Crusoe

Senior Infrastructure Security Engineer

Crusoe

Dublin, County Dublin, Ireland · Full Time

Be the first to apply

Experience
5–8 yrs
Salary
Openings
1
Posted
15 hours ago
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About Crusoe

Crusoe is dedicated to advancing the availability of energy and intelligence by owning and managing every layer of AI infrastructure. We operate a vertically integrated stack from energy sources to digital tokens, enabling the execution of leading AI workloads. Our team is comprised of experts from energy, manufacturing, data center construction, and cloud service sectors, working together to build next-generation infrastructure that prioritizes energy efficiency and speed for AI innovation.

Role Overview

We are seeking a seasoned Senior Infrastructure Security Engineer to lead efforts in establishing a robust security posture through detailed visibility and strict access controls across our global compute platform. This position involves harnessing sophisticated tools such as Wiz to enforce consistent security standards primarily via infrastructure service development.

Key Responsibilities

  • Lead Infrastructure Security Posture Management using cloud-native visibility tools like Wiz to detect risks, configuration drifts, and vulnerabilities across both cloud and on-premises infrastructure.
  • Promote and enforce Infrastructure-as-Code (IaC) policies using Terraform, ensuring secure defaults, immutability, and detection of deviations.
  • Manage access controls and security governance across cloud and on-prem infrastructure to maintain comprehensive oversight.
  • Develop automated security guardrails integrated into CI/CD and deployment pipelines to uphold security standards.
  • Handle security-as-a-service platforms, including secrets management and certificate lifecycle operations, to both enforce security and streamline developer workflows.
  • Design and oversee certificate lifecycle processes for secure machine-to-machine trust utilizing X.509 and SSH protocols.
  • Contribute to identity-based access systems prioritizing Just-In-Time (JIT) access, Zero Trust paradigms, and automated permissions to eliminate persistent privileges.
  • Secure foundational network components such as global DNS, service discovery mechanisms, and network authentication frameworks.
  • Design and maintain authentication controls to ensure secure, auditable access to network infrastructure.
  • Collaborate closely with infrastructure, platform, and Site Reliability Engineering teams to identify vulnerabilities and implement remediation measures in foundational systems.

Qualification and Skills

  • Between 5 and 8 years of practical experience in infrastructure, site reliability, or security engineering roles.
  • Comprehensive knowledge of security fundamentals spanning Linux systems, container runtimes, and cloud control planes.
  • Proficiency with Infrastructure-as-Code tools like Terraform to manage complex infrastructure across multiple environments at scale.
  • Strong expertise in cryptography, secrets management, Public Key Infrastructure (PKI), and current authentication standards.
  • Experience securing environments in public clouds such as AWS and GCP and/or bare-metal systems.
  • Solid understanding of networking principles including routing, segmentation, firewall configurations, and Zero Trust network design.
  • Hands-on experience with Kubernetes and measures for container security, specifically secure secrets injection into microservices.
  • Fluency in at least one programming language (preferably Go or Python) for developing automation and security tools.

Additional Desired Expertise

  • Prior experience securing large-scale cloud or AI-focused infrastructure is advantageous.
  • Proven background implementing end-to-end Zero Trust identity architectures.
  • Familiarity with bare-metal provisioning and data center security best practices.
  • Experience creating or managing internal security platforms like Vault-as-a-Service.
  • Advanced experience with Wiz or comparable Cloud Security Posture Management (CSPM) tools for enterprise risk management.

Compensation and Benefits

Compensation will be offered as salary or hourly pay based on the candidate’s qualifications, experience, and alignment with market standards. Crusoe provides a comprehensive benefits package supporting financial security and well-being, including pension contributions, private health and dental coverage, income protection, and life assurance.

Equal Opportunity Employer Statement

Crusoe is committed to equal employment opportunities and makes decisions without regard to race, color, religion, disability, genetic information, pregnancy, citizenship, marital status, sex/gender, sexual orientation or identity, age, veteran status, national origin, or any other legally protected status.

How they work

Teamwork & Collaboration Problem Solving Time Management Learning Agility

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer