Staff Infrastructure & Security Engineer

Vouch β€’ $200K β€” $240K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of cloud engineering experience in AWS for production infrastructure management.
  • Expertise in CI/CD and delivery automation tools (e.g., CircleCI, Terraform) with a history of ensuring system reliability.
  • Background in information security or cybersecurity, with experience leading compliance audits.
  • Experience leading incident response for at least one security breach or data leak.
  • Strong technical leadership skills with a focus on architecture, standards, and team performance.

Responsibilities

  • Be the technical decision-maker for the Infra & Security group, overseeing architecture and standards.
  • Manage the entire cloud platform including reliability, automation, and infrastructure-as-code.
  • Simplify architecture by retiring legacy services and consolidating vendors.
  • Lead infra and security incident response efforts with a strong focus on actionable alerting.
  • Unify identity and access management for human, service, machine, and agent identities.
  • Develop infrastructure for autonomous agents operating safely in production.
  • Maintain security compliance and supply-chain scanning programs.

Benefits

  • Competitive compensation and equity packages
  • Health, dental, and vision insurance
  • Parental leave
  • Flexible vacation time
  • Wellness allowance
  • Technology allowance
  • Company-sponsored personal and professional development
  • L&D partnerships and monthly Lunch & Learns
  • Access to various wellbeing perks like Peloton and Headspace
  • Dependent care support including Care.com membership and FSA funding
  • Regular performance reviews with goal-setting and promotion opportunities.
Full Job Description
What You'll Do:

  • Serve as the technical DRI for the Infra & Security group: own the architecture, set the standards, and make the technical calls across infrastructure, DevOps, and security engineering.
  • Own the cloud platform end-to-end: infrastructure reliability, CI/CD and delivery automation, and the infrastructure-as-code beneath them.
  • Drive a simpler, isolated architecture through shrinking the surface area we defend and maintain: Retire legacy and unused services, consolidate SaaS and vendors, and unwind standing external dependencies.
  • Own infra & security incident-response: a staffed rotation with no single point of failure, severity-matched response, actionable alerting, and runbooks.
  • Bring identity and access under a single source of truth: human, service, machine, and agent identity.
  • Build the Production-agent Infrastructure that lets autonomous agents run and self-verify safely in production.
  • Drive and maintain our security-compliance and supply-chain scanning programs.


About You:

  • Deep cloud engineering experience, primarily in AWS: designing, building, and operating production infrastructure at scale.
  • Strong in CI/CD and delivery automation (CircleCI, Nomad, or equivalent) and infrastructure-as-code (Terraform), with ownership of a real production system's reliability.
  • Apply security pragmatically: isolation, least-privilege, RBAC, blast-radius containment.
  • A formal background in information security or cybersecurity, including having led a SOC 2 (or similar) compliance audit.
  • Has led at least one enterprise security-breach or data-leak incident response.
  • Comfortable as a hands-on technical lead and DRI: work through architecture, standards, and code review, set technical direction, and raise the bar across a team.
  • A bias toward simplicity and subtraction.
  • AI-forward: build for isolation, safe data, and non-human identity, and the infrastructure behind it.
  • Communicate crisply across engineering, IT/Security, Legal, and Finance.


Nice To Have:

  • Experience operating Temporal or similar durable-workflow infrastructure in production.
  • Hands-on with supply-chain / dependency vulnerability scanning (Endor Labs, Snyk, or equivalent).
  • Compliance-as-code experience: treating controls and evidence as an engineering artifact.
  • Familiarity with agent / sandbox isolation patterns: dedicated accounts, scoped tokens, ephemeral environments, and data masking.
  • Secrets and credential management at scale (1Password, AWS SSM, or equivalent).
  • Experience in insurance, fintech, or another regulated domain.
  • A university degree in cybersecurity or a related field.


Vouch provides several benefits to help you bring your best self to work:

  • Competitive compensation and equity packages
  • βš• Health, dental, and vision insurance
  • Parental leave
  • Flexible vacation time
  • Wellness allowance
  • πŸ›œ Technology allowance
  • Company-sponsored personal and professional development
  • 🏫 L&D: Partnerships with Ethena and monthly Lunch & Learns
  • Wellbeing: access to many wellbeing perks, including Peloton, Fetch, OneMedical, Headspace care+, etc.
  • Caregiver Support: company seed into the dependent care FSA and company sponsored Care.com membership.
  • Regular performance reviews: Vouch conducts regular performance discussions with all team members, offering goal setting and check-ins, development discussions, and promotion opportunities.


What to expect in a typical interview process:

(Please note these steps may vary slightly depending on the role)

  • 30-minute phone call with our recruiting team
  • 30-45 minute video interview with the hiring manager
  • Case study/technical screen
  • Meet the team! 30-45 min 1:1 video discussion with 3-4 team members you'd work closely with in the role
  • Executive chat

Compensation philosophy:

Our salary ranges are based on paying competitively for our size and industry and are part of our total compensation package, which also includes benefits and other perks. We also include stock options in all compensation packages and believe all Vouch employees should have the opportunity to become owners in the company. Individual pay decisions are based on a number of factors, including qualifications for the role, experience level, skill set, location, and business need. The pay range provided is subject to change and may be modified in the future.

The pay range for this role is:

200,000 - 240,000 USD per year (Chicago, IL (Hybrid))

Similar Jobs

More Jobs at Vouch

More Information Technology Jobs

Find similar Staff Infrastructure & Security Engineer jobs: