Security and Infrastructure Engineer securing Nexxa’s AI systems for heavy industries. Owning cloud infrastructure, security operations, and SOC 2/ISO 27001 compliance.
Responsibilities
Own the compliance calendar across SOC 2 Type 2 and ISO 27001, including evidence collection, access and vendor reviews, control monitoring, internal audit, management review, policy refresh, and audit readiness
Triage security findings across cloud posture, code scanning, dependencies, and secrets, and drive remediation to closure
Remediate findings directly in infrastructure as code, IAM policy, and pipeline configuration
Administer identity and access across cloud and SaaS, including SSO/federation, least-privilege roles, and the joiner/mover/leaver lifecycle
Support internal IT operations, including endpoint fleet and device compliance, SaaS and license administration, asset inventory, and support requests
Serve as the working interface to external auditors, the certification body, and customer security and procurement reviews
Build controls into infrastructure using automatically enforced guardrails that fail closed
Harden CI/CD and the software supply chain, including build identity, artifact provenance, dependency hygiene, and secret hygiene
Debug production issues across cloud infrastructure, containers, and networking
Write postmortems and produce runbooks, control narratives, architecture notes, and other operational documentation
Requirements
Professional experience in security engineering, infrastructure/platform engineering, or a closely related technical role
Broad competence across security, networking, and operating systems, with real depth in at least one
Deep hands-on experience with security fundamentals, including trust boundaries, blast radius, authentication, authorization, least privilege, secrets handling, and exploitability assessment
Networking experience with routing, firewalls/security groups, DNS, TLS termination, proxies, VPN/private connectivity, and packet captures
Linux operating systems experience with processes, filesystems, permissions, systemd, resource limits, log analysis, and container-host relationships
Hands-on AWS or GCP cloud infrastructure experience beyond the console, including IAM, networking, compute, and failure modes
Strong scripting/automation skills in Python, Bash, Go, or similar
Strong writing ability for control narratives, runbooks, postmortems, audit responses, and risk assessments
Proven judgment under ambiguity
CS/CE degree or equivalent hands-on experience
Hands-on ISO 27001 experience preferred
SOC 2 experience preferred
Exposure to AI governance or ISO 42001 preferred
Infrastructure as code experience, especially Pulumi or Terraform, preferred
Senior infrastructure engineer building scalable AWS platforms for Kindred’s members - only home - swapping service. Leading DevOps, automation, architecture, and developer productivity initiatives.
Principal AI infrastructure engineer building secure, scalable agentic AI platforms for global investment firm Invesco. Developing Terraform modules, automation, observability, and governance capabilities for enterprise application teams.
Lead Infrastructure Architect needed for 6 - month contract in Toronto. Requires experience in infrastructure/cloud architecture, platform engineering, and regulatory board.
Security Engineer building automated security primitives for NVIDIA DGX Cloud’s AI supercomputing infrastructure. Securing GPU clusters, tenant boundaries, cloud platforms, and on - premise systems.
Staff Infrastructure Engineer building reliable, scalable cloud services for Webflow’s agentic web marketing platform. Modernizing infrastructure with AWS, Kubernetes, Cloudflare, and Pulumi.
Senior Software Engineer building scalable Python and AWS infrastructure for d1g1t’s institutional wealth management platform. Driving implementation, deployment, troubleshooting, and large - dataset performance.
Senior Platform Engineer building resilient Go and Kubernetes platforms for Virtasant’s cloud - native products. Owning reliability, infrastructure as code, observability, and developer delivery tools.
Sr. Engineer position focusing on vulnerability remediation and cyber security for Genpact in Canada. Collaborating with teams and leading the cyber security team to meet business objectives.