Jobs Companies Figure Security Engineer - Infrastructure Security

À propos de ce poste Security Engineer - Infrastructure Security chez Figure

Figure · Sur site · San Jose, CA

Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It’s time to build.

We're looking for an Infrastructure Security Engineer to join the Security & Privacy team at Figure, focused on designing, implementing, and managing the security controls and frameworks that protect the company's backend services and infrastructure. This includes building strong foundations that let employees move quickly and safely: secure defaults, paved paths, and self-service guardrails.

We are an engineering team. Controls ship as code, changes are versioned and reviewed, and posture is measured rather than asserted. This is a senior, hands-on individual contributor role. Nobody arrives deep in all of it; we want real depth in one of endpoint engineering, identity and access, or application access design, working knowledge of the rest, and room to build depth here. This space is still being built out, so you'll also have latitude to shape the roadmap toward the work you find most interesting.

Responsibilities:

Partner across teams

  • Work with the DevOps and Infrastructure teams to securely roll out AI tooling across our infrastructure, securing the deployment path, service-to-service communication, and the network boundaries around these workloads.
  • Partner with the Networking team on data-center and cloud network security: NSGs, segmentation, VPC structure, private connectivity, and egress policy.
  • Enable the Detection & Response team by making every environment produce the telemetry they need, and provide environment access and context during incidents.

Authentication / Authorization

  • Own multi-cloud authentication and authorization: centralized SSO for human identities, workload identity and federated credentials for machine identities, and consistent, least-privilege access policy across cloud providers.
  • Extend that identity model to on-prem and neocloud environments, including hardware-rooted machine identity so all our infrastructure inherits the same authN/authZ guarantees as our cloud backends.
  • Drive the move away from long-lived reusable credentials toward sealed, short-lived, workload-scoped authentication, and build just-in-time, time-bound elevated access.

Visibility

  • Measure posture: build the tooling and pipelines for asset and identity inventory, configuration drift detection, and coverage metrics across cloud, on-prem, and neocloud environments.
  • Turn misconfiguration and vulnerability findings into tracked, closed-loop remediation across every environment class.

Networking

  • Advance our zero-trust networking model as the universal access layer: identity-aware, posture-gated access to internal services with no public IPs and no cross-environment traffic outside the overlay.
  • Design and enforce egress controls so workloads can't make arbitrary outbound calls.
  • Define the secure-by-default networking patterns other teams build on top of, so segmentation and access rules are versioned, reviewed, and auditable rather than hand-configured.

Requirements:

  • Experience and security knowledge of one or more domains and technologies: Kubernetes, containers, service mesh, networking, operating system internals, authentication/authorization protocols, and cloud security tools.
  • Experience developing and deploying services in multi-cloud environments, preferably familiar with a multi-cloud infrastructure spanning at least two of the three: Azure, AWS, or Google Cloud Platform.
  • 6+ years of security / software development experience.
  • Strong software engineering skills (not scripting or automation) skills in C/C++, Rust, Golang, Python or similar.
  • Passion for learning and helping others.
  • Excellent verbal and written communication skills, with high attention to detail.
  • BS/BA in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field

Bonus Qualifications:

  • Familiarity with zero-trust networking, posture-based access control, and egress/segmentation design.
  • Hands-on with workload identity / federated credentials, and secrets management.
  • Experience with delivering security controls as reviewed, versioned code.
  • Familiarity with securing AI/ML tool usage across infrastructure.
  • Track record of building self-service security tooling and paved paths that scale to a fast-moving engineering org.
  • Experience securing on-prem or neocloud alongside public cloud.

The US base salary range for this full-time position is between $150,000 - $250,000 annually.

The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.



Prêt à postuler chez Figure ?
Postuler chez Figure

Comment se compare ce salaire pour Security Engineer

Ce poste paie $200,000/yren dessous de la fourchette habituelle pour les postes Security Engineer.

$200,000 la médiane $225,000 $278,000

Fourchette typique $202,750–$250,000/yr, à partir de 11 annonces Security Engineer comparables sur JobsRadar (rémunération annualisée en USD). Voir les aperçus de salaire pour Security Engineer →

Emplois similaires

Figure
Security Engineer, Enterprise Security
Figure
⚡ Postuler tôt San Jose, CA Sur site $150,000–$250,000
● Nouveau 👁 Vu ✓ Postulé il y a 12 h
MS
Senior Network Security Engineer
Muon Space
⚡ Postuler tôt San Jose, CA Sur site $193,000–$218,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
MS
Senior FPGA Engineer, Networking & Security
Muon Space
⚡ Postuler tôt San Jose, CA Hybride $213,000–$237,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
MS
Senior Security Engineer
Muon Space
⚡ Postuler tôt San Jose, CA Hybride $193,000–$218,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Veeam Software
Staff AI Security Engineer
Veeam Software
⚡ Postuler tôt San Jose, CA, USA Sur site $293,100–$544,200
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
Veeam Software
Security Engineer III
Veeam Software
⚡ Postuler tôt San Jose, CA, USA Sur site $208,500–$347,500
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
Zoom
Security DevOps Engineer
Zoom
⚡ Postuler tôt San Jose (CA) Sur site $186,000–$186,000
● Nouveau 👁 Vu ✓ Postulé il y a 3 sem.
Capital One
Lead Software Engineer, Full Stack, Endpoint Security
Capital One
⚡ Postuler tôt McLean, VA Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 4 sem.
Figure
Security Engineer, Application Security
Figure
⚡ Postuler tôt San Jose, CA Sur site $150,000–$350,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 mois

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Figure

Voir tous les emplois chez Figure →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit