, CI/CD security, containerised environments, and cloud-native platforms.
  • Demonstrated experience designing and implementing automated security controls and engineering solutions.
  • Proficiency with scripting or software development using Python, Go, or a comparable language.
  • Practical experience using AI-assisted tooling to improve security engineering and operational workflows.
  • Experience leading complex initiatives across multiple engineering, infrastructure, or product teams.
  • Strong knowledge of security architecture, threat modelling, vulnerability management, detection, and incident response.
  • The ability to operate independently, navigate ambiguity, and influence decisions across technical and leadership audiences.
  • Preferred: An advanced AWS certification in security, architecture, networking, or cloud engineering.
  • Preferred: Experience in fintech, payments, SaaS, or another regulated technology environment.
  • Preferred: Experience securing large or complex AWS multi-account estates.
  • Preferred: Familiarity with PCI DSS, SOC 2, GDPR, NIST, or ISO 27001.
  • Preferred: Experience supporting significant security incidents, penetration tests, audits, or customer security assessments.
  • All offers of employment are made subject to receipt of satisfactory background and financial checks.
  • Must have the legal right to be employed in the United States.

Benefits

  • Competitive salary + bonus
  • A remote first culture!
  • Flex PTO
  • Health, Dental and Vision Insurance
  • 13 Paid Holidays
  • Company volunteer days

NMI

Payment Technologies

NullEnterprise

Details

Apply routeGreenhouse
$145k–$165k/yr