Matter Labs
Senior Infrastructure Security Engineer
Global RemoteFull-timeGlobal
š Midš Remote
RemoteRemote work position availableActivePosted within the last 30 days
Job Description
[AI-summarized by JobStash]
You will secure the infrastructure that powers zkSync across cloud, application, and systems layers. You will design and harden cloud environments, containers, and CI/CD pipelines, and implement Infrastructure as Code securely. You will build detection and monitoring systems (for example SIEM and alerting pipelines), run threat modeling and architecture reviews, perform hands-on vulnerability remediation and incident response, and collaborate closely with DevOps, engineering, and protocol security. Optionally, you may help design on-chain infrastructure anomaly detection based on on-chain signals.
Requirements
- āHands-on experience securing cloud-native environments (AWS, GCP), Kubernetes, CI/CD pipelines, and internal systems
- āPractical knowledge of threat modeling, incident response, vulnerability management, and systems architecture
- āFamiliarity with Infrastructure as Code (Terraform, etc.), secrets management, and security automation tooling
- āAbility to drive security work to delivery and operate with a bias for action
- āStrong communication skills to translate security concepts to technical and non-technical stakeholders
- āWeb3 awareness and familiarity with decentralized infrastructure (Ethereum, Solidity, ZK) is a plus
Responsibilities
- āDesign and implement secure infrastructure, hardening cloud environments, containers, and CI/CD pipelines
- āBuild detection and monitoring systems such as SIEM and alerting pipelines
- āIdentify security risks during architecture reviews, system upgrades, and deployment plans
- āDesign and review Infrastructure as Code (Terraform, Ansible) for security
- āParticipate in threat modeling, internal audits, and hands-on vulnerability remediation
- āCollaborate with Protocol Security, DevOps, and Product Engineering to align security goals
- āImplement on-chain infrastructure anomaly detection (optional)
Benefits & Perks
- āCompetitive compensation, equity, and token package
- āPremium health, dental, and vision coverage
- ā16 weeks paid parental leave
- āFlexible paid time off plus company-wide closure weeks
- ā$2,000 equipment stipend
- ā$300 monthly co-working allowance
Tech Stack
IaCcloudvulnerability managementon-chain anomaly detectionSIEMSecrets managementKubernetesincident responseZKsystem architecture