Job Description
Job Title: Senior Platform Security Engineer
Role Overview:
Role Overview: Skyhigh Security is hiring a Senior Platform Security Engineer to join our Engineering Excellence organization, reporting to the Senior Manager of Engineering Environments and Core Tooling. In this high-impact, technical role, you will be a vital player in maintaining, automating, and securing our developer labs and test environments, ensuring they are reliable, scalable, and highly secure.
You will take proactive, senior-level responsibility for the day-to-day security architecture and automation of our non-production environments. Your impact will be measured by your ability to keep our complex developer labs running smoothly, collaborate effectively with local team security champions, and build the automated auditing systems that ensure long-term compliance with our security policies.
You must have solid, hands-on technical expertise in on-premises virtualization, configuration automation, and systems-level security to work effectively within the Engineering Excellence team. You'll build strong collaborative relationships with distributed Engineering teams, Security Champions, and Operations to ensure our non-production environments remain robust and secure without slowing down developer velocity.
Responsibilities
-
Lab Environment Architecture: Drive the technical maintenance, optimization, and scaling of our developer labs and test environments to ensure high availability and performance.
-
Establish Technical Auditing: Design and execute automated, systematic audits across all on-premise and mixed-OS engineering environments to verify that local teams adhere to established security standards.
-
Collaborate with Security Champions: Partner directly with local security champions across different teams to support them in implementing and maintaining their local security plans.
-
Build Shared Security Capabilities: Design and deploy robust security capabilities specifically for shared resources, including common labs and shared environments.
-
Maintain Platform Security Standards: Keep environment security policies up to date, ensuring they reflect current engineering standards and evolving security landscapes.
-
Operational Security Alignment: Ensure that shared environment configurations, access controls, and network boundaries are continuously aligned with corporate security guidelines.
Requirements
-
Environment Lab Administration: Extensive, hands-on experience maintaining complex test environments, developer labs, staging infrastructures, or container registries in a modern software engineering organization.
-
Systems Security Mindset: A strong understanding of core security principles (e, Identity Access Management, network segmentation, least privilege) applied to on-premises systems and networks.
-
Automated Auditing Drift Detection: Ability to design systems that systematically track, document, and validate security compliance across multiple teams.
-
Collaborative Communication: Excellent interpersonal and communication skills to work constructively with distributed teams and security champions, acting as a helpful partner rather than a rigid blocker.
-
Adaptability Drive: Demonstrated ability to manage varied technical challenges from complex network troubleshooting to security enforcement with a self-motivated drive for results.
Tooling Requirements
Deep Core Expertise
-
Configuration Management IaC: Strong hands-on experience writing and modifying Puppet manifests, Ansible playbooks, or Terraform templates to automate environment configurations
-
Software Supply Chain Security: Experience leveraging Artifactory to govern open-source dependencies, and Black Duck to enforce vulnerability checking.
-
On-Premises Tooling Automation: Practical experience deploying application layers using Docker, managing Docker registries, configuring on-premises Kubernetes deployments utilizing Helm charts, and working with dynamic VM environments.
-
Core Network Services Layer: Understanding the operation of high-availability IPAM services and dynamic DNS/Kerberos environments.
-
CI/CD Pipeline Operations: Solid experience utilizing Jenkins or GitHub Actions to orchestrate lab deployments, provision VM templates, and support build runners
Broad / Functional Competency
-
AWS Cloud Fundamentals: Basic understanding of AWS structures, including AWS security groups, IAM access keys, and public cloud VPC boundaries.
-
Container Orchestration: General familiarity deploying workloads to cloud-based Kubernetes platforms (utilizing Helm charts or basic ArgoCD continuous delivery configurations).
-
Security Compliance Tools: Familiarity with vulnerability scanners
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.