Fourthwall is looking for a Senior Platform Security Engineer to co-own our production platform and serve as a key security partner for our engineering teams. You will work in a remote environment to build secure infrastructure, implement automated guardrails, and manage our vulnerability disclosure program, ensuring our platform remains robust while allowing teams to ship fast.
Key responsibilities
- Co-own the GCP and GKE platform, including networking, IAM, secrets, GitOps, and observability.
- Develop and maintain platform-security backlogs, focusing on workload identity and secret management.
- Implement automated security guardrails, policies, and pipeline scanning to prevent misconfigurations.
- Manage the vulnerability disclosure program, from intake and validation to tracking fixes.
- Drive infrastructure recovery objectives, runbooks, and postmortems to ensure high availability.
- Leverage AI and automation to improve operational efficiency and on-call response quality.
Requirements
- Proven experience owning a production cloud platform at a senior level.
- Demonstrable end-to-end security engineering experience, such as hardening platforms or managing vulnerabilities.
- Strong expertise in Terraform, GitOps, and Kubernetes security (RBAC, network policies, admission control).
- Solid understanding of cloud IAM, OAuth, OIDC, and service-to-service identity.
- Ability to assess application security risks and integrate automated security checks into CI/CD pipelines.
- Excellent communication skills in English to explain technical risks to various stakeholders.
What we offer
- Fully remote work within Poland with flexible hours.
- B2B contract with competitive compensation.
- Equity in a US-based company.
- Private healthcare, sports card, and English lessons.
- Modern equipment including a MacBook.