2

Remote Infrastructure Security Engineer Jobs (NOW HIRING)

Cloud and Infrastructure Security Define and implement security architecture, standards, reusable ... remote administration, and system lifecycle processes. Evaluate, deploy, integrate, and operate ...

Senior Security Engineer

$117K - $160K/yr

As a Senior Security Engineer, Development Security & Operations, you will help build the security ... The work spans applications, APIs, cloud platforms, infrastructure-as-code, CI/CD pipelines, and ...

Senior Security Engineer

$117K - $160K/yr

As a Senior Security Engineer, Development Security & Operations, you will help build the security ... The work spans applications, APIs, cloud platforms, infrastructure-as-code, CI/CD pipelines, and ...

This is a fully remote position, allowing you to work from home or location of record within the U ... Champion progressive infrastructure security technologies such as ZTNA, Passwordless, etc.

Senior Security Engineer

Waco, TX ยท Remote

$101K - $139K/yr

Director of Engineering Summary AxisCare is hiring a full-time, fully remote Senior Security ... Threat-model our application and infrastructure. We run a PHP/React modular monolith on AWS ...

Senior Security Engineer

Waco, TX ยท Remote

$117K - $160K/yr

Director of Engineering Summary AxisCare is hiring a full-time, fully remote Senior Security ... Threat-model our application and infrastructure. We run a PHP/React modular monolith on AWS ...

This position is fully remote within the United States. Responsibilities * Supports vulnerability ... infrastructures, and containerized workloads. * Apply security engineering best practices to cloud ...

Senior Security Engineer, Platforms & AI

Oakland, CA ยท On-site +1

$132K - $181K/yr

As a remote-first company, we welcome applicants based anywhere in the United States or Canada. You ... Secure and harden cloud infrastructure, applications, APIs, internal systems, and operational ...

Information Security Engineer

Andover, MA ยท On-site +1

$150K - $180K/yr

Ensure SLAs and security commitments from both partners are met AWS & Cloud Infrastructure Security ... Review and advise on network changes, cloud connectivity, remote access design, and firewall rule ...

Information Security Engineer

Andover, MA ยท On-site +1

$150K - $180K/yr

Ensure SLAs and security commitments from both partners are met AWS & Cloud Infrastructure Security ... Review and advise on network changes, cloud connectivity, remote access design, and firewall rule ...

Security Engineer 100% Remote contract We are seeking a highly skilled and motivated Security ... applications, and infrastructure. If you are passionate about cybersecurity, have hands-on ...

Senior Security Engineering Manager, Product Security

OR ยท On-site +1

$114K - $156K/yr

Our team's mission is to protect Upstart's core product platforms, cloud infrastructure, enterprise ... Remote - US Time zone requirements The team operates on the East/West coast time zones. Travel ...

About the Role We're seeking a talented software engineer, specializing in security and infrastructure, to help grow our product security team. We're looking for people who can move Tailscale forward ...

Who We Are Core Scientific is a leading provider of infrastructure for high-performance compute in ... Develop and operate SASE, Zero Trust, VPN, and secure remote-access capabilities using identity ...

New

Network Security Engineer

$107K - $146K/yr

Collaborate with infrastructure, cloud, and application teams to secure enterprise environments ... Secure Remote Access Solutions SIEM, SOC & Threat Detection Experience with one or more: * Splunk

Security Engineer Full-time Remote Exclusive confidential search -- details shared with qualified ... Harden cloud infrastructure (AWS) posture: IAM, SCPs, security groups, GuardDuty, Security Hub, and ...

Network Security Engineer

OR ยท On-site +1

$104K - $142K/yr

We believe that advancements in smart infrastructure are critical to enabling a safer and more ... Configure and maintain firewalls, VPNs, network segmentation, NAC, and secure remote access ...

Showing results 41-60

Remote Infrastructure Security Engineer information

See salary details

$74K

$142.1K

$170K

How much do remote infrastructure security engineer jobs pay per year?

As of Aug 23, 2026, the average yearly pay for remote infrastructure security engineer in the United States is $142,133.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $143,000.00 per year, depending on experience, location, and employer.

What is a remote infrastructure security engineer?

A Remote Infrastructure Security Engineer is a cybersecurity professional who is responsible for protecting an organization's IT infrastructure, such as servers, networks, and cloud services, from security threats. They work remotely, using specialized tools to monitor systems, detect vulnerabilities, and respond to incidents. Their duties often include implementing firewalls, managing access controls, and ensuring compliance with security standards. These engineers play a crucial role in maintaining the safety and integrity of digital assets while supporting teams from any location.

How does a remote infrastructure security engineer typically collaborate with other IT teams to ensure system security?

As a Remote Infrastructure Security Engineer, collaboration with various IT teams is integral to maintaining a secure environment. You'll often work closely with network administrators, system engineers, and DevOps teams to assess vulnerabilities, implement security controls, and respond to incidents. Regular virtual meetings, shared documentation platforms, and ticketing systems are commonly used to coordinate efforts and ensure everyone is aligned on security protocols. This collaborative approach helps proactively address risks and ensures compliance with organizational security standards.

What are the key skills and qualifications needed to thrive as a remote infrastructure security engineer, and why are they important?

To thrive as a Remote Infrastructure Security Engineer, you need a solid background in cybersecurity, network architecture, and systems administration, often supported by a relevant degree and certifications like CISSP or CompTIA Security+. Familiarity with security tools such as firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM solutions, and cloud security platforms is essential. Strong analytical thinking, effective communication, and the ability to work independently are standout soft skills in this role. These skills and qualifications are crucial to proactively protect organizational infrastructure, rapidly respond to threats, and ensure secure remote operations.

What is the difference between Remote Infrastructure Security Engineer vs Network Security Engineer?

AspectRemote Infrastructure Security EngineerNetwork Security Engineer
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CCNP Security
Work EnvironmentCloud-based infrastructure, remote teamsOn-premises and cloud networks, often remote
Industry UsageTech, finance, healthcare, remote-first companiesTelecom, enterprise, government agencies
Common Search/ComparisonYesYes

The Remote Infrastructure Security Engineer focuses on securing cloud and remote infrastructure environments, while the Network Security Engineer specializes in protecting network hardware and on-premises or cloud networks. Both roles require similar certifications and often work remotely, but their primary focus areas differ, aligning with different aspects of cybersecurity infrastructure.

Can remote infrastructure security engineers work remotely?

Remote infrastructure security engineers can work remotely, as the role primarily involves managing security protocols, monitoring networks, and configuring security tools that can be accessed remotely. Many companies offer this position as a fully remote role, requiring strong knowledge of cybersecurity tools, cloud platforms, and remote collaboration skills.
More about Remote Infrastructure Security Engineer jobs

What cities are hiring for Remote Infrastructure Security Engineer jobs?

Cities with the most Remote Infrastructure Security Engineer job openings:

What states have the most Remote Infrastructure Security Engineer jobs?

States with the most job openings for Remote Infrastructure Security Engineer jobs include:

What job categories do people searching Remote Infrastructure Security Engineer jobs look for?

The top searched job categories for Remote Infrastructure Security Engineer jobs are:

Infographic showing various Remote Infrastructure Security Engineer job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 11% Part Time, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $142,133 per year, or $68.3 per hour.

Principal Security Engineer

Fanniemae

Plano, TX โ€ข Remote

Full-time

Posted 12 days ago


Job description

Playing an essential role in the U.S. economy, Fannie Mae is foundational to housing finance. Here, your expertise can help fuel purpose-driven innovation that expands access to homeownership and affordable rental housing across the country. Join Fannie Mae to grow your career and help people find a place to call home.

Job Description

Fannie Mae is seeking a highly experienced Principal Security Engineer to serve as a senior technical authority for enterprise infrastructure security. This role leads the research, architecture, design, implementation, integration, and ongoing support of security capabilities spanning cloud, network, server, endpoint, application, DevSecOps, and artificial intelligence environments.

The ideal candidate combines deep cybersecurity, cloud, infrastructure, and network expertise with hands-on full-stack engineering experience. This role will shape enterprise-scale security architecture, automate and integrate controls, review code and configurations, secure AI-enabled systems, and communicate clear recommendations to engineers, business partners, and leaders.

THE IMPACT YOU WILL MAKE

ThePrincipal Security Engineerrole will offer you the flexibility to make each day your own, while working alongside people who care so that you can deliver on the following responsibilities:

Cybersecurity Engineering and Technical Leadership

Lead the evaluation, architecture, implementation, integration, and lifecycle support of enterprise security solutions using established cybersecurity and engineering principles.

Provide principal-level technical direction for projects, products, platforms, applications, and infrastructure; identify systemic risks and drive remediation from design through operations.

Develop strategic recommendations on security technologies, architecture, implementation approaches, and long-term technical direction.

Maintain expertise in evolving technologies, vulnerabilities, attack techniques, products, and industry trends; mentor engineers and influence decisions across teams without relying on direct authority.

Promote security as an enabler of resilient technology delivery, cloud adoption, product innovation, and responsible AI.

Cloud and Infrastructure Security

Define and implement security architecture, standards, reusable patterns, guardrails, and landing-zone controls across AWS, Google Cloud, Microsoft Azure, hybrid, and multi-cloud environments.

Design identity-centric and zero-trust controls for segmentation, private connectivity, federation, encryption, key and secrets management, centralized logging, monitoring, and policy-driven governance.

Secure virtual machines, containers, Kubernetes, serverless services, APIs, databases, storage, managed services, and data-processing platforms.

Implement and operate cloud security posture, workload protection, entitlement management, configuration compliance, vulnerability management, and threat detection capabilities.

Partner with platform teams to embed security through Infrastructure as Code, reusable modules, reference architectures, architecture reviews, migrations, and cloud-native modernization.

Analyze configurations and telemetry to identify misconfigurations, excessive privilege, exposed services, policy violations, vulnerabilities, and indicators of compromise.

Server and Endpoint Security

Establish hardening standards and configuration baselines for Windows, Linux, virtualized, containerized, and cloud-hosted server environments.

Define and implement endpoint controls including EDR, anti-malware, host firewalls, encryption, application control, vulnerability management, privileged access management, and device posture validation.

Improve visibility through centralized logging, monitoring, asset inventory, configuration management, vulnerability assessment, and security telemetry.

Automate secure configuration, patching, vulnerability remediation, credential and certificate management, backup protection, recovery, remote administration, and system lifecycle processes.

Evaluate, deploy, integrate, and operate server and endpoint security technologies; analyze findings and compliance results to prioritize remediation.

Application and Artificial Intelligence Security

Lead application and AI security policies, standards, design patterns, control frameworks, and technical guardrails across traditional applications, machine-learning platforms, generative AI, and agentic systems.

Architect and review secure designs for LLMs, foundation models, RAG pipelines, AI agents, tool-using workflows, automated decision-making, and AI-enabled business processes.

Define controls for prompts, tools, agent memory, service identities, authorization, data access, autonomy limits, human approval, escalation and shutdown, observability, output validation, and content safety.

Lead threat modeling, abuse-case and misuse analysis, red teaming, security testing, and risk assessments for AI pipelines, training and inference data, vector databases, retrieval systems, plugins, APIs, and external model providers.

Security Requirements, Architecture, and Documentation

Develop and maintain security requirements, architecture artifacts, technical designs, implementation and test plans, policies, standards, procedures, control specifications, and operational documentation.

Create architecture and data-flow diagrams, threat models, control mappings, integration designs, technical specifications, and support documentation.

Translate regulatory, privacy, risk, business, and responsible AI obligations into measurable technical controls and acceptance criteria.

Validate control implementation and effectiveness before production deployment and maintain accurate documentation of architecture, dependencies, data flows, configurations, support, and recovery processes.

Define reusable reference architectures and secure design patterns for cloud, network, infrastructure, application, and AI environments.

Collaboration, Leadership, and Influence

Partner across cybersecurity, engineering, product, cloud, infrastructure, networking, operations, application development, data, privacy, compliance, legal, architecture, and responsible AI teams.

Influence product roadmaps, architecture decisions, development practices, and operating models while balancing security, privacy, compliance, cost, performance, availability, and delivery priorities.

Lead technical discussions on architecture, engineering solutions, implementation options, platform capabilities, and risk tradeoffs.

Build productive relationships with internal teams, technology vendors, managed service providers, and external support organizations; mentor senior and principal engineers and raise organizational security maturity.

Communication and Executive Engagement

Communicate complex technical concepts to engineering, operations, product, risk, compliance, business, and executive audiences.

Develop and deliver architecture presentations, technical briefings, risk assessments, implementation plans, engineering recommendations, and executive summaries.

Facilitate design reviews, architecture forums, technical evaluations, incident discussions, and stakeholder decision meetings.

Translate cybersecurity issues into business impact, risk exposure, operational considerations, tradeoffs, and actionable decisions.

Address risks such as prompt injection, indirect prompt injection, sensitive-data leakage, insecure tool use, model poisoning, excessive privileges, hallucinated actions, and unsafe autonomous behavior.

Partner with AI, product, application, data, privacy, legal, compliance, and responsible AI teams; evaluate emerging tools and standards; advise leadership on risk, regulation, investment, and roadmap priorities.

Security Requirements, Architecture, and Documentation

Develop and maintain security requirements, architecture artifacts, technical designs, implementation and test plans, policies, standards, procedures, control specifications, and operational documentation.

Create architecture and data-flow diagrams, threat models, control mappings, integration designs, technical specifications, and support documentation.

Translate regulatory, privacy, risk, business, and responsible AI obligations into measurable technical controls and acceptance criteria.

Validate control implementation and effectiveness before production deployment and maintain accurate documentation of architecture, dependencies, data flows, configurations, support, and recovery processes.

Define reusable reference architectures and secure design patterns for cloud, network, infrastructure, application, and AI environments.

Collaboration, Leadership, and Influence

Partner across cybersecurity, engineering, product, cloud, infrastructure, networking, operations, application development, data, privacy, compliance, legal, architecture, and responsible AI teams.

Influence product roadmaps, architecture decisions, development practices, and operating models while balancing security, privacy, compliance, cost, performance, availability, and delivery priorities.

Lead technical discussions on architecture, engineering solutions, implementation options, platform capabilities, and risk tradeoffs.

Build productive relationships with internal teams, technology vendors, managed service providers, and external support organizations; mentor senior and principal engineers and raise organizational security maturity.

THE EXPERIENCEYOU BRING TO THE TEAM

Minimum Required Experiences

  • 8 years of experience.
  • Extensive experience in cybersecurity engineering, infrastructure or network security, cloud engineering, application security, software engineering, or a related technical discipline.
  • Significant hands-on experience securing production environments in AWS, Google Cloud, and Microsoft Azure.
  • Deep knowledge of cloud security architecture, IAM, networking, encryption, logging, monitoring, workload protection, governance, and enterprise network security, including segmentation, firewalls, proxies, VPNs, DNS security, secure web gateways, IPS, load balancing, ZTNA, and SASE.
  • Experience securing Windows and Linux servers, endpoints, databases, containers, Kubernetes, and cloud-hosted workloads.
  • Hands-on experience designing, integrating, and securing CI/CD pipelines and implementing automated security testing, secure release controls, and policy enforcement.
  • Experience with Infrastructure as Code, including Terraform, CloudFormation, Bicep, ARM templates, or equivalent tools.
  • Full-stack engineering experience across front-end applications, back-end services, APIs, databases, cloud services, identity platforms, and supporting infrastructure.
  • Proficiency in one or more languages such as Python, Go, Java, JavaScript, TypeScript, C#, PowerShell, Bash, or Ruby; experience building integrations through APIs, automation, orchestration, and vendor-supported methods.
  • Strong knowledge of secure software development, application and API security, cloud-native development, containers and registries, Kubernetes security, and software supply chain risks.
  • Experience with SIEM, EDR, vulnerability management, network security platforms, cloud-native security services, IAM, PAM, secrets, certificates, keys, and cryptographic controls.
  • Experience developing security requirements, architecture artifacts, technical designs, implementation and test plans, policies, standards, procedures, proofs of concept, product evaluations, technical testing, data analysis, and architecture assessments.
  • Knowledge of AI security risks and experience applying threat modeling and secure design practices to modern applications, APIs, cloud platforms, or AI-enabled systems.
  • Demonstrated ability to lead complex, cross-functional technical initiatives and communicate effectively with engineers, administrators, executives, and technical decision-makers.
  • Strong analytical, problem-solving, troubleshooting, writing, presentation, and stakeholder-management skills.
  • Ability and willingness to participate in an on-call rotation and support major outages, critical service issues, and cybersecurity incidents.

Desired Experiences

  • Experience designing security controls for large-scale, regulated, highly available, geographically distributed, or global enterprise environments.
  • Experience with CSPM, CWPP, CIEM, DSPM, attack-path management, cloud-delivered security platforms, and zero-trust architecture across users, devices, networks, applications, services, and workloads.
  • Experience with AI security architecture, generative AI, LLM applications, RAG pipelines, agent frameworks, model gateways, responsible AI controls, AI red teaming, adversarial testing, model risk assessment, or abuse-case analysis.
  • Experience with threat-modeling methodologies, security architecture frameworks, penetration testing, red-team, purple-team, and adversarial simulation activities.
  • Familiarity with NIST Cybersecurity Framework, NIST 800-53, CIS Benchmarks, ISO 27001, SOC 2, PCI DSS, OWASP, MITRE ATT&CK, MITRE ATLAS, or comparable standards.
  • Professional Certifications: Relevant industry certifications such as CISSP, CCSP, PCNSE, AWS Certified Security - Specialty, AWS Certified Advanced Networking - Specialty, Google Professional Cloud Security Engineer, Microsoft Certified: Azure Security Engineer Associate, GIAC certifications, or equivalent credentials.

Information Security Technology - Engineering - Principal

200,000.00 - 269,000.00

JR2746

Qualifications

Education:

Bachelor's Level Degree (Required)

The future is what you make it to be. Discover compelling opportunities at Fanniemae.com/careers.

For most roles, employees are expected to work onsite on a regular basis at their designated office location. In-office work cadence is determined...