About The Position

Your Career With Prisma AIRS, Palo Alto Networks is building the world's most comprehensive AI security platform. Organizations are increasingly building complex ecosystems of AI models, applications, and agents, creating dynamic new attack surfaces with risks that traditional security approaches cannot address. In response, Prisma AIRS delivers model security, posture management, AI red teaming, and runtime protection. Our customers can confidently deploy AI-driven innovation while ensuring a formidable security posture from development through runtime. The Platform Infrastructure team is the engine behind this mission. We provide the foundational cloud infrastructure and a smooth interface that abstracts away the complexities of global networking and infosec for our product teams. We are seeking a Principal Infrastructure / Security Engineer to own the intersection of platform infrastructure and product security. In this hybrid role, you will lead the "shift-left" security strategy, building internal platform tools that allow our engineers to ship secure-by-default software. You will be the primary technical interface between the AIRS organization and central infosec. This role is in office 3 days a week. Specify your preference of our downtown Seattle Washington office or our Santa Clara, California HQ campus. Our Stack Our platform is built on a modern, cloud-native foundation centered around Kubernetes. We value deep expertise in a few core areas and a strong desire to master the technologies that drive our platform forward. Cloud & Orchestration GCP (primary), Kubernetes, AWS, Containerization tools CI/CD & GitOps GitLab CI, Argo CD, Argo Rollouts, Github actions Infrastructure as Code (IaC) Kubernetes Config Connector (KCC), Helm, Terraform Languages & Core Tooling Python (modern, typed), Go (highly desired), BASH, rego We actively leverage AI Coding Assistants like Claude to boost our productivity.

Requirements

  • Engineering Fundamentals: A deep command of cloud infrastructure, networking, and application performance.
  • Security Expertise: Extensive experience in vulnerability management, identity management (IAM), and integrating security tools into modern engineering workflows.
  • Cloud & Orchestration: Proficient with GCP and Kubernetes. While you don't need to be a K8s internals expert, you must be comfortable deploying and securing workloads in containerized environments.
  • Infrastructure as Code: Hands-on experience with Terraform, Helm, or Kubernetes Config Connector (KCC).
  • Coding Proficiency: Fluent in building automation and platform tooling using modern, typed Python. Experience with Go is a significant plus.
  • Leadership & Collaboration: Capable of working with multiple stakeholders, navigating large organizations, and acting as a central point of collaboration and execution.
  • An Innate Sense of Ownership and a Collaborative Spirit: You are a highly technical, self-motivated contributor who sees projects through from idea to production.

Responsibilities

  • Build the "Security Paved Road": Act as a force multiplier by integrating security tooling directly into our internal developer platform and CI/CD pipelines.
  • Abstract Infosec Complexity: Serve as the strategic point of contact for central Infosec, translating their requirements into automated infrastructure patterns so product teams don't have to.
  • Govern Release Integrity: Define and enforce security standards for Prisma AIRS, ensuring every new feature meets launch requirements and compliance standards before reaching customers.
  • Scale Foundational Infra: Work with the infrastructure team to embed security and permissions management into our core GCP and Kubernetes foundations.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service