You and the process

With a person
Anna, in-house recruiter
9 years hiring engineers
30 minutes with a real recruiter
They read your CV with you, on a call, and say where the offers are being lost.
Didn’t find what you were looking for? Tell us what to build
Be the first to open itNo views yet
Company hidden

Senior Information Security Infrastructure Engineer

  • Office
  • 6+ years

Salary

Not stated

AI summary

For members

The whole posting in a few lines. Sign up to read it here and on every role you open.

Sign Up to Read

Description

The company, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — the company’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.

What is The Role :

Join the InfoSec - Security Architecture team as a Senior Information Security Infrastructure Engineer , where you'll have the chance to play a key role in protecting our organization's data and systems. This position offers the opportunity to work on meaningful projects that directly impact our security posture and collaborate with a skilled team passionate about information security.

In more details: We ingest the security telemetry that the whole security org runs on. In this role you'll get that telemetry into Elasticsearch consistently and keep the underlying the company clusters healthy. You own the pipeline end to end: from a new security data source landing, through ingest pipelines, into the indices detection, IR, and consulting teams query, plus the clusters that store it all.

What You Will Be Doing :

Security telemetry ingestion - build and maintain ingestion of security-relevant data into Elasticsearch (cloud provider audit logs, identity/SaaS activity, endpoint and asset data). This means integrating with third-party and cloud provider APIs to pull telemetry: auth, pagination, rate limits, and handling schema changes. Both the company integrations and one-off custom integrations.

Keep the the company Cloud on Kubernetes clusters healthy. Monitor and upgrade them regularly. This involves updating versions and builds. Manage capacity and shards. Handle index lifecycle management (ILM). Enable cross-cluster search (CCS).

Use Terraform to manage cloud infrastructure and Elasticsearch resources. This includes managing pipelines, index templates, and alerts. Utilize Kubernetes and Helm to deploy scheduled ingest jobs.

Use AI automation and tooling to reduce toil. This includes self-healing jobs and health checks. It also involves alerting, internal CLIs, and AI or agent-assisted workflows for investigation and operations.

Data quality & reliability - Own the "is the security data actually flowing correctly?" question. Monitor backfills. Ensure that schemas and fields are consistent. Keep an eye on costs.

What You Bring :

Ability to operate the company and Elasticsearch in production. This includes managing ingest pipelines, index templates, mappings, and queries, while ensuring that clusters are healthy and upgraded. Experience with ECK or Elasticsearch on Kubernetes is strongly preferred.

Proven track record of using AI to accelerate development, debug complex systems, and accelerate operations, while still owning the final outcomes.

Kubernetes - deploying and operating workloads (scheduled jobs, Helm charts, operators); troubleshooting pods/jobs in a cluster.

Terraform - managing cloud and Elasticsearch resources as code.

API integration - consuming REST APIs for data ingestion: authentication, pagination, rate limiting concurrency, and error handling.

Python scripting - able to read, write, and modify ingestion/automation scripts. Scripting-level, not full software-engineering depth.

Eligibility to work in Department of Defense (DoD) Impact Level 4 or above cloud service environments.

Bonus Points :

Experience with cloud providers.

Hands-on experience with cloud providers, preferably GCP, and working with audit and logging data.

Knowledge of GitHub, PR-based workflows, GitHub Actions and Continuous Integration (CI).

Knowledge of SOC operations and incident response (IR) workflows, including the use of security telemetry during investigations.

Ability to develop and use dashboard/visualization tools.

Additional Information - We Take Care of Our People

As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, the company is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.

We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do.

Competitive pay based on the work you do here and not your previous salary

Health coverage for you and your family in many locations

Ability to craft your calendar with flexible locations and schedules for many roles

Generous number of vacation days each year

Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service

Up to 40 hours each year to use toward volunteer projects you love

Embracing parenthood with minimum of 16 weeks of parental leave

Different people approach problems differently. We need that. The company is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by federal, state or local law, ordinance or regulation.

We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or the recruiting process, please email the company's site . We will reply to your request within 24 business hours of submission.

Applicants have rights under Federal Employment Laws, view posters linked below: Family and Medical Leave Act (FMLA) Poster; Pay Transparency Nondiscrimination Provision Poster; Employee Polygraph Protection Act (EPPA) Poster and Know Your Rights (Poster)

Elasticsearch develops and distributes technology and information that is subject to U.S. and other countries’ export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions: Belarus, Cuba, Iran, North Korea, Syria, or Russia, including the Ukrainian territories annexed by Russia (The Crimea region of Ukraine, The Donetsk People's Republic (DNR), The Luhansk People's Republic (LNR), Kherson or Zaporizhzhia). If you are located in or are a national of one of the listed countries or regions, an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with the company.

Please see here for our Privacy Statement.

Where you’d work

From the office

About the company

Company hidden

Office in United Kingdom

Your chances

Still hiring, not crowded yet, and a person reads your message.

  • 17 checks run
  • 6 good signs
  • 2 red flags

Still hiring?

12 checks

Actively hiring

In its favour3

  • Still on the company's own careers site, checked 3 h agoModerate evidence
  • The company opened 43 roles and closed 34 in the last 2 weeks: hiring is movingModerate evidence
  • A hiring contact is attached to itSlight evidence

Against it1

  • Posted 3 weeks agoSlight evidence

How crowded?

5 checks

Low

In its favour3

  • You can message the hiring contact and skip the queueModerate evidence
  • Senior level: far fewer people qualifySlight evidence
  • Asks for Helm, which fewer than 1% of open roles doSlight evidence

Against it1

  • Open for 3 weeks: applications have had time to pile upModerate evidence

Fits Me

How well does this role fit you?

Answer a few questions or drop your CV, and every role gets a fit score with the reasons, this one first.

  • Your field
  • Level
  • Stack
  • Work model
  • Salary floor
  • Must-haves
Details10 facts · Role, Location, Compensation
Tech stack
  • Python
  • Kubernetes
  • Terraform
  • Elasticsearch
  • CI/CD
  • GitHub Actions
  • Helm
Seniority
Senior
Specialty
Security
Region
United Kingdom
Pay period
Annual
Show 5 more factsShow less

Role

Category
DevOps & Infrastructure
Specialty
Security
Seniority
Senior
Experience
6+ years
Tech stack
  • Python
  • Kubernetes
  • Terraform
  • Elasticsearch
  • CI/CD
  • GitHub Actions
  • Helm

Location

Work model
Office
Region
United Kingdom
Office
  • United Kingdom

Compensation

Salary
Salary by agreement
Pay period
Annual

Something wrong with this vacancy?

Similar vacancies

  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer, New Grad

    Salary by agreement

    • Office · Dublin
    • Junior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Senior Security Operations Analyst

    Salary by agreement

    • Hybrid · Wellington, Auckland
    • Senior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Platform Security Engineer

    £90,000 - 160,000 / year

    • Hybrid · London
    • Mid-Level
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer

    $275,000 - 345,000 / year

    • Office · London

Share this vacancy

What's wrong with it?

The employer never sees who reported.

Reason