Security Infrastructure Engineer

Tailscale Tailscale · Enterprise · Remote · Engineering

Software engineer specializing in security and infrastructure to grow the product security team. Responsibilities include designing and building security controls, improving security properties, auditing infrastructure, and supporting engineering decisions with threat modeling and security analysis. Requires expertise in cloud platform security, container security, and internet/web security fundamentals, with proficiency in Go and IaC tooling. Experience in safety-related technical roles is a plus.

What you'd actually do

  1. Design and build security controls across diverse layers (e.g., cloud platforms, OS, Kubernetes, networks, CI/CD) to defend against sophisticated adversaries and insider threats.
  2. Improve the security properties of Tailscale by identifying opportunities for security and privacy features, bug fixes, defense-in-depth, and implementing them across our codebase.
  3. Audit Tailscale infrastructure for technical security weaknesses, identifying mitigations or solutions, and driving them towards resolution.
  4. Support engineering decisions with threat modeling and security analysis and expertise.
  5. You will spend 25-50% of your time in this role writing software vs purely operational or governance security responsibilities.

Skills

Required

  • Expertise in the security of cloud platforms (e.g., AWS), especially securing multi-cloud networks and infrastructure, and designing cloud agnostic systems
  • Familiarity with container security, orchestration security, and authentication/authorization
  • Familiarity with internet/web security fundamentals: WAF’s, TLS, PKI, DNS security, etc.
  • Proficiency developing in at least one programming language (Tailscale uses Go)
  • Proficiency in Infrastructure as Code tooling (e.g. Terraform, Ansible)
  • Knowledge of operating system internals and security mechanisms
  • Knowledge of common networking protocols

Nice to have

  • Prior experience in a safety-related technical role
  • Act as a Subject Matter Expert during security incidents, focusing on infrastructure-level containment and remediation

What the JD emphasized

  • security controls
  • security properties
  • security weaknesses
  • security analysis
  • security incidents
  • technical security