BigCommerce Logo

BigCommerce

Senior Infrastructure Security Engineer - Remote

Posted 2 Days Ago
Remote
Hiring Remotely in TX
Senior level
Remote
Hiring Remotely in TX
Senior level
As a Senior Infrastructure Security Engineer, you will secure cloud infrastructure, respond to incidents, establish governance, and mentor teams.
The summary above was generated by AI

At BigCommerce, security is at the core of everything we do. As a Senior Infrastructure Security Engineer, you will play a critical role in securing our cloud infrastructure, mitigating threats, and ensuring compliance across Google Cloud Platform (GCP) and Amazon Web Services (AWS). You will work across multiple domains—development, operations, security engineering, incident response, and governance—helping shape our security posture while empowering engineering teams with secure-by-design principles.

This role requires a proactive problem-solver with a deep technical background, strong analytical skills, and a collaborative approach. If you have experience designing security solutions in cloud-native environments, a keen eye for threat detection, and a passion for building automated security capabilities, we want to hear from you!

What You’ll Do:

  • Security Incident Response: Monitor, analyze, and respond to security incidents, leveraging tools such as SIEM and CSPM/CNAPP

  • Cloud Security Governance: Establish and maintain security best practices for GCP and AWS, including IAM, network security, data encryption, and workload protection.

  • Security Reviews & Architecture Guidance: Evaluate technical designs for security implications, perform threat modeling, and provide secure architecture recommendations to engineering teams

  • Automation & Infrastructure Security: Develop and implement Infrastructure-as-Code (IaC) security controls using Terraform, CloudFormation, or equivalent tools

  • Threat Intelligence & Monitoring: Utilize data to generate insights into evolving threats, perform security log analysis, and optimize detection capabilities

  • Vulnerability Management & Hardening: Lead security assessments, cloud misconfiguration checks, and implement hardening guidelines for cloud workloads and containerized environments

  • Red & Blue Team Coordination: Conduct cloud security penetration testing, validate findings, and coordinate remediation with DevOps teams

  • Security Tooling & Engineering: Design and manage security solutions such as SIEM, CSPM, EDR, CWPP, WAF, API Security, and Secrets Management

  • Regulatory Compliance & Risk Management: Ensure alignment with PCI DSS, SOC2, ISO 27001, NIST CSF, and CIS Benchmarks

  • Mentorship & Advocacy: Act as a security champion within the organization, mentoring team members and driving a culture of security awareness

Who You Are:

  • Deep expertise in securing cloud environments on GCP and AWS, with hands-on experience in IAM, Kubernetes security, VPC security, API security and ability to maintain via Terraform or equivalent tooling

  • Minimum BS degree, CS, CE, SW, MIS or equivalent degree, or has relevant work experience

  • Strong scripting and automation skills in Python, Go, Bash, or similar languages.

  • Minimum 5+ years in security-focused roles, including cloud security, infrastructure security, or DevSecOps

  • Experience with SIEM, EDR, CSPM, CWPP, and security automation tools (e.g., SentinelOne, Sysdig, Sumo Logic, Cloudflare)

  • Knowledge of identity security principles, including SSO, OAuth, OpenID Connect (OIDC), RBAC, and ABAC

  • Understanding of container security (Kubernetes, Docker, GKE, EKS) and best practices for securing microservices architecture

  • Familiarity with network security, firewall configurations, and cloud-native security controls

  • Proven ability to conduct security assessments, including penetration testing, threat modeling, and vulnerability management

  • Certifications preferred: OSCP, GCP Professional Cloud Security Engineer, AWS Security Specialty, CCSP, CISSP or equivalent

Bonus Experience (Nice to Have)

  • Experience with serverless security (e.g., AWS Lambda, Google Cloud Functions)

  • Familiarity with data security solutions such as DLP, tokenization, and cloud encryption key management

  • Knowledge of SIEM correlation rules and experience tuning security detections.

  • Hands-on experience with cloud-native security tools (e.g., AWS Security Hub, Google Security Command Center, GuardDuty, Cloud Armor)

  • Experience working in highly regulated industries such as fintech, healthcare, or e-commerce

Why Join Us:

  • Work in a high-impact role securing a global-scale cloud infrastructure

  • Collaborate with a highly skilled, passionate security team

  • Continuous learning opportunities, certifications, and career growth support

  • Competitive compensation, a remote-friendly environment, and comprehensive benefits

If you are passionate about cloud security and thrive in a fast-paced, collaborative environment, apply now and help us build a secure future for our platform and customers!

#LI-REMOTE

(Pay Transparency Range: $95,000.00 - $159,000.00)

Top Skills

Amazon Web Services (Aws)
Bash
CloudFormation
Cspm
Go
Google Cloud Platform (Gcp)
Iac
Python
SIEM
Terraform

Similar Jobs at BigCommerce

Yesterday
Remote
TX, USA
Senior level
Senior level
Cloud • Consumer Web • eCommerce • Information Technology • Software
The Principal Account Executive will focus on driving e-commerce sales growth for mid-market businesses by leveraging insights and relationships with clients, enhancing their store development and customer experiences.
Yesterday
Remote
TX, USA
Junior
Junior
Cloud • Consumer Web • eCommerce • Information Technology • Software
Handle complex support tickets and calls for Enterprise clients; collaborate with Tier 1 support; improve customer satisfaction; assist internal teams.
Top Skills: Bigcommerce ApiCSSHTMLJavaScriptStencil Framework
Yesterday
Remote
United States
Junior
Junior
Cloud • Consumer Web • eCommerce • Information Technology • Software
As a Technical Support Representative, you'll assist customers via phone, email, and chat, troubleshooting issues and enhancing their experience with the eCommerce platform.
Top Skills: CSSHTMLJavaScriptJquery

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account