SlipstreamJobsFresh Startup & VC-Backed Jobs

Lead Security and Infra Engineer

Liberate - Boston, MA, United States - Hybrid - posted 2026-08-12

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Liberate builds AI agents to automate manual tasks across the insurance industry, with a focus on voice automation and workflow automation for sales, servicing, and claims. The company has raised $72M including a $50M Series B in October 2025. You will be Liberate's first dedicated security and infrastructure engineering leader, reporting to the VP Engineering with dotted-line partnerships to the Chief Product Officer and Customer Success leadership. This is a hands-on, infrastructure-heavy security role—not a governance-only CISO position. Your primary responsibilities span three areas: **Cloud Infrastructure & DevOps:** Own and evolve production cloud infrastructure across AWS, Kubernetes/EKS, networking, compute, storage, and data services. Build reusable Terraform modules, CI/CD pipelines, and deployment automation. Improve reliability through observability, alerting, SLOs, capacity management, backup/recovery, and disaster recovery. Participate in on-call rotations and convert incidents into durable platform improvements. Partner with platform and product teams on architecture and secure-by-default patterns. **Security Engineering & Architecture:** Serve as the senior technical security owner and escalation point. Lead threat modeling and secure design reviews for agent capabilities, tool execution, integrations, multi-tenant services, and sensitive data flows. Build a practical secure SDLC including code scanning, dependency scanning, container scanning, CI gates, and security tests. Own identity, authorization, secrets, key management, encryption, network boundaries, audit trails, and tenant/data-isolation patterns. Establish controls for agentic AI risks including scoped tool access, credential handling, data exfiltration prevention, and prompt injection mitigation. Run vulnerability management end-to-end and build security telemetry and detection playbooks. **Compliance & Customer Trust:** Own SOC 2 and related compliance programs end-to-end. Translate compliance requirements into automated technical controls rather than manual checklists. Lead audits, penetration tests, customer security reviews, and technical conversations with enterprise customers and auditors. Maintain a clear risk and security roadmap and use tools like Vanta as leverage while retaining internal technical ownership. You are a senior infrastructure, platform, or DevOps engineer with real security depth, or a security engineer who has personally built and operated production cloud infrastructure. You write code and infrastructure-as-code, debug production systems, review architecture, and take changes from design through rollout and operation. You think in systems: identity, authorization, tenant boundaries, failure domains, and blast radius. You are pragmatic about tradeoffs between security, velocity, and operational burden.

Similar roles