Senior Infrastructure Security Engineer Onsite NY
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Systems Engineer, Security Manager, Network Security
A leading financial firm is looking for a highly skilled and strategic Senior Infrastructure Security Engineer to join their vital Information Security team. This permanent position
, based onsite in New York, NY
, is crucial for strengthening and continuously evolving the company’s robust infrastructure security within a complex, high-stakes, and fast-paced IT environment.
Driving Advanced Infrastructure Security
As a Senior Infrastructure Security Engineer, you’ll be on the front lines, designing, implementing, and enhancing the security posture of critical systems. Your role blends deep technical expertise with strategic leadership and cross-functional collaboration, ensuring top-tier security within a demanding financial landscape.
- Collaborate Across Teams to Enhance Security: You’ll be instrumental in collaborating across various teams to proactively support and continuously enhance the company’s overall security posture. This involves engaging with development, operations, cloud engineering, and other IT departments to embed security throughout the entire system lifecycle, ensuring a cohesive and strong defense strategy.
- Conduct Thorough Security Assessments: You’ll regularly conduct comprehensive security assessments for both new and existing systems
. This includes meticulously evaluating infrastructure components, applications, and configurations for vulnerabilities, misconfigurations, and adherence to security best practices. Your assessments will identify potential risks and inform remediation efforts, hardening the firm’s digital defenses. - Design, Develop, and Maintain Security Tools: You’ll take a hands-on approach to security by actively designing, developing, and maintaining custom tools that improve internal security operations
. This involves automating security tasks, building dashboards for monitoring security metrics, and creating utilities that enhance vulnerability management, threat detection, or incident response capabilities, thereby increasing the efficiency and effectiveness of the security team. - Lead Strategic Security Initiatives: You’ll spearhead critical and strategic security initiatives that directly shape the firm’s defense capabilities. This includes:
- Implementing Zero Trust architecture in Linux environments: Leading the design and deployment of Zero Trust principles within the Linux ecosystem, ensuring no user or device is trusted by default, regardless of whether they are inside or outside the network.
- Shaping security frameworks for AI infrastructure: Developing and defining robust security frameworks specifically tailored for the unique challenges and risks associated with Artificial Intelligence (AI) infrastructure, ensuring the integrity, confidentiality, and availability of AI models and data.
- Integrating TLS client authentication into existing systems: Leading efforts to integrate TLS (Transport Layer Security) client authentication into existing systems, enhancing cryptographic security and ensuring mutual authentication between clients and servers.
Essential Expertise for Security Leadership
To excel as a Senior Infrastructure Security Engineer, you’ll need extensive experience in infrastructure or site reliability engineering, a strong grasp of security fundamentals, and proficiency in programming.
- Extensive Infrastructure or Site Reliability Engineering
Experience:
You must possess 10+ years of verifiable experience in infrastructure or Site Reliability Engineering (SRE), coupled with a strong track record of hands‑on security implementation
. This extensive background demonstrates your ability to build, maintain, and secure complex, highly available at scale. - Strong Grasp of Security Fundamentals: You’re required to have a strong,‑depth grasp of security fundamentals
, including:- Protocols: Deep understanding of secure communication protocols such as TLS (Transport Layer Security) for encryption,
OIDC (OpenID Connect) for identity verification, and FIDO2 for strong, passwordless authentication. - Cryptography: Solid knowledge of cryptographic principles, including encryption algorithms, hashing, digital signatures, and key…
- Protocols: Deep understanding of secure communication protocols such as TLS (Transport Layer Security) for encryption,
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).