Security Engineer, Cloud Infrastructure
AI summary of the role
Own cloud and infrastructure security end-to-end at a profitable Series C AI marketplace valued at $10B.
What you’ll do
- Architect multi-account AWS tenant isolation with dedicated accounts, SCPs, network boundaries, and data segregation for enterprise clients
- Deploy and operate cloud security posture management using Wiz CSPM for continuous monitoring and automated remediation
- Harden Kubernetes security with pod security standards, network policies, secrets management, and runtime protection
- Build infrastructure-as-code security guardrails (Terraform/CloudFormation) to prevent insecure deployments
What you’ll bring
- Deep AWS security expertise with multi-account strategies, SCPs, and hardened production environments
- Production Kubernetes security experience securing real clusters and workloads
- Strong infrastructure-as-code skills (Terraform, CloudFormation, or Pulumi)
- Experience with CSPM/CNAPP platforms (Wiz, Prisma Cloud, or similar)
Technologies
AWS · Kubernetes · Terraform · CloudFormation · Wiz · Prisma Cloud · Snowflake · Falco · SentinelOne · Pulumi
About Mercor
Marketplace matching domain experts (doctors, lawyers, scientists, engineers) with AI labs to generate post-training data, evaluations, and reinforcement learning signal.
Series C
Source and classification
Internal deployment & tooling · Evidence for this classification:
valued at $10 billion. We work in-person five days a week in our San Francisco, NYC, or London offices. You'll own cloud and infrastructure security at a company where tenant isolation is a critical enterprise requirement. Mercor's customers - including frontier AI labs - need hard guarantees that their data stays within strict boundaries. This is not a compliance checkbox role. You'll architect multi-account AWS isolation, harden Kubernetes clusters, deploy cloud security posture management, and build the infrastructure that lets Mercor serve enterprise clients who demand the highest security bar. We use AI heavily in our own security work. You should be comfortable building alongside AI code-gen tools, using LLMs to accelerate infrastructure review and policy authoring, and automating away the repetitive work that slows infrastructure security down. If you'd rather write a Terraform
More from the job description
About Mercor Mercor's mission is to organize human intelligence to power the AI economy. We're a leading AI data company, building the layer between human expertise and frontier models. Millions of domain experts on the platform are paid over $4 million per day to train frontier AI models. Mercor's APEX benchmark family measures AI's real-world impact on professional work. Mercor Enterprise brings this same infrastructure to Fortune 500 companies: helping companies capture how their best people actually work, translating that expertise directly back into agents. Mercor is creating a new category of work where expertise powers AI advancement. Achieving this requires an ambitious, fast-paced and deeply committed team. You’ll work alongside researchers, operators, and AI companies at the forefront of shaping the systems that are redefining society. Mercor is a profitable Series C company valued at $10 billion. We work in-person five days a week in our San Francisco, NYC, or London offices. You'll own cloud and infrastructure security at a company where tenant isolation is a critical enterprise requirement. Mercor's customers - including frontier AI labs - need hard guarantees that their data stays within strict boundaries. This is not a compliance checkbox role. You'll architect multi-account AWS isolation, harden Kubernetes clusters, deploy cloud security posture management, a [... source excerpt omitted ...] review and policy authoring, and automating away the repetitive work that slows infrastructure security down. If you'd rather write a Terraform module than fill out a spreadsheet, you'll fit in here. We're in-person five days a week at our SF headquarters, with first Fridays remote. What You'll Build: Multi-account AWS tenant isolation architecture - dedicated accounts, SCPs, network boundaries, and data segregation for enterprise clients Cloud security posture management using Wiz CSPM - continuous monitoring, misconfiguration detection, and automated remediation Kubernetes security hardening - pod security standards, network policies, secrets management, and runtime prot [... source excerpt omitted ...] es, forensic readiness, and blast radius containment What We're Looking For Deep AWS security expertise - you've architected multi-account strategies, written SCPs, and hardened production environments Experience with Kubernetes security in production - not just tutorials, you've secured real clusters running real workloads Strong infrastructure-as-code skills - Terraform, CloudFormation, or Pulumi - you think in code, not console clicks Experience with CSPM/CNAPP platforms (Wiz, Prisma Cloud, or similar) - deploying, tuning, and driving remediation Understanding of network security at the cloud level - VPCs, security groups, transit gateways, PrivateLink You've designed ten
Employer postings · Data from · Sources