Principal Infrastructure Security Engineer

Upstart

Remote

Quick summary

Work type
Remote
Location
San Mateo, CAColumbus, OHAustin, TX
Salary
$190,600–$263,900 / yr
Posted
1 day ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $176k
This role $227k
$119k most similar roles pay here $279k

This role pays more than 87% of similar roles. Most pay $142,500–$208,800 — the shaded band above. At the midpoint, this role pays about $227k versus about $176k for comparable roles.

Based on 240 similar postings.

Employer

About Upstart

Upstart is an AI lending platform that partners with banks and credit unions to expand access to affordable credit using non-traditional variables.

Upstart currently has 61 open roles on FindRole.

Listed pay typically runs $172,100–$238,300 across 61 roles with salary data.

Most-posted roles

View all roles at Upstart

At a glance

TL;DR · Principal Infrastructure Security Engineer

The Principal Infrastructure Security Engineer at Upstart will lead the technical strategy for securing cloud, platform, compute, and deployment environments, partnering with cross-functional teams to reduce systemic infrastructure risks. This senior role involves defining security standards, conducting architecture reviews, and designing preventative controls in areas like Kubernetes, container security, secrets management, and CI/CD pipelines. The ideal candidate has over 8 years of experience in security engineering, including cloud-native infrastructure security in AWS or similar environments, with expertise in Python, Go, Java, Ruby, or equivalent languages. They should also have a track record of leading cross-functional initiatives and improving cloud security posture management across multiple teams. This role is crucial for enhancing Upstart’s secure-by-default practices and ensuring compliance in a regulated environment.

What you'll do

  • Define and drive Upstart’s infrastructure security strategy aligned with business priorities.
  • Lead cross-functional efforts to reduce systemic infrastructure risks across multiple teams.
  • Design durable preventative controls for cloud IAM, Kubernetes, container security, etc.
  • Establish standards and patterns for production access, service identity, workload trust.
  • Mentor engineers and influence senior stakeholders through clear risk communication.

What we're looking for

  • 8+ years of experience in security engineering or related technical roles.
  • 4+ years focused on infrastructure, cloud, platform, or production security.
  • Experience securing cloud-native infrastructure in AWS or similar environments.
  • Proficiency in Python, Go, Java, Ruby, or a similar programming language.
  • Leadership in cross-functional security initiatives with multiple stakeholders.
  • Design and implementation of preventative security controls for multiple teams.
  • Expertise in Kubernetes security, network security, secrets management, etc.

More like this

Similar roles

Infrastructure Security Engineer

Upstart

Remote 59 days ago $134,100$185,600
AWS Kubernetes Terraform Python Go CI/CD Helm GitHub Actions Prometheus Grafana PostgreSQL AI-assisted engineering tools Cloud IAM Secrets management Infrastructure vulnerability management
Remote

Principal Security Engineer

Microsoft

Redmond, WA 36 days ago $142,800$274,800
Azure Kubernetes Terraform Python Go Docker CI/CD Prometheus Grafana RBAC ABAC SIEM PostgreSQL MongoDB GitOps

Senior Security Engineering Manager, Enterprise Security

Upstart

Remote 29 days ago $190,600$263,900
AWS Kubernetes CI/CD SIEM/SOAR Terraform Docker Prometheus Grafana Python Go PostgreSQL GitLab Jenkins Ansible Linux Windows JSON YAML REST OAuth SSL/TLS IAM SaaS Endpoint Security Identity and Access Management Vulnerability Management Tabletop Exercises Postmortems
Remote

Senior Staff Security Engineer

Intuit

Charlotte, NC 35 days ago
Terraform Kubernetes Helm CI/CD Golang Java Python AWS Azure Google Cloud Platform Docker Prometheus Grafana PostgreSQL Ruby Ansible Git SRE DevSecOps PKI Key Lifecycle Management Secrets/Vault Management