Infrastructure & Application Security Engineer job opportunity at Traversal.



bot
Traversal Infrastructure & Application Security Engineer
Experience: General
Pattern: full-time
apply Apply Now
Salary:
Status:

Infrastructure

Copy Link Report
degreeBachelor's (B.Sc.)
loacation New York, United States Of America
loacation New York....United States Of America

About Traversal Traversal is the AI Site Reliability Engineer (SRE) for the enterprise—already trusted by some of the largest companies in the world to troubleshoot, remediate, and even prevent the most complex production incidents. Our mission is to free engineers from endless firefighting and enable them to focus on creative, high-impact work. Our roots remain deeply embedded in AI research, and we’re channeling that scientific rigor and creativity into building the premier AI agent lab for the enterprise. Hence, what we’re proudest of is assembling the most talented yet nicest group of individuals, including researchers from MIT, Harvard, and Berkeley, to world-class engineers from industry: Citadel Securities, Cockroach Labs, Datadog, DE Shaw, ServiceNow, Glean, Perplexity, Pinecone, and more, to take on one of the hardest problems for AI to solve. Without the entire team, none of this would be possible. The Role As an Infrastructure & Application Security Engineer at Traversal, you’ll build our security program from the ground up by shipping real systems, controls, and tooling that engineers use every day. This is a zero-to-one, builder-first role for someone who likes security, loves Kubernetes, and wants to own the build—turning risk into working guardrails that are automated, measurable, and low-friction. You’ll work at the intersection of Kubernetes security and platform primitives, service-to-service security (including Istio Ambient), and application security for Python APIs in a multi-tenant SaaS environment. You’ll collaborate closely across engineering teams, but the focus is on implementing and deploying mechanisms—not writing slide decks. Responsibilities Kubernetes Security Guardrails: Build and roll out enforceable baseline controls across clusters (RBAC hardening, Pod Security Standards alignment, network policies/segmentation, admission control, policy-as-code), including clear rollout paths and exception workflows. Service-to-Service Security (Istio Ambient): Implement secure-by-default service communication patterns, policies, and telemetry that are debuggable and safe to roll out incrementally. Application Security (Python APIs): Ship paved-road libraries, templates, and platform patterns for Python services (e.g., FastAPI), including authn/authz, session handling, input validation, safe error patterns, abuse protections (rate limiting/throttling), and security testing hooks. Multi-Tenant Isolation: Define tenant isolation invariants and encode them into runtime enforcement, regression suites, and automated detectors that prevent cross-tenant access. Secrets Governance: Standardize secrets storage and delivery patterns across workloads, including rotation, auditable access, and default-safe consumption patterns. Secure Delivery Pipelines: Build preventative controls for GitOps and CI/CD, including policy checks and scanning for Kubernetes config, IaC, and dependencies with actionable developer feedback. Threat Modeling → Engineering Output: Lead threat modeling for new features and integrations, and translate findings into shipped controls, tests, metrics, and paved-road patterns that scale. Operational Readiness: Improve incident response readiness and post-incident follow-through by converting lessons learned into durable guardrails, automation, and measurable controls. Requirements Production-grade Kubernetes security experience , including RBAC, workload hardening, network policies/segmentation, and enforcement mechanisms (admission control and/or policy-as-code). Strong Python application security experience securing APIs and services, including robust authentication/authorization design and practical abuse prevention. Strong AWS security fundamentals (IAM, least privilege, encryption, segmentation) applied through deployable controls and repeatable patterns. Proven track record shipping automated guardrails —controls that enforce, emit metrics, and include pragmatic rollout/exception workflows that keep teams moving. High ownership and execution ability in a zero-to-one environment, with crisp written communication and strong risk judgment that preserves developer velocity. Generalist mindset: Comfortable moving across Kubernetes/platform layers, CI/CD, and Python services as needed to get the program built and adopted. Nice to Have Experience with service mesh security (Istio, including Ambient mode). Familiarity with multi-tenant SaaS authorization models and tenant isolation guarantees. Experience building security developer platforms (paved roads, templates, internal libraries). Background in observability tooling (metrics/logs/traces) or production reliability engineering. Compensation We offer competitive compensation, startup equity, health insurance, and additional benefits. The U.S. base salary range for this full-time, in-person role in New York is $200,000 - $350,000, plus equity and benefits. Our salary ranges are based on location, level, and role. Individual compensation is determined by experience, skills, and job-related knowledge. Why You Should Join Us We’ll make sure you’re fully supported with health insurance, a great tech setup, flexible time off, and plenty of in-office snacks. We offer competitive salary and equity packages, and take thoughtful consideration with every hire on our small, high-impact team. Traversal is fully in-office, 5 days a week, based in New York near Madison Square Park. We have a collaborative, hard-working culture and are energized by building the future of AI-powered software maintenance. Working here means owning meaningful parts of the product, having the flexibility to move fast, and learning constantly. This is a place to grow your career, make a real impact, and help define a new category of infrastructure software.

Other Ai Matches

remote-jobserver Remote
Head of Events & Field Marketing Applicants are expected to have a solid experience in handling GTM & Operations related tasks
AI Engineer - Infrastructure Applicants are expected to have a solid experience in handling Infrastructure related tasks
AI Engineer - Backend Applicants are expected to have a solid experience in handling Product related tasks
AI Engineer - Agents Applicants are expected to have a solid experience in handling AI Platform related tasks
Infrastructure & Application Security Engineer Applicants are expected to have a solid experience in handling Infrastructure related tasks
remote-jobserver Remote
Enterprise Account Executive - East Applicants are expected to have a solid experience in handling GTM & Operations related tasks
Solutions Engineer Applicants are expected to have a solid experience in handling GTM & Operations related tasks
Solutions Engineer/Deployment Strategist Applicants are expected to have a solid experience in handling GTM & Operations related tasks
Product Designer Applicants are expected to have a solid experience in handling Product related tasks
AI Researcher Applicants are expected to have a solid experience in handling AI Platform related tasks
Go-To-Market Engineer Applicants are expected to have a solid experience in handling GTM & Operations related tasks
AI Engineer - AI Platform Applicants are expected to have a solid experience in handling AI Platform related tasks
remote-jobserver Remote
Sales Development Representative Applicants are expected to have a solid experience in handling GTM & Operations related tasks
AI Engineer - Full-Stack Applicants are expected to have a solid experience in handling Product related tasks
remote-jobserver Remote
Regional Director - West Sales Applicants are expected to have a solid experience in handling GTM & Operations related tasks
Revenue Operations Lead Applicants are expected to have a solid experience in handling GTM & Operations related tasks
Senior Manager, Product Marketing Applicants are expected to have a solid experience in handling GTM & Operations related tasks
remote-jobserver Remote
Enterprise Account Executive - West Applicants are expected to have a solid experience in handling GTM & Operations related tasks
AI Engineer - Data Platform Applicants are expected to have a solid experience in handling AI Platform related tasks
AI Engineer - Agents Applicants are expected to have a solid experience in handling AI Platform related tasks