Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Runway

Infrastructure Security Engineer

Runway

. Design and ship security controls across Kubernetes clusters, including admission policy, RBAC, workload identity, network policy and runtime hardening .

Posted 9/24/2026full-timeRemote • United StatesMid-LevelSenior💰 $240,000 - $290,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in securing Kubernetes clusters and cloud IAM architecture, with a strong focus on infrastructure as code and threat modeling. Proficient in implementing security controls and incident response strategies while collaborating effectively with engineering teams.

Highest-signal resume keywords
Kubernetes SecurityCloud IAM ArchitectureInfrastructure As CodeThreat ModelingPython Programming

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Admission PolicyRBACWorkload IdentityNetwork PolicyRuntime HardeningDependency ManagementShort-Lived CredentialsIdentity FederationPolicy As CodeGitOps Deployment
Soft Skills
Technical WritingJudgment
Tools & Technologies
KyvernoOPA GatekeeperFalcoSBOMsHPC Compute
Certifications & Qualifications
SOC 2ISO 27001
Industry Keywords
Software Supply Chain SecurityMulti-Tenant IsolationSecurity Architecture EvidenceOpen Source ContributionsCloud Security

Tech Stack

Tools & technologies
CloudKubernetesOpen SourcePythonRustTypeScript

About the role

Key responsibilities & impact
  • Design and ship security controls across Kubernetes clusters, including admission policy, RBAC, workload identity, network policy and runtime hardening
  • Harden the software supply chain from dependency intake through build and deployment
  • Own cloud IAM and identity architecture, including least-privilege roles, short-lived credentials and workload federation
  • Secure research infrastructure and training pipelines, including model weights and datasets
  • Threat model new platform components and translate findings into actionable requirements
  • Build guardrails for AI agents and developer tooling operating inside the infrastructure
  • Write infrastructure as code and policy as code
  • Support incident response for infrastructure-related incidents with rapid system analysis and containment guidance
  • Collaborate with platform and engineering teams and ship production security controls

Requirements

What you’ll need
  • Hands-on experience securing Kubernetes in production, including admission policies, RBAC and workload identity
  • Working knowledge of cloud IAM and networking on at least one major cloud platform
  • Understanding of identity federation and short-lived credentials
  • Experience with infrastructure as code and GitOps-style deployment
  • Comfort writing Python, TypeScript, Rust or another language for tooling
  • Understanding of software supply chain attacks and controls including signing, provenance, SBOMs and admission enforcement
  • Clear technical writing for design docs, threat models and engineering explanations
  • Judgment about security-control enforcement and safe rollout of breaking changes
  • Experience securing GPU or HPC-style compute, training pipelines or research environments is a plus
  • Experience with policy engines and admission controllers such as Kyverno, OPA Gatekeeper or Falco is a plus
  • Experience with multi-tenant isolation design, ABAC, scoped credentials and per-tenant boundaries is a plus
  • Experience producing security architecture evidence for SOC 2, ISO 27001 or other audits is a plus
  • Open source contributions or published work in cloud or Kubernetes security is a plus