Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Associate - Infrastructure Platform & Security Engineer

$90k - $128.5k

New York Life

Hybrid Role: Platform Operating System Engineer

Location Designation: Hybrid - 3 days per quarter

Role Summary

Own New York Life's platform operating system (OS) standards and the hardened/certified image artifacts used to build workloads across hybrid environments. This role engineers and governs standardized build paths for Linux and Windows platforms, including on-prem VM templates, AWS EC2 base images/AMIs, node images, and container base images. The engineer also owns the Terraform "golden path" modules that provision these platforms, implementing guardrails and enforcement to ensure compliant, repeatable builds at scale. Success requires strong cross-platform OS expertise, infrastructure-as-code (Terraform), image lifecycle engineering, and close partnership with ETS to execute the standard golden path across teams.

What You'll Do

  • Vulnerability Management
  • Research and download all patches for the Compute environment
  • Test each of the patches to ensure that each patch resolves its intended vulnerability or issue.
  • Bundle the vendor patches and release them to the team for non-prod deployment; be available to resolve issues before and during and after production release.
  • If a critical patch is released from a vendor during or in between patch cycles, immediately research the vulnerability, test the patch and prepare it for an out of band patch cycle if necessary.
  • Platform OS Standards & Certified Images
  • Define and maintain cross-platform OS standards for Linux and Windows (configuration baselines, hardening, packages, services, logging, time sync, and required agents).
  • Engineer hardened/certified image artifacts: install/base images, on-prem VM templates, AWS AMIs for EC2, node images, and container base images.
  • Coordinate certification and security sign-off for image releases (CIS-aligned hardening, approved crypto settings, certificates, and required controls).
  • Maintain image versioning, release notes, and lifecycle (deprecation, end-of-support posture, and upgrade paths) with clear consumer guidance.
  • Ensure that engineering, design, server build, configuration and other related documentation is present and up to date and easily retrievable
  • Terraform Golden Path Modules
  • Own and evolve Terraform modules that implement the standard "golden path" for provisioning compliant OS platforms across environments.
  • Design modules to be reusable, opinionated, and safe-by-default (networking hooks, identity integrations, logging/monitoring, secrets handling, tagging/metadata).
  • Enable Git-based workflows and CI/CD for module promotion and consumption at scale (testing, validation, approvals, and rollback patterns).
  • Guardrails, Enforcement & Exception Workflow
  • Implement and operate guardrails/enforcement to prevent drift from OS standards (policy-as-code, validations, and automated compliance checks).
  • Define and run the exception workflow: intake, risk assessment, approvals, time-bound waivers, tracking, and remediation plans.
  • Partner with Security, IAM, and Risk teams to ensure governance, auditability, and evidence collection for standards adoption.
  • Rollout Sequencing & Operations
  • Plan and execute rollout sequencing for new standards and image releases (pilot → early adopters → broad rollout), minimizing operational risk.
  • Operate production support for golden path platforms, including incident response, root cause analysis, and continuous improvements to reduce repeat issues.
  • Establish runbooks, operational procedures, and communications for consumers and platform operators.
  • Monitoring & Observability
  • Define and implement monitoring and dashboards for image/standard adoption, compliance status, and drift detection across Linux, Windows, EC2/AMI, and container bases.
  • Integrate telemetry with enterprise monitoring to provide proactive alerting and visibility for stakeholders and operations.
  • Partner & Influence Across Teams (with ETS)
  • Partner with technology team to execute the standard golden path at scale, aligning on implementation patterns, operational handoffs, and support models.
  • Collaborate with application teams, cloud platform teams, and infrastructure engineering to onboard workloads to the golden path.
  • Provide technical leadership and mentorship, driving adoption through clear documentation, training, and stakeholder engagement.

What You'll Bring

Experience: 7+ years engineering and operating enterprise OS platforms across Linux and Windows in mission-critical, hybrid environments.

Golden images & provisioning: Proven expertise building and maintaining hardened/certified images (VM templates, EC2 AMIs, node images, container base images) and operating image build pipelines (e.g., Packer or equivalent).

Infrastructure as Code: Strong Terraform skills (module design, versioning, testing, promotion) with ability to deliver opinionated "golden path" modules for broad adoption; familiarity with Ansible and automation at scale.

Cloud & platform engineering: Working knowledge of AWS compute patterns (EC2/AMI), IAM, logging/monitoring integrations, and tagging/metadata standards; exposure to Azure/Oracle Cloud and hybrid operations.

Guardrails & governance: Experience implementing policy-as-code guardrails (validation, drift detection, compliance scanning) and running structured exception/waiver workflows.

Core infrastructure fundamentals: Strong grounding in networking (TCP/IP, DNS, storage (SAN/NAS/local/filesystems), HA/resiliency, and virtualization (VMware/UCS).

Operational leadership: Excellent incident/change discipline, clear communication to technical and non-technical stakeholders, and ability to partner with ETS and cross-functional teams to execute standards at scale.

How Success Will Be Measured

Golden path adoption & standardization — higher % of Linux/Windows platforms provisioned via approved Terraform modules and certified artifacts (base images, VM templates, EC2 AMIs, node/container images), with reduced build variance and drift.

Secure, on-time releases — predictable cadence for certified images, monthly patch readiness, and major OS releases delivered on schedule with documented hardening/approvals to meet SLAs.

Low-incident change execution — incident-free (or materially reduced) patch/image rollouts supported by guardrails, automated enforcement, rollout sequencing, and validated testing/rollback plans.

Vulnerability reduction — fewer Vulnerability Incident Tickets (VIT) and improved security posture through hardened standards, continuous remediation, and reduced repeat findings across Linux services and Windows workloads.

Operational excellence — fewer platform incidents attributable to standards/images, improved MTTR via runbooks and observability, and strong ServiceNow SLA performance (tickets closed within SLA).

Governance, exceptions & audit readiness — efficient exception workflow (clear SLAs, time-bound waivers, tracked remediation) plus complete, consistent, easily retrievable documentation/evidence for audits and quarterly reviews.

Working Model

Hybrid role based in New York, NY with periodic on-site participation for key release and change windows. Availability after-hours for critical issue engagement is expected. You'll operate under defined governance and established change procedures, partnering closely

with ETS and cross-functional teams to execute the standard golden path at scale, maintain hardened/certified image artifacts, and keep platform standards audit-ready across Linux, Windows, and AWS.

Pay Transparency

Salary Range: $90,000-$128,500

Overtime eligible: Exempt

Discretionary bonus eligible: Yes

Sales bonus eligible: No

Actual base salary will be determined based on several factors but not limited to individual's experience, skills, qualifications, and job location. Additionally, employees are eligible for an annual discretionary bonus. In addition to base salary, employees may also be eligible to participate in an incentive program.

Vacancy posted 21 hours ago
Similar jobs that could be interesting for youBased on the Senior Associate - Infrastructure Platform & Security Engineer in United States vacancy
  •  ...Richmond, Virginia, is seeking a Senior DevOps Engineer. The ideal candidate will improve AWS infrastructure, manage CI/CD pipelines, and enforce security best practices. Responsibilities include...  ...software engineers, and ensuring platform reliability. This full-time role... 
    Senior
    Full time
    Flexible hours

    BlueRock

    Richmond, VA
    3 days ago
  • $140k - $200k

     ...Skydrop is hiring a Senior Platform Security Engineer to secure its infrastructure through service hardening and foundational tools. The role involves building security controls for AWS and Kubernetes environments, along with maintaining access controls and designing... 
    Senior
    Work at office

    Skydrop

    New York, NY
    4 days ago
  •  ...Cybersecurity Senior Engineer The Cybersecurity Senior Engineer is...  ...expertise—particularly with IGA platforms such as SailPoint or Oracle...  ...controls that strengthen security and compliance. The...  ...closely with application, infrastructure, and security teams to translate... 
    Senior
    Work experience placement

    SunTrust Investment Services, Inc.

    Atlanta, GA
    2 days ago
  •  ...A leading cybersecurity firm is seeking a hands-on Security Engineer to join its remote infrastructure engineering team. In this role, you will design and implement core security programs aimed at optimizing security processes across the organization. The ideal candidate... 
    Senior
    Remote work

    Palo Alto Networks

    San Francisco, CA
    4 days ago
  •  ...As a Senior Platform Security Engineer, you will play a pivotal role in detecting, assessing, and remediating vulnerabilities across the platform engineering stack — from bare-metal infrastructure and container orchestration through to cloud services and software supply... 
    Senior

    Career Techniques Inc

    Dallas, TX
    4 days ago
  •  ...A leading cybersecurity firm is seeking a hands-on Security Engineer to define and build core security infrastructure. You will play a critical role in the infrastructure engineering team, collaborating across geographies. Required qualifications include 10+ years in... 
    Senior
    Remote work
    Flexible hours

    Palo Alto Networks

    Austin, TX
    4 days ago
  • $145k - $240k

     ...is building the automation engine that fixes revenue cycle management...  ...mission critical workflows, security is a first-principles priority. We are hiring a Senior Platform Security Engineer to own the...  ...security controls across infrastructure, application surfaces, data... 
    Senior

    SuperDial

    Burlingame, CA
    2 days ago
  •  ...Synop Engineer Role Come supercharge the electrification of commercial fleets...  ...to succeed. Synop is building the platform that powers the future of commercial...  ...who thrives at the intersection of security, platform infrastructure, and systems engineering. You love automation... 
    Senior
    Remote work

    Synop

    United States
    1 day ago
  •  ...Softtek Government Solutions is seeking a Service Desk & Infrastructure Engineer in Washington, DC, to enhance the cybersecurity posture for...  ...implement advanced engineering solutions focused on endpoint security. This role requires expertise in image automation and patch... 
    Senior
    Work at office

    Softtek Government Solutions

    Washington DC
    10 hours ago
  •  ...A leading cybersecurity firm is seeking a hands-on Security Engineer to define and build foundational security infrastructure across the organization. This remote position prioritizes collaboration among engineering teams to ensure security solutions support agility without... 
    Senior
    Remote work

    Palo Alto Networks

    Jacksonville, FL
    4 days ago
  •  ...Higgsfield AI, a leading video AI company, is hiring an Infrastructure Security Engineer to manage security operations across endpoints and cloud infrastructure. This remote/hybrid role offers a competitive salary, focusing on establishing scalable security practices... 
    Senior
    Remote work

    Menlo Ventures

    Torrance, CA
    3 days ago
  •  ...building an AI-native revenue platform that replaces the fragmented...  .... The Role You’ll own the security posture of the entire platform...  ...across both product and infrastructure, software supply chain security...  ...for a fast‑moving engineering team handling sensitive revenue... 
    Senior
    Work at office
    Shift work

    Slope

    San Francisco, CA
    3 days ago
  • $147k - $237.5k

     ...A leading cybersecurity firm is seeking a Senior Security Engineer to lead core security infrastructure development. Required qualifications include 10+ years in security-focused roles, strong system software development skills, and a collaborative spirit. The role emphasizes... 
    Senior

    Palo Alto Networks

    Boston, MA
    4 days ago
  • $80k - $114k

     ...An automotive technology firm is seeking a Security Engineer III responsible for safeguarding information systems and critical infrastructure. The role involves implementing enterprise security technologies, conducting risk assessments, and enhancing compliance with security... 
    Senior

    Hyundai AutoEver America

    West Point, UT
    3 days ago
  • $163k - $192k

     ...expertise with top‑tier data and software engineering talent to create products that our...  ..., we’re seeking an experienced Senior Platform Security Engineer to join our team. Here, you...  ...critical role in securing our cloud infrastructure and embedding strong security... 
    Senior
    Full time
    Temporary work
    Remote work

    Opala

    Seattle, WA
    4 days ago
  •  ...Senior Cloud Platform Security Engineer Job Description Overview CoStar Group is a leading global provider of commercial and residential...  ...group builds and operates centralized controls using infrastructure as code, scripting, and API integrations to scale... 
    Senior
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Group

    Arlington, VA
    21 hours ago
  •  ...Job Title: Senior Network Security Engineer Overview / Summary The Senior Network Security Engineer will provide L3 support...  ...responsible for maintaining secure and reliable network infrastructure, supporting incident response, troubleshooting complex... 
    Senior

    HTC Global Services

    Lubbock, TX
    5 days ago
  • $140k - $200k

     ...global crypto and Web3 platform founded by Cameron and...  ...simple, reliable, and secure crypto products and...  ...team secures Gemini's infrastructure through service hardening...  ...consultation to engineering teams for secure cloud...  ...infrastructure. The Role: Senior Platform Security... 
    Senior
    Work at office
    Remote work
    Flexible hours

    Gemini

    New York, NY
    4 days ago
  •  ...Senior Cloud Platform Security Engineer Location: Arlington, VA or Richmond, VA Schedule: Monday‑Thursday in office; Friday remote work. Overview...  ...build provenance, and artifact signing. Knowledge of infrastructure operations across databases, network, and system administration... 
    Senior
    Work at office
    Remote work

    CoStar Group

    Arlington, VA
    4 days ago
  •  ...Cybersecurity Engineer (AI Cloud Security) This role is 5 days a week in Charlotte or Atlanta Office...  ...Generative AI systems across cloud platforms. This role focuses on hands on...  ...security controls, automation, and infrastructure as code, and operationalizing enterprise... 
    Senior
    Work at office

    SunTrust Investment Services, Inc.

    Charlotte, NC
    3 days ago
  • $133.3k - $170k

     ...Senior Security Infrastructure Engineer JavaScript Not Enabled Your browser settings are preventing you from taking full advantage of the MathWorks Careers application. You can enable JavaScript within the Options or Preferences menu of most browsers. For explicit instructions... 
    Senior
    Work experience placement

    MathWorks

    Natick, MA
    21 hours ago
  • Sodexo in Piscataway Township, NJ, is seeking a Lead Infrastructure Security Engineer to oversee security technology services for a key manufacturing client. This role involves leading security projects, establishing operational procedures, and providing technical guidance... 
    Senior

    Sodexo

    Piscataway, NJ
    1 day ago
  •  ...Ll Oefentherapie in Olympia, Washington, is looking for an engineer to join the Oracle Cloud Infrastructure (OCI) Security team. This role involves designing and developing scalable, cloud-based web services while collaborating with cross-functional teams to address cyber... 
    Senior

    Ll Oefentherapie

    Olympia, WA
    10 hours ago
  •  ...We are hiring a Security Engineer to help support and evolve a modern cloud-based technology...  ...The Technical Environment Infrastructure: Azure Container Apps, Azure App Service...  ...Qualifications ~7–10 years in cloud platform engineering, DevOps, or infrastructure... 
    Senior
    Work at office
    Flexible hours

    Discover International

    Philadelphia, PA
    1 day ago
  • $165k - $215k

     ...create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function...  ...Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient... 
    Senior
    Temporary work
    Work at office
    Local area
    Remote work

    Metropolis Corp

    New York, NY
    4 days ago
  • $179.14k - $240k

     ...Astra Space Inc in Alameda, California is seeking an experienced Infrastructure Systems Engineer to enhance internal systems regarding identity, endpoints, networks, and security. This role demands expertise in designing end-to-end infrastructure solutions for internal... 
    Senior

    Astra Space Inc

    Alameda, CA
    3 days ago
  •  ...optimizations. Learn More: The Development Systems Engineering team is responsible for the infrastructure of a highly automated facility that supports...  ...Development organization. We are seeking an experienced Security Infrastructure Engineer to join our dynamic engineering... 
    Senior
    Work experience placement
    Work at office
    Flexible hours

    The MathWorks Inc

    Natick, MA
    3 days ago
  • The MathWorks, Inc. is seeking a Security Infrastructure Engineer with a focus on designing and maintaining secure infrastructure to support product development. This role involves collaborating with cross-functional teams and implementing Infrastructure as Code solutions... 
    Senior

    The MathWorks, Inc.

    Natick, MA
    2 days ago
  •  ...Inc in Raleigh, NC is seeking a network infrastructure expert to manage, maintain, and support...  ..., focusing on Cisco and firewall platforms. Candidates should have extensive experience...  ..., firewall management, and maintaining security systems. The position includes a comprehensive... 
    Senior

    Kforce Inc

    Raleigh, NC
    2 days ago
  • $250k - $300k

     ...financial firm is looking for a highly skilled and strategic Senior Infrastructure Security Engineer to join their vital Information Security team. This...  ...tailored for the unique challenges and risks associated with Artificial Intelligence (AI) infrastructure, ensuring... 
    Senior
    Permanent employment
    Immediate start

    Estreetsecurity

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Associate - Infrastructure Platform & Security Engineer. Be the first to apply!