Staff Platform Security Engineer (Security) [Remote]
$200k - $250kPhantom
- Remote job
[Phantom]( is on a mission to connect the world to the freedom of open markets. Tens of millions of people all over the world use Phantom to access global markets that never close, including perpetuals, prediction markets, tokenized assets, stablecoins and memes. Phantom users are able to discover the markets that matter and the cultural moments that shape them, building conviction through real-time data and the verified performance of top traders. With self-custody and access to open networks at its core, Phantom lets them control their financial moves in the same app they use to safely store or spend money worldwide.
Phantom has reached #1 in Google Play's finance category and consistently ranks in the top 50 apps across all categories. Phantom partners with many of the most trusted and influential names in finance like Hyperliquid, Stripe, Kalshi and Visa, to make the most popular and innovative financial products accessible to everyone.
We are around 180 people, fully remote, backed by a $150M Series C investment from a16z, Sequoia Capital and Paradigm.
Platform security is foundational to protecting Phantom and the systems our users rely on. We’re hiring a Senior Platform Security Engineer to own and improve security across our AWS and Kubernetes environments. You’ll work directly with infrastructure and engineering teams to secure the control planes, identities, workloads, and deployment systems behind our most critical products.
We’re building an AI-native security team that aggressively uses AI to expand the speed, depth, and reach of our work. We’re looking for a strong security engineer with high agency who can identify the risks that matter, build practical controls, and own problems through verified remediation. This is a hands-on role for someone who is comfortable working in production systems, writing code and infrastructure, responding to incidents, and making security improvements without slowing down the teams building on the platform.
This role is fully remote; however, we’re only open to candidates based in the US and Canada.
Responsibilities
- AWS Security: Own and improve security across Phantom’s multi-account AWS environment, including IAM, Identity Center, networking, compute, storage, secrets, logging, and organization-level guardrails.
- Kubernetes Security: Secure production Kubernetes environments running on Amazon EKS, including cluster configuration, workload identity, RBAC, admission controls, network boundaries, secrets, container security, and tenant isolation.
- Identity and Access: Design least-privilege access models for engineers, services, and automation. Build scoped, auditable, and time-bound access paths for sensitive production systems.
- Mission-Critical Systems: Protect the infrastructure supporting products and services that handle sensitive data and high-value operations.
- Cloud Security Architecture: Lead security design for new infrastructure, platform services, and major architectural changes.
- Infrastructure and Policy as Code: Build reusable security controls using tools such as Pulumi, Terraform, Kubernetes policy engines, and automated configuration validation.
- CI/CD and Supply Chain Security: Harden build, deployment, and release systems, including GitHub Actions, workload federation, build runners, dependencies, artifacts, signing, provenance, and access to production environments.
- Security Automation: Build tools that identify and remediate cloud and Kubernetes risks at scale. Apply AI-assisted workflows where they materially improve analysis, coverage, or response speed.
- Cross-Functional Leadership: Partner closely with Infrastructure, SRE, Developer Experience, and product engineering teams. Establish practical platform-security standards and help teams adopt them.
Qualifications
- 7+ years of experience in platform security, cloud security, infrastructure security, security engineering, or a closely related engineering role.
- Deep, hands-on experience securing production AWS environments. You understand IAM and resource policies, workload identity, network security, secrets management, logging, organization-level controls, and the ways these systems fail in practice.
- Deep experience securing Kubernetes in production, preferably Amazon EKS, including RBAC, workload identity, admission policy, network policy, pod security, secrets, and cluster hardening.
- Experience designing or securing mission-critical systems where compromise, excessive privilege, or loss of availability could have significant customer or business impact.
- Strong understanding of identity, authorization, least privilege, isolation, and blast-radius reduction across both human and machine access.
- Experience securing CI/CD and software supply chains, including GitHub Actions or similar systems, build runners, workload federation, artifacts, and production deployment paths.
- Experience writing and reviewing infrastructure as code using Pulumi, Terraform, CloudFormation, or similar tools.
- Ability to write production-quality code or automation in a language such as TypeScript, Python, Go, or Rust.
- High agency and ownership. You can take an ambiguous platform-security problem from initial investigation through implementation and verified remediation.
- Clear communication and a strong track record of partnering with infrastructure and engineering teams while maintaining a high security bar.
Nice To Haves
- Experience with AWS Nitro Enclaves or other trusted execution environments, including attestation, isolation boundaries, secure key handling, and operational lifecycle management.
- Experience securing financial, payments, wallet, custody, or other high-value transaction systems.
- Familiarity with key-management infrastructure, AWS KMS, CloudHSM, cryptographic signing systems, or secrets-management platforms.
- Experience operating or securing multi-region Kubernetes and AWS environments at significant scale.
- Familiarity with service meshes and cloud-native networking technologies such as Istio, PrivateLink, Transit Gateway, or eBPF-based controls.
- Experience with GitHub OIDC, Argo CD, Helm, Crossplane, or Kubernetes-based infrastructure delivery.
- Experience using cloud-security and observability platforms such as Wiz, Datadog, GuardDuty, Security Hub, or CloudTrail.
- Experience building policy-as-code, automated remediation, or security tooling used by a large engineering organization.
- Familiarity with blockchain infrastructure or self-custodial wallet architecture.
Why Work with Us
Phantom is built by a team of experienced product and engineering leaders working to make crypto-powered finance safer and easier to use. Our platform supports products used by tens of millions of people, making infrastructure security both technically challenging and directly consequential.
This role offers the opportunity to:
- Secure AWS and Kubernetes systems supporting products used by millions of people.
- Work on high-impact problems spanning cloud identity, production access, workload isolation, software supply chains, and mission-critical infrastructure.
- Build controls directly in the platform rather than operating as an advisory or review-only security function.
- Influence architecture early and own improvements through implementation and production verification.
- Help shape an AI-native security team with a strong engineering and automation culture.
Benefits
- Competitive salary and equity
- Eligibility to participate in the company’s performance bonus program
- Comprehensive medical, dental, and vision insurance with 100% coverage
- Stipend for your ideal remote setup
- Flexible hours and a supportive remote environment
- Unlimited vacation—take time when you need it
- 401(k) retirement plan
- Monthly wellness benefit
- Weekly meal benefit
- Global off-sites
The target base salary for this role will range between $200,000 to $250,000 with the addition of equity and benefits. This is determined by a few factors including your skillset, prior relevant experience, quality of interviews and market factors (such as location) at the point in time of offer.
We strongly encourage candidates of all backgrounds to apply. We believe that our work is stronger with a variety of perspectives, and we’re eager to further diversify our company. If you have a background that you feel would make an impact at Phantom, please consider applying. We’re committed to building an inclusive, supportive place for you to do the best work of your career. By submitting your resume and application materials, you acknowledge and agree that Phantom Technologies, Inc. ("Phantom") collects and processes your personal information (including application materials, interview records, and related data) to evaluate your candidacy. Phantom may use AI-powered tools and third-party service providers for transcription, note-taking, scheduling, and other administrative tasks. Phantom does not sell your information and your materials will be handled securely and in accordance with applicable data protection laws.$152k - $241.5k
...transparency, and broad scientific scrutiny. Our AI Safety & Security Engineering team builds and evaluates AI-powered tooling that helps find... ...patch software vulnerabilities. The agent harness and the platform it runs on are the substrate everything else builds on.We are...SuggestedFull timeRemote work$200k - $250k
...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Platform Security Engineer (Security) based in United States. As a Staff Platform Security Engineer, you will own security across critical AWS...SuggestedFull timeRemote workFlexible hours$200k - $250k
...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Platform Security Engineer (Security) based in United States. This is a senior, hands-on platform security role focused on protecting critical...SuggestedFull timeRemote workFlexible hours$200k - $250k
...Series C investment from a16z, Sequoia Capital and Paradigm. Platform security is foundational to protecting Phantom and the systems our users rely on. We’re hiring a Senior Platform Security Engineer to own and improve security across our AWS and Kubernetes environments...SuggestedFull timeRemote workWorldwideFlexible hours$266k
...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are... ...engaging a robust security culture. About the RoleAs a Security Engineer, Application Security you will be responsible for identifying and...SuggestedWork at officeRemote workRelocation packageFlexible hours$165k - $242k
...pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that... ...more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing... ....About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$116k - $162.5k
...food accessible to everyone. THE OPPORTUNITYAs the Senior Engineer, IT Security Engineering, under minimal supervision, you will participate... ...events using data and capabilities from enterprise security platforms.Perform IT security assessments and remediation activities...Work at officeLocal areaRemote workWork from homeShift work- Hi, we're Oscar. We're hiring a Senior Product Security Engineer 1 to join our Security Team.Oscar is the first health insurance company built around a full stack technology platform and a relentless focus on serving our members. We started Oscar in 2012 to create the kind...Full timeWork experience placementWork at officeRemote work
$159.3k - $212.8k
The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services... ...AWS, Microsoft Azure, and Google Cloud Platform, including implementation of security controls...InternshipFlexible hours- Washington DCTechnology - Security /RemoteThe Senior Security Engineer II will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and...Temporary workWork at officeRemote workWork from homeFlexible hours
- ...Job Description Fragomen is seeking a Security Engineer – Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh. Our industry-leading, immigration specific software and supporting infrastructure...Local areaRemote work
- Title:Associate Security Engineer, Identity SecurityKBR is seeking an Associate Security Engineer to join our Identity Security Services team... ..., security, and continuous improvement of identity platforms including Microsoft Entra ID, Active Directory, and hybrid identity...Permanent employmentFull timeLocal areaRemote work
- ...a special place to work.Job OverviewMacy’s is seeking a Staff Information Security Engineer to join its Cloud Security team. This position plays a pivotal... ...is central, as is providing technical leadership to Platform & Development teams.The ideal candidate is curious,...Work experience placementFlexible hoursShift work
$152.5k - $205k
...NYSE: CRCL) is one of the world’s leading internet financial platform companies, building the foundation of a more open, global... ...for:Circle is seeking a hands-on and technically sharp Senior Security Engineer, Executive & Endpoint Security to contribute to Circle’s security...Contract workWork at officeLocal areaRemote workFlexible hours$221.2k - $387.1k
Company DescriptionIt all started when engineer Fred Luddy wrote code that automated a tedious... ...business reinvention. Our ServiceNow AI platform brings together any AI, any data, and... ....Job DescriptionAbout SSOThe ServiceNow Security Organization (SSO) delivers world-class,...Permanent employmentWork at officeImmediate startRemote workFlexible hoursShift work$120k - $140k
...youth sports today. The Position: We’re looking for a Security Engineer to join our InfoSec team and become the primary security partner... ...impact, highly collaborative role. You’ll work closely with platform and product engineers to make security a part of how we...Full timeTemporary workWork at officeImmediate startRemote workWork from home$140k - $190k
...nation’s vital interests. Title : Information System Security Officers (ISSO), Senior Security Engineers & Security Engineering Leads (CBP) Clearance :... ...field deployment teams, and the government security staff who have to be persuaded rather than informed. One...Temporary workImmediate startRemote workRelocation packageDay shift$401k
...intelligence benefits all of humanity.The Security team protects OpenAI’s technology,... ...RoleOpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (InfraSec... ...Deep expertise in the security of cloud platforms (e.g., Amazon AWS, Microsoft Azure),...Work at officeLocal areaRemote workFlexible hours- ...business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable... ...support Capital Markets, Treasury, Credit Risk, Product, and Engineering to conduct feedback loops on policy changes against the...Full time
- ...GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations... ...improve operational efficiency, reduce security and compliance risk, and accelerate... ...overview of this role As a Senior Security Engineer on GitLab’s Security Incident Response...Full timeRemote work
$98.16k - $159.27k
...: Technology Solutions Job Description: The Senior Engineer, Network Security role is responsible for the engineering and design of TD's... ...security. This is a hands-on senior engineering role with platform level accountability across the Netskope stack. This position...Full timeWork at officeLocal areaWork from homeFlexible hours$190.8k - $267.1k
...the topics they care most about. Reddit is hiring a Senior Security Engineer, AI Security to help teams build and ship AI-powered products... ..., registries, sandboxes, libraries, policy checks, or platform controls that scale beyond one product team. What You'll Do...For contractorsWork experience placementRemote work$193.8k - $285k
...of consumers, merchants, and Dashers. Security Engineering is paramount to the success of our business... ...Engineering team is looking for a Staff Security Engineer, Proactive Security... ...role performing reviews and operating platform products, this is a forward deployed model...Hourly payFull timeWork experience placementWork at officeLocal areaRemote workFlexible hours$129.2k - $174.8k
The Security Products and Solutions (SPS) team owns the full lifecycle of physical security... ...communications.We are seeking a SYSDEV Engineer II to complement our existing Hardware... ...firmware, network infrastructure, and server platforms.The SYSDEV Engineer II will be...Remote workFlexible hours- ...expertise, capable of driving enterprise security initiatives and influencing... ...resilience.As a Senior Security Software Engineer, you will design, lead, and deliver secure... ...developers, and partner across SecOps, SOC, Platform, and Data teams to ship measurable outcomes...Full timeLocal areaWork from homeRelocation package
$92k - $211k
...position will be part of Lam Information Security’s Application Security team, supporting... ...and AI-enabled solutions, and support engineering teams in delivering secure software... ...scanning, or vulnerability management platforms.Basic understanding of CI/CD pipelines...Work experience placementLocal areaRemote workFlexible hours2 days per week3 days per week1 day per week- ...meetings. . See yourself at Twilio Join the team as our next Staff Engineer, Enterprise Security About the job As a Staff Enterprise Security Engineer,... ...secure reference architectures for Enterprise AI platforms that secures every Twilion’s engagement with them, ensuring...Full timeRemote workWorldwideShift work
- Opportunity OverviewTeam Overview:Join our team as a Security Engineer IV and contribute to the safeguarding of our information system resources... ...Posture management, AI security tooling and other firm platforms as neededParticipate in troubleshooting efforts to resolve...Temporary workWork at officeHome officeFlexible hours3 days per week
- ...want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Platform Engineer (Reliability & Security) - Oscar Hernandez to join our team in Plano, Texas (US-TX), United States (US).Role 4: Platform Engineer (...Work at officeRemote workFlexible hours
$86.9k - $119.52k
...Uniquely Yours.You work with the information security team as a competent and experienced... ...will be responsible for the design, engineering, governance, and continuous optimization... ...Identity Management or integration with IGA platforms such as SailPoint.Experience with SAP...Full timeLocal areaRemote workRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Platform Security Engineer (Security) [Remote]. Be the first to apply!
- staff data engineer Remote
- project engineer assistant project manager Remote
- senior staff engineer Remote
- senior staff systems engineer Remote
- assistant chief engineer Remote
- engineering aide Remote
- software engineer staff Remote
- staff design engineer Remote
- assistant engineering manager Remote
- assistant engineer Remote


