Ridgeline logo

Senior Security Engineer - Infrastructure

Ridgeline

San Ramon, CAJob$149–250K/yrPosted todayVerified open today

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$149–250K/yr
Location
San Ramon, CA
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

The Senior Infrastructure Security Engineer will secure Ridgeline’s cloud environments, define and implement best‑practice security controls, and partner with engineering, product, and compliance teams to embed security‑by‑design across platforms and services.

Skills & qualifications

RequiredNice to have

Skills

PythonKotlinTypeScriptAWSIAMAWS OrganizationsSCPsAWS Identity CenterVPCSecurity GroupsTransit GatewayLoad BalancersLambdaECSEKSFargateS3AuroraDynamoDBGuardDutyCloudTrailCloudWatchTerraformCI/CDAI ToolsFirewallsIDS/IPSTraffic Segmentation

Qualifications

Bachelor’s Degree in Computer Science or Equivalent Practical Experience5+ Years Relevant Experience in Cloud Security or Platform Engineering

Benefits

Medical Insurance
Paid Time Off
Tuition Assistance

Full job description

Senior Infrastructure Security Engineer

Location: San Ramon, CA | Reno, NV

Ridgeline is on the hunt for an experienced Infrastructure Security Engineer. As an Infrastructure Security Engineer at Ridgeline, you will play a key role in securing Ridgeline’s cloud environments, with ownership over security for specific platforms and services. You will help define and implement cloud security best practices for your teams and share those practices with peers through reviews, documentation, and pairing. You will ensure that our cloud development, deployment, and methodologies comply with industry standards and regulations.

This position requires close collaboration and partnership with our Engineering/DevOps, Product Management, and Technology organizations. Your role is just as much teaching and bringing those around you on the cloud security journey as it is doing the work. We believe in a culture where security is everyone's responsibility and an integral part of our engineering philosophy.

What You’ll Do

  • Independently perform cloud architecture and network security reviews for your product areas in AWS and select third‑party cloud services, and help embed security‑by‑design practices within your team and adjacent teams.

  • Develop and maintain scalable security tooling, with a heavy emphasis on effectively leveraging AI augmented tooling where appropriate.

  • Contribute to the design and implementation of guardrails and controls in our AWS environment (e.g., SCPs, IAM boundaries, AWS managed security services, custom-built solutions, and policy‑as‑code), and own guardrails for specific domains or services.

  • Monitor and enhance workload security, integrating detection and alerting into observability systems to safeguard services at runtime.

  • Build and champion frameworks for secure platform integrations with third-party cloud services and internal tools.

  • Embed security into CI/CD and infrastructure automation, ensuring reproducible, testable, and auditable deployments.

  • Implement and improve access management, least‑privilege enforcement, encryption/key management, and runtime protections within your services.

  • Utilize AI tools and platforms to improve security operations and development workflows; actively contribute to AI-integrated processes and team efficiencies.

  • Think creatively, own problems, seek solutions, and communicate clearly along the way.

  • Partner with other engineers through code reviews, pairing, and design consultation.

  • Collaborate with engineering, product, and compliance partners to define and deliver security requirements for the services you support, and provide clear technical guidance during design and implementation.

Who You Are & What Makes You Qualified:

  • Bachelor’s degree in Computer Science or equivalent practical experience.

  • 5+ years of relevant experience in cloud security or platform engineering, including experience independently leading complex initiatives within your team and collaborating effectively with adjacent teams.

  • Advanced proficiency in at least one high-level language (Python strongly preferred; Kotlin or TypeScript a plus).

  • Experience with AWS, especially in the following areas:

  • Identity and Access Management (IAM, Orgs & SCPs, Identity Center)

  • Networking (VPC, Security Groups, Transit Gateway, Load Balancers)

  • Compute (Lambda, ECS or EKS, Fargate)

  • Data Persistence (S3, Aurora, DynamoDB)

  • Logging & Monitoring (GuardDuty, CloudTrail, CloudWatch)

  • Demonstrated success in designing and implementing access management strategies and policy frameworks (IAM/SCPs).

  • Strong understanding of cloud workload protection, infrastructure monitoring, and threat detection in AWS-native environments.

  • Fluency with infrastructure-as-code (e.g., Terraform) and CI/CD practices.

  • Strong written and verbal communication skills, with the ability to explain security tradeoffs clearly to engineers, product partners, and stakeholders.

  • Demonstrated ability to make sound architectural tradeoffs within your services, improve long‑term code and system health, and collaborate with adjacent teams when changes have cross‑team impact.

Nice-to-Have's:

  • Familiarity with key concepts in network security: firewalls, IDS/IPS, and traffic segmentation.

  • Contributions to security tooling, open source projects, or published security research.

  • Experience with AI or LLM tools in a development or security context.

Compensation and Benefits

The typical starting salary range for this role is: $149,000 - $250,000. Final compensation amounts are determined by multiple factors, including candidate experience and expertise, and may vary from the amount listed above.

As an employee at Ridgeline, you’ll have many opportunities for advancement in your career and can make a true impact on the product.

In addition to the base salary, Ridgeline employees can participate in our Company Stock Plan subject to the applicable Stock Option Agreement. We also offer rich benefits that reflect the kind of organization we want to be: one in which our employees feel valued and are inspired to bring their best selves to work. These include unlimited vacation, educational and wellness reimbursements, and $0 cost employee insurance plafis. Please check out our Careers page for a more comprehensive overview of our perks and benefits.

Ridgeline is proud to be a community-minded, discrimination-free equal opportunity workplace.

Ridgeline processes the information you submit in connection with your application in accordance with the Ridgeline Candidate Privacy Policy. Please review the Ridgeline Candidate Privacy Policy in full to understand our privacy practices and contact us with any questions.

You've read the whole posting — now see how you match it.