1

Infrastructure Security Engineer Jobs in California

The role involves securing the agent execution surface, owning product and infrastructure security, and building security tooling that integrates with the engineering workflow. Responsibilities : • ...

They are seeking a Security Engineer to build and strengthen security foundations, focusing on product security, infrastructure security, detection and response, and enterprise security in a fast ...

The Security Engineer role involves building and scaling the security foundations of Decagon's AI ... infrastructure security • Build security tooling and automation, including automated remediation ...

Security Engineer

San Francisco, CA · On-site

$260K - $300K/yr

Both products handle highly sensitive customer code, credentials, and infrastructure access. You will help define what security looks like for AI-native developer tools and build the controls ...

Senior Security Engineer

San Francisco, CA · On-site

$134K - $185K/yr

They are seeking a Senior Security Engineer to build systems and practices that ensure the security ... the infrastructure for vulnerability scanning, dependency auditing, secrets management, and ...

Manager, DevSecOps Engineering

San Francisco, CA · On-site

$168K/yr

You will manage a team of security and DevOps engineers, driving a culture of security-first delivery across Cloud Security, CI/CD Pipeline Security, Product Security and Infrastructure Security. You ...

Manager, DevSecOps Engineering

San Francisco, CA · On-site

$168K/yr

About the RoleIn this role, you will lead the strategy, design, and delivery of security engineering solutions that protect the company's assets, infrastructure, and software supply chain. You will ...

next page

Showing results 1-20

Infrastructure Security Engineer information

See California salary details

$73K

$140.3K

$167.8K

How much do infrastructure security engineer jobs pay per year?

As of Jun 15, 2026, the average yearly pay for infrastructure security engineer in California is $140,272.00, according to ZipRecruiter salary data. Most workers in this role earn between $141,100.00 and $141,100.00 per year, depending on experience, location, and employer.

What are some common challenges an Infrastructure Security Engineer faces when implementing new security measures within an organization?

Infrastructure Security Engineers often face challenges such as balancing security requirements with business needs and ensuring minimal disruption to ongoing operations. Integrating new security tools with legacy systems can be complex, requiring thorough testing and collaboration with IT and DevOps teams. Additionally, gaining buy-in from stakeholders and ensuring compliance with industry regulations are crucial aspects that require strong communication and project management skills.

What does an Infrastructure Security Engineer do?

An Infrastructure Security Engineer is responsible for protecting an organization's IT infrastructure, including networks, servers, and cloud platforms, from cyber threats. They design and implement security measures such as firewalls, intrusion detection systems, and security policies to safeguard data and systems. Their role also involves monitoring for vulnerabilities, responding to incidents, and ensuring compliance with industry security standards. By proactively identifying risks and strengthening defenses, Infrastructure Security Engineers play a crucial role in maintaining the organization's overall cybersecurity posture.

What is the difference between Infrastructure Security Engineer vs Network Security Engineer?

AspectInfrastructure Security EngineerNetwork Security Engineer
CertificationsCompTIA Security+, CISSP, Cisco CCNA SecurityCompTIA Security+, CISSP, Cisco CCNA Security
Work EnvironmentFocuses on securing entire IT infrastructure, including servers, cloud, and hardwareFocuses on securing network devices, firewalls, and network traffic
Employer & Industry UsageUsed across tech, finance, healthcare for infrastructure securityCommon in networking, telecom, and enterprise IT sectors

Both roles require similar certifications and often overlap in responsibilities. However, Infrastructure Security Engineers focus on securing the entire IT infrastructure, while Network Security Engineers specialize in protecting network components and traffic. Understanding these differences helps in choosing the right career path or job focus.

What are the key skills and qualifications needed to thrive as an Infrastructure Security Engineer, and why are they important?

To thrive as an Infrastructure Security Engineer, you need expertise in network security, risk assessment, and systems administration, often supported by a degree in computer science or related certifications like CISSP or CEH. Familiarity with security tools such as firewalls, IDS/IPS, SIEM platforms, and cloud security systems is typically required. Strong analytical thinking, problem-solving, and effective communication skills help you proactively address vulnerabilities and collaborate with cross-functional teams. These abilities are crucial to effectively safeguard organizational infrastructure from evolving cyber threats and ensure business continuity.
What are the most commonly searched types of Infrastructure Security Engineer jobs in California? The most popular types of Infrastructure Security Engineer jobs in California are:
What are popular job titles related to Infrastructure Security Engineer jobs in California? For Infrastructure Security Engineer jobs in California, the most frequently searched job titles are:
What job categories do people searching Infrastructure Security Engineer jobs in California look for? The top searched job categories for Infrastructure Security Engineer jobs in California are:
What cities in California are hiring for Infrastructure Security Engineer jobs? Cities in California with the most Infrastructure Security Engineer job openings:
Infographic showing various Infrastructure Security Engineer job openings in California as of June 2026, with employment types broken down into 1% As Needed, 97% Full Time, 1% Part Time, and 1% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $140,272 per year, or $67.4 per hour.
Sr. Infrastructure & Security Engineer

Sr. Infrastructure & Security Engineer

Hercules

Campbell, CA • On-site

$175K - $230K/yr

Full-time

Posted 17 days ago


Job description

About Hercules
Hercules helps finance and operations leaders solve problems that are too complex, large-scale, or time-consuming for human teams to manage alone. Its platform automates the validation and verification of data across millions of high-volume, rules-based transactions, improving billing accuracy, reducing costs, and accelerating cash flow. Built on a modular, multi-AI agent architecture, Hercules delivers industry-specific solutions for staffing, insurance, government, and financial services. Its accuracy and consistency enable enterprises to achieve levels of precision and speed that were previously out of reach.
Headquartered in the United States, Hercules also has offices in the United Kingdom, Armenia, Canada, and Portugal.
What you'll do
  • Provision and optimize GPU compute across AWS, Azure, GCP, and specialized providers (CoreWeave, Lambda Labs), including Kubernetes GPU orchestration and hardware evaluation (NVIDIA H100/B200, AMD MI300X, Intel Gaudi)
  • Design and maintain IaC foundations (Terraform, Pulumi, Helm) for agentic AI systems, including agent orchestration platforms, RAG stacks, vector databases, and model serving endpoints
  • Implement policy-as-code guardrails (OPA, Sentinel, Kyverno) for autonomous agent workloads
  • Design and enforce zero-trust architectures with network segmentation, IAM/RBAC least-privilege, and secrets management (Vault, AWS Secrets Manager)
  • Configure and manage Cloudflare (or equivalent) for DDoS protection, WAF, bot management, SSL/TLS termination, and Zero Trust access
  • Manage DNS security (DNSSEC, DMARC, SPF, DKIM), certificate lifecycle, and API security controls (mTLS, token management)
  • Lead vulnerability management, penetration testing coordination, and CIS benchmarking
  • Partner with customer success teams to assess, secure, and threat-model customer deployment environments
  • Build and maintain CI/CD pipelines (GitHub Actions, GitLab CI) with integrated security scanning (SAST, DAST, SCA, container scanning)
  • Deploy and manage Kubernetes clusters across cloud and on-prem with security-hardened, GPU-enabled configurations
  • Implement observability (Prometheus, Grafana, Splunk, Datadog) and SIEM integrations
  • Lead incident response and drive compliance (SOC 2, ISO 27001, HIPAA, FedRAMP) through audit automation

Qualifications
  • Proven expertise with Terraform/Pulumi, IaC, policy-as-code, and scripting (Python, Bash, PowerShell)
  • Hands-on GPU compute provisioning across major cloud and specialized providers
  • Experience with Cloudflare or equivalent CDN/WAF/DDoS platforms for perimeter security and Zero Trust
  • Strong background in AWS, Azure, GCP, and on-prem infrastructure with secure architecture focus
  • Proficiency in Kubernetes and Docker, including container security, GPU scheduling, and runtime protection
  • Deep understanding of network security, zero-trust principles, IAM/RBAC, and secrets management
  • CI/CD experience with integrated security scanning
  • Ability to conduct security assessments, threat modeling, and work directly with customers

Pay Range
$175,000 - $230,000