Tech Stack
AWSAzureCloudGoGoogle Cloud PlatformKubernetesPythonTerraform
About the role
- Own infrastructure and end-to-end security; report to CTO; work on-site in Palo Alto/Menlo Park at least 3 days/week.;Take full ownership of GCP stack (Terraform + GKE); tighten monitoring, performance, and networking.;Elevate developer experience in GitHub Actions—speed up pipelines, streamline environments, and automate common tasks.;Research, evaluate, and roll out AI‑powered security tooling (vulnerability discovery, code‑review assistants, policy‑as‑code scanners).;Assume day‑to‑day responsibility for SOC 2 & HIPAA technical controls and drive HITRUST certification.;Continuously probe for weaknesses—perform internal security reviews, harden endpoints, and champion best practices.;Architect multi‑region, highly available platform; define and track SLOs/SLAs; introduce new controls and automate patching; mentor future hires.
Requirements
- 4+ years building and securing production cloud systems (GCP, AWS, or Azure; GCP preferred).;Expert hands‑on knowledge of Kubernetes and Terraform.;Proven ownership of modern CI/CD pipelines (GitHub Actions or similar) and strong scripting ability (Python, Go, Bash).;Demonstrated success implementing or maintaining SOC 2 / HIPAA controls, plus a solid understanding of broader corporate security (endpoint hardening, phishing prevention, identity & access management).;Ability to be on‑site in the Bay Area (Palo Alto / Menlo Park) at least three days per week.;Comfort working in a fast‑moving startup environment with high autonomy.;Certifications such as CKA/CKAD, CISSP, or HITRUST CCSFP (bonus).