Summary
MongoDB builds cloud-native data platforms, including MongoDB Atlas, and its Infrastructure Security team develops security infrastructure and reusable controls that protect the platform across major cloud providers. The Software Engineer will secure hosts, containers, and multi-cloud infrastructure; build automated security services and monitoring systems; and lead security initiatives from threat modeling through reliable production operation.
Responsibilities
- Harden hosts and containerized workloads using Linux security mechanisms (AppArmor, SELinux, seccomp, cgroups) and eBPF-based tooling (Cilium, Tetragon)
- Secure containerized infrastructure across multi-cloud environments via RBAC, network policies, admission controls (Gatekeeper), and runtime threat detection
- Build and manage automated services for Cloud Security Posture Management (CSPM), workload identity, vulnerability management, and access controls across AWS, Azure, and GCP
- Write production-quality code and leverage Infrastructure-as-Code (Terraform) to version, test, and deploy security controls as code
- Build real-time security monitoring, logging, and alerting systems to detect anomalies and track security posture at Atlas scale
- Lead initiatives across their full lifecycle; from threat modeling and architectural design to implementation, rollout, and long-term production reliability
Skills
- * Mid-level: 3+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Senior: 5+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Staff: 10+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Strong coding skills in Go (Golang), Python, C, C++, or Rust
- * Proven track record of building and operating large-scale distributed systems or cloud platform infrastructure
- * Hands-on experience using Terraform, CloudFormation, or Ansible for automated infrastructure provisioning
- * Demonstrated experience owning infrastructure in Linux, Kubernetes, and at least one major cloud provider (AWS, GCP, or Azure)
- * Practical experience with eBPF-based security tooling (Cilium, Falco, Tetragon)
- * Direct ownership of Cloud Security and Workload Identity platforms
- * Multi-cloud expertise spanning AWS, Azure, and GCP
- * Production exposure to low-level Linux security mechanisms (seccomp, AppArmor, SELinux, cgroups)
Qualifications
Must Haves
- * Mid-level: 3+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Senior: 5+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Staff: 10+ years in SRE, Infrastructure Engineering, or Cloud Security Engineering
- * Strong coding skills in Go (Golang), Python, C, C++, or Rust
- * Proven track record of building and operating large-scale distributed systems or cloud platform infrastructure
- * Hands-on experience using Terraform, CloudFormation, or Ansible for automated infrastructure provisioning
- * Demonstrated experience owning infrastructure in Linux, Kubernetes, and at least one major cloud provider (AWS, GCP, or Azure)
Nice to Haves
- * Practical experience with eBPF-based security tooling (Cilium, Falco, Tetragon)
- * Direct ownership of Cloud Security and Workload Identity platforms
- * Multi-cloud expertise spanning AWS, Azure, and GCP
- * Production exposure to low-level Linux security mechanisms (seccomp, AppArmor, SELinux, cgroups)
Benefits
- Senior / Staff Level: US Remote (Eastern & Central Timezones)
- Mid-Level: Hybrid (In-Office 3 days/week) in New York City.
- Equity
- Participation in the employee stock purchase program
- Flexible paid time off
- 20 weeks fully-paid gender-neutral parental leave
- Fertility and adoption assistance
- 401(k) plan
- Mental health counseling
- Access to transgender-inclusive health insurance coverage
- Health benefits offerings
- Employee affinity groups
- Fertility assistance
- A generous parental leave policy