3+ years of professional experience in infrastructure security, cloud security, platform security, or a similar role
Hands-on public cloud security experience, with AWS and/or GCP preferred
Strong CI/CD security experience with tools such as GitHub Actions, GitLab CI, or similar systems
A strong infrastructure-as-code and automation mindset, including experience with Terraform, policy-as-code, or configuration-as-code
Familiarity with modern cloud security tooling, including CNAPP and CSPM platforms
Clear communication with engineering teams and a practical approach to risk reduction
Bonus tacos if you have
(Tacos? If you need an ice-breaker, ask how we say thanks by giving tacos!)
Hands-on experience securing containerized workloads with Docker, Kubernetes, or similar technologies
Working knowledge of compliance frameworks such as SOC 2 or ISO 27001
Experience applying AI tools to improve security workflows, automation, or analysis
About Coder
Interview process
We believe that the interview process should be transparent, consistent, and enjoyable. We value your time and hope to complete the interview process in two to four weeks, if schedules allow. Through your interviews, you will meet a mix of individual contributors, managers, and senior leaders.
AI use during the interview process
As an AI company, Coder embraces the use of AI tools, and we want to be transparent about our expectations as you navigate our interview process.
Not permitted : Using AI assistance during conversational interviews.
Permitted : Using AI tooling for take-home assessments. Please flag where and to what extent it was used in your take-home. Your submission will not be penalized for using AI as long as it is done honestly.
Our use of AI in hiring
We use AI tools to help manage our recruitment process efficiently and fairly. Specifically:
Ashby helps us review inbound applications by surfacing candidates who best match the role requirements we've defined. This tool does not make hiring decisions - it helps our team prioritize which applications to review first.
Granola takes notes during our interview calls so our team can focus on the conversation with you.
In accordance with New York City Local Law 144, an independent bias audit has been conducted on "Automated Employment Decision Tools"; results are available for Ashby .
If you're applying for a role at Coder and have questions about how we use AI in our process, or if you'd like to request information about the data we collect, please contact careers@coder.com .
Coder is a proud Equal Opportunity Employer
We are committed to providing equal employment opportunities to qualified applicants and do not
Benefits
Performance bonus
Additional Information
Security Engineers at Coder turn security requirements into systems that engineers can use. In this role, you'll secure cloud infrastructure, CI/CD, and platform workflows through automation, guardrails, and everything-as-code practices.
You'll work closely with Platform Engineering as a steady security partner. Together, you'll reduce risk, improve developer workflows, and keep our infrastructure secure by default.
What you'll do here
Design and implement scalable guardrails for our multi-cloud infrastructure across AWS and GCP
Harden CI/CD pipelines and platform workflows to improve our software supply chain security posture
Practice and promote an everything-as-code approach across infrastructure, configuration, and policy
Automate repetitive security and compliance tasks so teams can stay aligned with frameworks without extra drag
Triage and review findings from cloud and infrastructure security tools, including CNAPP and CSPM platforms
Partner with engineers to prioritize risk, resolve findings, and improve controls over time