SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
NMI is seeking a Senior Staff Information Security Engineer to lead security architecture and engineering across a hybrid technology estate spanning AWS and on-premises infrastructure in colocation facilities.
This is a senior individual-contributor role where you will remain hands-on while serving as a trusted technical authority for complex security architecture decisions. You will lead cross-team initiatives, address systemic security challenges, and improve how security is designed and implemented across the organization.
Key responsibilities include:
**Infrastructure Security Architecture**: Define and evolve security architecture across AWS and colocation environments. Establish secure reference architectures, engineering standards, and reusable control patterns. Provide technical leadership for major infrastructure, platform, and product initiatives. Identify systemic risks and lead sustainable programmes to address them.
**Cloud and Hybrid Security**: Design and improve security across cloud accounts, networks, identities, workloads, and shared services. Establish effective controls for IAM, segmentation, encryption, secrets, logging, monitoring, and workload protection. Develop preventative guardrails through infrastructure-as-code, policy-as-code, automation, and cloud-native security services.
**Engineering Partnership**: Engage early in the design of new products, platforms, services, and integrations. Lead threat modelling, security architecture reviews, and technical risk assessments. Translate security risks into clear, practical engineering recommendations. Help teams adopt secure-by-design principles.
**Security Tooling and Automation**: Design and implement security tooling, integrations, and automated controls. Embed security capabilities into infrastructure provisioning, engineering workflows, and CI/CD pipelines. Use AI-assisted tooling to improve scripting, detection development, alert analysis, vulnerability triage, and technical documentation.
**Risk and Resilience**: Provide technical direction for vulnerability and exposure management. Identify recurring patterns across incidents, penetration tests, and vulnerabilities. Act as a senior technical escalation point during significant security incidents. Ensure investigations result in durable architectural improvements.
**Technical Leadership**: Lead complex security initiatives spanning multiple teams. Mentor security engineers and provide guidance to adjacent teams. Raise the standard of security architecture, automation, and technical decision-making. Communicate security risks clearly to technical teams, product leaders, and senior stakeholders.
Required experience includes significant background in security engineering, infrastructure security, cloud security, or platform engineering. Deep hands-on experience securing AWS environments is essential, including IAM, network architecture, account governance, encryption, logging, monitoring, and workload protection. Experience designing or securing on-premises and colocation-hosted infrastructure is required. Strong knowledge of enterprise networking, segmentation, firewalls, secure remote access, and hybrid connectivity is needed. Experience with infrastructure-as-code, CI/CD security, containerized environments, and cloud-native platforms is expected. Demonstrated experience designing and implementing automated security controls and engineering solutions is required. Proficiency with Python, Go, or comparable languages for scripting and software development is necessary. Practical experience using AI-assisted tooling to improve security engineering workflows is valued. Experience leading complex initiatives across multiple engineering and infrastructure teams is important.