About the Role:Millions of people use Notion every day, and we're growing quickly. The Infrastructure Security team's mission is to build a secure-by-default foundation across Notion's technical stacks-architecting systems that make the secure path the easy path. As an IC4 on this team, you'll own meaningful infrastructure security problems end-to-end: from identifying risk, to designing pragmatic controls, to shipping secure defaults that scale across engineering.
This role can be based in either San Francisco or New York City. We work from our offices on Mondays, Tuesdays and Thursdays (our Anchor Days) because we do our best thinking and building together in person. We're looking for someone who's excited to work alongside the team during those days.
What You'll Achieve:- Proactively enhance the security posture of our AWS accounts and cloud infrastructure.
- Create secure frameworks for secrets management and authentication/authorization.
- Design and deploy robust Identity and Access Management (IAM) solutions.
- Provide guidance and education on security and privacy best practices to cross-functional partners.
- Participate in (and help drive) mitigation strategies during security-related incident response.
Skills You'll Need to Bring:- Security architecture and expertise: you've built and maintained systems to secure cloud architectures, ranging from secrets management to Identity and Access Management solutions.
- Backend/infrastructure development: you've written and shipped production-grade code, and can contribute to the codebase and architecture to raise the bar on secure systems design.
- Working in production: you can debug systems in production and continuously improve components with minimal disruption.
- Pragmatic, risk-based prioritization: you model threats, balance trade-offs, and focus security investments where they drive the most business impact.
- Empathetic communication: you communicate nuanced ideas clearly in writing and in real time; in disagreements, you engage thoughtfully and look for the right compromise.
Nice to Haves:- AWS security best practices, zero trust architectures, and/or deep IAM expertise.
- Data security or privacy engineering experience.
- Experience applying AI tooling to defensive security workflows.
- Participation in security communities (local or regional groups, conferences).
Notion is committed to providing highly competitive cash compensation, equity, and benefits. The compensation offered for this role will be based on multiple factors such as location, the role's scope and complexity, and the candidate's experience and expertise, and may vary from the range provided below. For roles based in San Francisco or New York City, the estimated base salary range for this role is $230,000 - $280,000 per year.
#LI-Onsite
A Note on AIYou don't need deep AI expertise for every role, but we do expect every Notino to be intellectually curious, drawn to tinkering and discovery, and excited to use AI as a real collaborator in their work. For some roles, AI fluency is a core requirement - when that's the case, we'll say so explicitly in the qualifications. People who thrive here don't treat AI as a novelty. They use it to think better, and make their work easier for others to build on.