Lead Security Engineer, Cloud Infrastructure
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Systems Engineer
Overview
Join to apply for the Lead Security Engineer role at Klaviyo
.
- Secure Klaviyo's infrastructure by designing, implementing, and maintaining scalable security controls across cloud, on-prem, and hybrid environments.
- Evaluate and improve security configurations and policies across a range of technologies, using your domain expertise to reduce risk and enable secure-by-default architectures.
- Collaborate with engineering and IT teams to embed security practices and develop repeatable security patterns across the development and deployment lifecycle.
- Lead threat modeling, risk assessments, and architecture reviews in areas aligned with your specialty.
- Develop automated solutions and infrastructure-as-code to drive consistent and reproducible security outcomes.
- Stay ahead of the latest threats and advocate for innovative security solutions aligned with business needs.
- Help define security standards and best practices at Klaviyo, championing their adoption across teams.
- Have 5+ years of experience in infrastructure or security engineering roles, with deep knowledge in one or more security focus areas (e.g., cloud security, IAM, endpoint security, data protection, detection engineering, compliance).
- Comfortable navigating ambiguity and defining priorities in a broad-scoped role.
- Experienced working in modern cloud environments such as AWS, GCP, or Azure.
- Familiar with infrastructure-as-code tools such as Terraform, Cloud Formation, or Pulumi.
- Proficient in secure systems design, threat modeling, and vulnerability management.
- AI Agentic development and prompt engineering, MCP (AWS Bedrock, OpenAI, Anthropic).
- Able to clearly articulate complex security topics to technical and non-technical stakeholders.
- Passionate about security, eager to learn from others and share your expertise.
- Nice to have - certifications (e.g., CISSP, CKS, GCP/AWS Security certs) or equivalent practical experience.
We use Covey as part of our hiring and/or promotional process. For jobs or candidates in NYC, certain features may qualify it as an AEDT. As part of the evaluation process we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound on April 3, 2025. Please see the independent bias audit report covering our use of Covey here.
Massachusetts Applicants:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Our salary range reflects the cost of labor across various U.S. geographic markets. The range displayed below reflects the minimum and maximum target salaries for the position across all our US locations. The base salary offered for this position is determined by several factors, including the applicant’s job-related skills, relevant experience, education or training, and work location. In addition to base salary, our total compensation package may include participation in the company’s annual cash bonus plan, variable compensation (OTE) for sales and customer success roles, equity, sign-on payments, and a comprehensive range of health, welfare, and wellbeing benefits based on eligibility.
Your recruiter can provide more details about the specific salary/OTE range for your preferred location during the hiring process. Base Pay Range For US Locations: $220,000—$330,000 USD
Get to Know Klaviyo:
We’re Klaviyo (pronounced clay-vee-oh). We empower creators to own their destiny by making first-party data accessible and actionable. If you’re ready to do the best work of your career, where you’ll be welcomed as your whole self from day one and supported with generous benefits, we hope you’ll join us.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).