Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.
The world has fundamentally changed. We are growing from 400 employees into the next phase of our journey, and we need passionate talent filled with empathy and agility. The right candidate for the job is ethical, hyper-organized, fanatical about seeing things through to completion, service-oriented, and humble enough to take feedback and coaching yet confident enough to provide feedback and coaching.
Menlo is well-funded for growth and our investors are second to none. They include Vista Equity Partners (“Vista”), General Catalyst, JPMC, American Express, HSBC, and Ericsson Ventures.
About the Role
Infrastructure Engineering is responsible for building and operating Menlo Security's Infrastructure Platform. Together, we enable our customers to connect to the Internet without compromise. Our environment provides services globally. We expect failure, build security in by design, create evolvable systems, and enable multi-tenancy across the infrastructure. Automation is an absolute for us.
We are committed to getting it done properly, the first time.
As a Platform Infrastructure Engineer, you'll join a group of experienced engineers located in the North America region who are part of a globally distributed team responsible for managing the company's core infrastructure services and maintaining our constantly growing platform. The team operates a sophisticated cloud-native infrastructure built on Google Kubernetes Engine (GKE) with 15+ clusters spanning multiple environments from development to production. We leverage GitOps practices with Flux CD, manage infrastructure as code with Terraform and Spacelift orchestration, and deploy services using Helm charts. Our platform emphasizes security-first design with OPA/Gatekeeper policy enforcement, comprehensive observability with Grafana Cloud, and multi-region resilience. Success in this role requires deep Kubernetes expertise, strong Infrastructure as Code skills, experience with cloud platforms (primarily GCP), and a passion for automation and reliability engineering.
Responsibilities
Design, deploy, and maintain Kubernetes infrastructure on Google Kubernetes Engine (GKE) across dozens of clusters spanning development, staging, and production environments in multiple regions.
Build and maintain Infrastructure as Code (IaC) using Terraform modules, managing resources through Spacelift or equivalent Terraform Automation and Collaboration Software (TACOS). Provision cloud infrastructure including networking, compute, storage, and security components primarily on GCP, with secondary AWS support.
Implement and manage GitOps workflows with sophisticated multi-layer configuration management using Flux CD. Deploy and maintain applications using Helm charts, managing dependencies, versioning, and phased rollouts across environments.
Develop and enforce security policies using OPA/Gatekeeper to meet compliance frameworks. Manage secrets, configure Workload Identity, and implement network policies.
Build and maintain comprehensive observability solutions using Grafana Cloud, Prometheus/Mimir, and Alloy collectors. Design Grafana dashboards, configure alerting rules, and ensure visibility across all platform components.
Manage certificate lifecycle, DNS automation, ingress controllers, and service mesh networking with Cilium.
Partner with Engineering, Product, Compliance, and Security teams to design resilient, scalable systems. Consult on capacity planning, disaster recovery, and architectural decisions for cloud-native applications.
Identify and eliminate toil through automation. Write scripts, develop tools, and build CI/CD pipelines to improve operational efficiency and reduce manual work.
Participate in a 24x7 on-call rotation as part of a globally distributed team, responding to incidents and driving post-incident reviews.
Requirements
Bachelor's degree in Computer Science, similar technical field of study, or equivalent practical experience.
Experience operating Kubernetes-based platform in production environments.
Experience with Google Kubernetes Engine (GKE) on Autopilot and Standard modes, Workload Identity, and GKE Fleet management, or similar experience with other Cloud Service Providers.
Strong Kubernetes expertise including cluster administration, RBAC, networking, workload management, and troubleshooting across production environments.
Proven experience with Terraform for infrastructure provisioning and management.
Proficiency with Helm for packaging and deploying Kubernetes applications. Experience developing and maintaining Helm charts, managing chart repositories, and complex values configurations.
Knowledge of Google Cloud Platform services including GKE, VPC networking, Cloud DNS, Artifact Registry, Secret Manager, IAM, and Workload Identity.
Experience with GitOps methodologies and tools, particularly Flux CD. Understanding of Kustomize, HelmRelease patterns, dependency management, and multi-environment configuration strategies.
Perks and Benefits
Healthcare: health plans focused on providing the utmost care to you and your family.
Equity: competitive stock options for all new hires.
Excellent PTO: work hard, but rest hard too! Take the time off you need for family, vacations, and yourself! We observe holidays – no matter where you’re located – throughout the year.
Wellbeing: resources for meditation, physical exercise, and an enhanced Employee Assistance Program. We encourage all employees to take at least one day off every month to disconnect and recharge.
Flexible Remote Work: Menlovians have the ability to work from any location outside of the traditional office setting.
Why Menlo?
Our culture is collaborative, inclusive, and fun! We have five core values: Stay Aligned, Get It Done, Customer Empathy, Think Creatively and Help Each Other Out. We believe in open communication, supporting new ideas, and sharing a mutual mindset of what we’re aiming to achieve together. There are tremendous opportunities to take initiative, implement new ideas, and have a hand in building a legacy.
All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.
TO ALL AGENCIES: Please, no phone calls or emails to any employee of Menlo Security outside of the Talent organization. Menlo Security’s policy is to only accept resumes from agencies via Ashby (ATS). Agencies must have a valid services agreement executed and must have been assigned by the Talent team to a specific requisition. Any resume submitted outside of this process will be deemed the sole property of Menlo Security. In the event a candidate submitted outside of this policy is hired, no fee or payment will be paid.
Sponsored
Explore Engineering
Skills in this job
People also search for
Similar Jobs
Senior Platform Engineer (Infrastructure)
Fresha
Senior Platform Engineer (Infrastructure)
Fresha
Infrastructure Engineer, Data Platform
Together AI
Senior Infrastructure Engineer, Platform
Glia
Senior Infrastructure Engineer, Platform
Glia
More jobs at Menlosecurity
Similar Jobs
Senior Platform Engineer (Infrastructure)
Fresha
Senior Platform Engineer (Infrastructure)
Fresha
Infrastructure Engineer, Data Platform
Together AI
Senior Infrastructure Engineer, Platform
Glia
Senior Infrastructure Engineer, Platform
Glia