Full Time
T
Quick Summary
Tailscale is seeking a Security Infrastructure Engineer to enhance their product security team and contribute to building a safer internet. This role offers a unique opportunity to significantly impact the security posture of a growing company while working with cutting-edge technologies and a fully distributed team. If you are looking for a role with **RAPT** responsibility, this is the place to be!
Key Responsibilities
- Design and implement security controls across cloud platforms, operating systems, Kubernetes, networks, and CI/CD pipelines.
- Identify and implement security and privacy features, bug fixes, and defense-in-depth improvements across the Tailscale codebase.
- Audit Tailscale infrastructure for technical security weaknesses, propose mitigations, and drive them to resolution.
- Provide threat modeling, security analysis, and expertise to support engineering decisions.
Requirements
- Expertise in cloud platform security (e.g., AWS), particularly securing multi-cloud networks and infrastructure.
- Familiarity with container security, orchestration security, and authentication/authorization principles.
- Proficiency in at least one programming language (Go preferred) and Infrastructure as Code tools (e.g., Terraform, Ansible).
Benefits
- Remote work opportunity.
- Competitive compensation.
- Professional growth within a dynamic startup environment.
Required Skills
AWS
Kubernetes
WAF
TLS
PKI
DNS
Go
Terraform
Ansible
Threat Modeling
Estimated Salary Range for Security Infrastructure Engineer in
BELOW AVERAGE
< $160k/yr
✨
AVERAGE RANGE
$160k - $190k
/year
ABOVE AVERAGE
> $190k/yr
💡 Salary estimates based on aggregated data from public sources. Actual salaries may vary.
Job Description
About Tailscale
Tailscale is building the new Internet by delivering software that makes it easy to securely interconnect people and their devices, no matter where they are. From hobbyists to multinational corporations, teams of every size use Tailscale each day to protect their networks, share access to internal tools, and more. We're building a future for the Internet that's easy, sensible, and safe, like it used to be. Founded in 2019 and fully distributed, we're backed by Accel, CRV, Insight, Heavybit, and Uncork Capital.
Job Description
Weâre seeking a talented software engineer, specializing in security and infrastructure, to help grow our product security team. Weâre looking for people who can move Tailscale forward while making it safer to use. The abilities to think on your feet, collaborate with highly technical teams, and be comfortable working asynchronously are essential.
Key Responsibilities
Design and build security controls across diverse layers (e.g., cloud platforms, OS, Kubernetes, networks, CI/CD) to defend against sophisticated adversaries and insider threats.
Improve the security properties of Tailscale by identifying opportunities for security and privacy features, bug fixes, defense-in-depth, and implementing them across our codebase.
Audit Tailscale infrastructure for technical security weaknesses, identifying mitigations or solutions, and driving them towards resolution.
Support engineering decisions with threat modeling and security analysis and expertise.
You will spend 25-50% of your time in this role writing software vs purely operational or governance security responsibilities.
What We Are Looking For
Technical
Expertise in the security of cloud platforms (e.g., AWS), especially securing multi-cloud networks and infrastructure, and designing cloud agnostic systems
Familiarity with container security, orchestration security, and authentication/authorization
Familiarity with internet/web security fundamentals: WAFâs, TLS, PKI, DNS security, etc.
Proficiency developing in at least one programming language (Tailscale uses Go) and Infrastructure as Code tooling (e.g. Terraform, Ansible)
Prior experience in a safety-related technical role, e.g.:
infrastructure security
security operations
threat modeling and prioritization
digital forensics and incident response
Knowledge of operating system internals and security mechanisms
Knowledge of common networking protocols
Act as a Subject Matter Expert during security incidents, focusing on infrastructure-level containment and remediation
Team Fit
Ability to give and process constructive feedback
Ability to work independently and collaboratively
Flexibility to adjust to the dynamic nature of a startup
Take a risk-based approach to building security controls, balancing
Please mention the word **RAPT** and tag RMmEwMjo0NzgwOmI6MTA0MDowOjJjMjE6NWNjMTox when applying to show you read the job post completely (#RMmEwMjo0NzgwOmI6MTA0MDowOjJjMjE6NWNjMTox). This is a beta feature to avoid spam applicants. Companies can search these words to find applicants that read this and see they're human.