1

Infrastructure Security Engineer Jobs in New York

The Role: We're looking for an Infrastructure Security Engineer to design and secure the core systems that power our platform. This role focuses on building security directly into our infrastructure ...

Infrastructure Security Engineer

New York, NY · Hybrid

$156K/yr

We are seeking a talented and motivated Infrastructure Security Engineer to join our security team. In this role, you will design, implement, and maintain secure cloud and hybrid infrastructure, and ...

Infrastructure Security Engineer

Manhattan, NY · On-site

$157K/yr

They are seeking an Infrastructure Security Engineer to design, implement, and maintain secure cloud and hybrid infrastructure while ensuring the integrity of cloud-native applications.

IaC Engineer

New York, NY · Remote

$146K/yr

Description We are seeking an Infrastructure as Code (IaC) Security Engineer to design, build, and maintain secure, scalable, and automated infrastructure solutions that underpin our AI security ...

This role works closely with Security Operations, Infrastructure, Cloud Engineering, IT, and Engineering teams to implement security best practices, improve operational resilience, and support ...

... security, infrastructure security, or platform/SRE engineering with a strong security focus Bonus Points * Experience with Snowflake security - schema-level isolation, access controls, data sharing ...

next page

Showing results 1-20

Infrastructure Security Engineer information

See New York salary details

$81K

$155.5K

$186K

How much do infrastructure security engineer jobs pay per year?

As of Jul 30, 2026, the average yearly pay for infrastructure security engineer in New York is $155,499.00, according to ZipRecruiter salary data. Most workers in this role earn between $156,400.00 and $156,400.00 per year, depending on experience, location, and employer.

What are some common challenges an Infrastructure Security Engineer faces when implementing new security measures within an organization?

Infrastructure Security Engineers often face challenges such as balancing security requirements with business needs and ensuring minimal disruption to ongoing operations. Integrating new security tools with legacy systems can be complex, requiring thorough testing and collaboration with IT and DevOps teams. Additionally, gaining buy-in from stakeholders and ensuring compliance with industry regulations are crucial aspects that require strong communication and project management skills.

What does an Infrastructure Security Engineer do?

An Infrastructure Security Engineer is responsible for protecting an organization's IT infrastructure, including networks, servers, and cloud platforms, from cyber threats. They design and implement security measures such as firewalls, intrusion detection systems, and security policies to safeguard data and systems. Their role also involves monitoring for vulnerabilities, responding to incidents, and ensuring compliance with industry security standards. By proactively identifying risks and strengthening defenses, Infrastructure Security Engineers play a crucial role in maintaining the organization's overall cybersecurity posture.

What is the difference between Infrastructure Security Engineer vs Network Security Engineer?

AspectInfrastructure Security EngineerNetwork Security Engineer
CertificationsCompTIA Security+, CISSP, Cisco CCNA SecurityCompTIA Security+, CISSP, Cisco CCNA Security
Work EnvironmentFocuses on securing entire IT infrastructure, including servers, cloud, and hardwareFocuses on securing network devices, firewalls, and network traffic
Employer & Industry UsageUsed across tech, finance, healthcare for infrastructure securityCommon in networking, telecom, and enterprise IT sectors

Both roles require similar certifications and often overlap in responsibilities. However, Infrastructure Security Engineers focus on securing the entire IT infrastructure, while Network Security Engineers specialize in protecting network components and traffic. Understanding these differences helps in choosing the right career path or job focus.

What are the key skills and qualifications needed to thrive as an Infrastructure Security Engineer, and why are they important?

To thrive as an Infrastructure Security Engineer, you need expertise in network security, risk assessment, and systems administration, often supported by a degree in computer science or related certifications like CISSP or CEH. Familiarity with security tools such as firewalls, IDS/IPS, SIEM platforms, and cloud security systems is typically required. Strong analytical thinking, problem-solving, and effective communication skills help you proactively address vulnerabilities and collaborate with cross-functional teams. These abilities are crucial to effectively safeguard organizational infrastructure from evolving cyber threats and ensure business continuity.
What are the most commonly searched types of Infrastructure Security Engineer jobs in New York? The most popular types of Infrastructure Security Engineer jobs in New York are:
What are popular job titles related to Infrastructure Security Engineer jobs in New York? For Infrastructure Security Engineer jobs in New York, the most frequently searched job titles are:
What job categories do people searching Infrastructure Security Engineer jobs in New York look for? The top searched job categories for Infrastructure Security Engineer jobs in New York are:
What cities in New York are hiring for Infrastructure Security Engineer jobs? Cities in New York with the most Infrastructure Security Engineer job openings:
Infographic showing various Infrastructure Security Engineer job openings in New York as of July 2026, with employment types broken down into 91% Full Time, and 9% Contract. Highlights an 72% In-person, and 28% Remote job distribution, with an average salary of $155,499 per year, or $74.8 per hour.

Infrastructure Security Engineer

Modal, Inc

New York, NY • On-site

$150K - $270K/yr

Full-time

Re-posted 9 days ago


Job description

About Us:
AI needs a new infrastructure layer. We're building it at Modal.
Every era of computing brought new workloads that previous infrastructure couldn't support: mainframes, databases, and the cloud. Each time, the company that rebuilt the layer underneath defined the decade. AI is no different, except it touches everything instead of one slice, and the window to build the layer underneath it is open right now.
Our customers include category-defining companies like Lovable, Ramp, Cognition, DoorDash, and Suno. They rely on Modal for instant GPU access, sub-second container starts, and native storage, so it's simple to serve low-latency inference, fine-tune models, and access production-ready sandboxes at scale.
We recently raised a $355M Series C at a $4.65B valuation, led by General Catalyst and Redpoint Ventures. We've crossed $300M+ ARR and grown fivefold since September.
Our team includes creators of popular open-source projects (e.g.,Seaborn,Luigi), academic researchers, international olympiad medalists, and experienced engineering and product leaders with decades of experience.
The Role:
We're looking for an Infrastructure Security Engineer to design and secure the core systems that power our platform. This role focuses on building security directly into our infrastructure-from container isolation and orchestration to identity and secrets management in a multi-tenant, cloud-native environment.
You'll work closely with engineering teams to define secure primitives and ensure our platform is resilient, scalable, and trustworthy by design.
This is a hands-on, deeply technical role focused on real systems, not compliance or policy.
What You'll Do:
Platform & Runtime Security
  • Design and improve isolation mechanisms for multi-tenant workloads (containers, sandboxing, execution environments)
  • Strengthen boundaries between customers, workloads, and internal systems
  • Identify and mitigate risks in distributed, dynamic compute environments

Container & Orchestration Security
  • Secure and harden containerized workloads and orchestration systems (e.g., Kubernetes or similar)
  • Improve workload isolation, scheduling boundaries, and runtime protections
  • Evaluate tradeoffs in multi-tenant execution models

Identity & Access Management
  • Design and improve authentication and authorization systems across services
  • Implement strong service-to-service identity and least-privilege access patterns
  • Improve access controls across infrastructure and internal systems

Secrets & Key Management
  • Build and maintain systems for securely managing secrets, tokens, and credentials
  • Improve rotation, auditing, and access controls
  • Reduce secret sprawl and integrate secure patterns into developer workflows

Cloud & Infrastructure Security
  • Secure cloud environments across providers (AWS, GCP, etc.) with a focus on consistency and portability
  • Improve network boundaries, service segmentation, and access controls
  • Embed security into infrastructure-as-code and deployment systems

Engineering Partnership
  • Work closely with product and infrastructure teams to design secure systems from the ground up
  • Review architecture and code for security risks and provide actionable guidance
  • Identify patterns in risks and drive cross-cutting improvements
Requirements:
Core Experience
  • Experience securing cloud-native infrastructure and distributed systems in production
  • Background in infrastructure, backend, or security engineering
  • Experience working in multi-tenant or high-scale environments

Technical Depth
  • Strong understanding of containerization and orchestration systems (e.g., Kubernetes or similar)
  • Experience designing or securing isolation mechanisms in multi-tenant systems
  • Solid understanding of authentication, authorization, and service identity models
  • Experience with secrets management and secure handling of credentials
  • Strong foundation in networking concepts (segmentation, service communication, access boundaries)

Mindset
  • Builder mentality, you design and implement, not just review
  • Pragmatic approach to security in fast-moving environments
  • Comfortable working deeply with engineers and influencing system design
Preferred Qualifications:
  • Experience with sandboxing or runtime isolation technologies (e.g., gVisor, Firecracker, seccomp, or similar)
  • Familiarity with kernel-level or low-level isolation primitives
  • Experience securing Kubernetes or similar orchestration systems in production
  • Background in developer infrastructure, compute platforms, or multi-tenant systems