NorthMark Strategies Logo

NorthMark Strategies

Senior Platform Security Engineer

Posted One Month Ago
Be an Early Applicant
In-Office
Dallas, TX
Senior level
In-Office
Dallas, TX
Senior level
Lead design and operation of platform vulnerability management and real-time threat detection across bare-metal, containers, and cloud. Integrate security into CI/CD and IaC, run triage/prioritization, automate posture assessment, conduct platform security assessments, and collaborate with engineering to drive remediation and hardening.
The summary above was generated by AI

The Company 

NorthMark Compute & Cloud (NMC²) is backed by dedicated leadership and investment, with a clear mission as it operates at the bleeding edge of technology. Its goal is to scale and enhance the high-performance computing (HPC) and cloud infrastructure that supports its clients’ research, production, and delivery, enabling breakthroughs that shape the industries of tomorrow. Its engineers build critical infrastructure to eliminate friction in scientific research, simulations, analysis, and decision-making, accelerating discovery and driving faster innovation. 

The Position 

The Platform Security team sits within NMC²’s Security organization and is responsible for securing the engineering platforms and infrastructure that power our HPC and cloud environment. Our mission is to build real-time security visibility and a proactive vulnerability management capability into the core of how NMC²’s platforms are built and operated — ensuring that security is never an afterthought in an environment where the stakes are exceptionally high. 

As a Senior Platform Security Engineer, you will play a pivotal role in detecting, assessing, and remediating vulnerabilities across our platform engineering stack from bare-metal infrastructure and container orchestration through to cloud services and software supply chains. You will collaborate closely with Platform Engineering and DevOps teams to embed real-time threat detection and vulnerability management into the development lifecycle, ensuring our infrastructure is resilient, continuously monitored, and hardened against emerging threats. 

Responsibilities: 

  • Own the design and operation of NMC²’s vulnerability management program across the platform engineering stack, including infrastructure, containers, and cloud services 

  • Implement and tune real-time security monitoring and threat detection tooling, ensuring high-fidelity signal across our HPC and cloud environments 

  • Partner with Platform Engineering and DevOps teams to integrate security scanning and vulnerability assessment into CI/CD pipelines and Infrastructure-as-Code workflows 

  • Lead vulnerability triage and prioritization, working with engineering teams to drive timely and effective remediation of identified risks 

  • Conduct platform-level security assessments, contributing to threat modelling and attack surface analysis across our infrastructure and software supply chain 

  • Develop automation to continuously assess the security posture of our platforms, reducing manual effort and improving detection coverage 

  • Contribute to the continuous improvement of platform security practices, tooling, and processes, helping foster a security-first culture across engineering 

 

Requirements: 

  • 6+ years of experience in security engineering, with a strong focus on platform, infrastructure, or application security 

  • Hands-on experience with vulnerability management tooling and real-time security monitoring platforms (e.g. Qualys, Tenable, Wiz, Lacework, Prisma Cloud, or similar) 

  • Strong understanding of software and infrastructure security, including container security, supply chain risk, secrets management, and secure configuration 

  • Experience securing container orchestration platforms such as Kubernetes and OpenStack, and cloud environments including AWS and/or Azure 

  • Proficiency in Linux and familiarity with how platform engineering teams build and operate infrastructure 

  • Experience integrating security tooling into CI/CD pipelines and IaC workflows, with scripting ability in Python, Bash, Go, or similar 

  • Good knowledge of vulnerability scoring frameworks (CVSS), exploit maturity, and risk-based prioritization 

  • A strong interest in the security domain and a collaborative approach to working with engineering teams to solve complex technical problems 

 

Nice to Have: 

  • Experience with runtime threat detection tools such as Falco or eBPF-based security tooling 

  • Familiarity with software supply chain security frameworks (e.g. SLSA, SBOM generation, Sigstore) 

  • Background working within or alongside a SOC or threat intelligence function 

  • Relevant certifications such as OSCP, GIAC (GPEN/GWAPT/GCSA), AWS Security Specialty, or equivalent 

It is impossible to list every requirement for, or responsibility of, any position.  Similarly, we cannot identify all the skills a position may require since job responsibilities and the Company’s needs may change over time.  Therefore, the above job description is not comprehensive or exhaustive.  The Company reserves the right to adjust, add to or eliminate any aspect of the above description.  The Company also retains the right to require all employees to undertake additional or different job responsibilities when necessary to meet business needs.

Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Benefits & Perks:

  • Company-Paid Lunch Stipend: Lunch is provided via GrubHub

  • Company-Paid Benefits: 100% Employer-Paid Medical in our High Deductible Health Plan, Dental and Vision benefits for employees and their families, 16 weeks of Paid Parental Leave, Employee Assistance Program, Life insurance, Short-Term Disability and Long-Term Disability

  • 401(k): Company will match 100% of your contributions up to 6%

  • Optional Employee-Paid Benefits: Medical insurance in our PPO plan and a variety of other benefits such as Health Savings Accounts (with Company Contribution!), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more.

  • Time Off:  25 days of Paid Time Off plus 12 company holidays

EQUAL OPPORTUNITY EMPLOYER

NORTHMARK STRATEGIES LLC IS AN EQUAL EMPLOYMENT OPPORTUNITY EMPLOYER. THE COMPANY'S POLICY IS NOT TO DISCRIMINATE AGAINST ANY APPLICANT OR EMPLOYEE BASED ON RACE, COLOR, RELIGION, NATIONAL ORIGIN, GENDER, AGE, SEXUAL ORIENTATION, GENDER IDENTITY OR EXPRESSION, MARITAL STATUS, MENTAL OR PHYSICAL DISABILITY, AND GENETIC INFORMATION, OR ANY OTHER BASIS PROTECTED BY APPLICABLE LAW. THE FIRM ALSO PROHIBITS HARASSMENT OF APPLICANTS OR EMPLOYEES BASED ON ANY OF THESE PROTECTED CATEGORIES.

Similar Jobs

7 Days Ago
Hybrid
Austin, TX, USA
130K-150K Annually
Senior level
130K-150K Annually
Senior level
Other
Designs and operates security controls for AWS multi-account environments, including IAM, networking, encryption, secrets, infrastructure-as-code, CI/CD, policy-as-code, vulnerability management, telemetry, and incident response. Partners with engineering, DevOps, architecture, MLOps, IT, GRC, and audit teams to create secure platform patterns, golden paths, guardrails, documentation, and compliance evidence. Mentors engineers and improves cloud security without slowing delivery.
Top Skills: AWSAws CdkAws CloudtrailAws ConfigAws Control TowerAws Direct ConnectAws GuarddutyAws IamAws KmsAws OpaAws OrganizationsAws Parameter StoreAws Secrets ManagerAws Security HubCheckovCloudFormationConftestDatadogDockerEcsGitGithub ActionsIam Identity CenterKubernetesLaceworkLinuxMicrosoft Entra IdPrisma CloudQualysSbomTerraformTfsecVpcVpnWafWiz
One Month Ago
In-Office or Remote
North Carolina, USA
Senior level
Senior level
Fintech
Lead design, implementation, automation, and operation of enterprise Okta identity services. Drive application onboarding, federation, lifecycle management, resiliency, monitoring, incident response, governance, and platform automation while mentoring engineers and improving security posture.
Top Skills: Aws CloudwatchAws LambdaAws Secrets ManagerCi/CdDevice AssuranceFastpassFido2GitMfaOauth 2.0OidcOktaOkta ApisOkta VerifyOkta WorkflowsOpentofuPowershellPythonRest ApisSaml 2.0ScimSplunkTerraform
5 Minutes Ago
Remote or Hybrid
United States
54K-74K Annually
Junior
54K-74K Annually
Junior
Fintech • Insurance • Payments • Social Impact • Financial Services
Processes escrow disbursements for mortgage and consumer loans, including taxes, hazard insurance, and PMI. Reviews tax and escrow reports, reconciles general ledger accounts, performs loan setup quality checks, manages insurance and service-provider relationships, maintains servicing records, analyzes operational reports, and responds to client inquiries. The role also supports issue resolution, reporting, and departmental projects while maintaining accuracy and service quality.
Top Skills: CorelogicExcelMicrosoft OutlookMicrosoft Word

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account