Infrastructure & Security Engineer
Duna
NEW
Seniority
Senior
Model
Remote
Sector
Salary
Undisclosed
Contract
Full-Time
```html
About the role
Own and harden Duna's platform infrastructure. You'll work across AWS, Kubernetes, Postgres, infrastructure as code, CI/CD, observability and incident response, making security the default and turning operational toil into self-service systems that engineers adopt.
What you'll do
- Own and harden our platform: AWS, Kubernetes, Postgres, infrastructure as code, CI/CD, observability and incident response
- Make security the default, with least privilege, secrets management and tenant isolation built into the platform instead of bolted on later
- Turn our SOC 2 and ISO 27001 commitments into controls and evidence that are automated, not a yearly scramble
- Turn recurring operational toil into self-service systems that engineers actually adopt, from preview environments to internal access
- Help Duna run AI agents in engineering safely, with the sandboxes, guardrails and human checkpoints that make it possible
- Take calm ownership of incidents, and make sure the system gets better afterwards, not just the moment
What you'll need
- Deep, hands-on experience with AWS (or comparable), Kubernetes, infrastructure as code, CI/CD and observability
- Real security engineering skills: you turn least privilege and auditability requirements into working systems
- Comfort with the enterprise IT side of a startup, from certifications and customer security reviews to identity and device management
- High agency in ambiguity, turning a vague problem into a shipped plan
- Pragmatic judgement about when to harden, when to simplify and when to leave something alone
- Curiosity about what AI changes in how we build and run software

