Staff Engineer, Infrastructure Security

3 days ago


Redwood City, CA, United States Poshmark Full time

Confidence can sometimes hold us back from applying for a job. Here's a secret: there's no such thing as a "perfect" candidate. Poshmark is looking for exceptional people who want to make a positive impact through their work and help create an organization where everyone can thrive. So whatever background you bring with you, please apply if this role would make you excited to come to work every day.

Job Description:

The security team at Poshmark is responsible for securing our application platform, cloud infrastructure, and IT systems to protect Poshmark and its 150 million Poshers. This role is for a Staff Cloud/Infrastructure Security Engineer responsible for designing, implementing, and maintaining secure AWS cloud and corporate IT infrastructure, ensuring alignment with industry best practices and CIS benchmarks. The position involves hardening systems, developing security architectures and policies, managing vulnerabilities, and enforcing least-privilege IAM controls across the enterprise.

Responsibilities:

  • Develop bot and fraud attack detection and mitigation strategies.
  • Design, implement and maintain secure AWS architecture aligned with industry standards, security best practices and CIS benchmarks.
  • Harden corporate IT and SaaS applications (Okta, CrowdStrike, Jamf, etc.) through security best practices and layered defense.
  • Develop and maintain cloud and infrastructure security reference architectures, and policies.
  • Continuously assess and manage vulnerabilities across cloud, infrastructure, and endpoint systems.
  • Conduct regular security gap analyses, security reviews, risk assessments, and drive remediation with system owners.
  • Integrate infrastructure security into CI/CD pipelines and change management processes.
  • Architect and enforce cloud and enterprise IAM controls with Okta and AWS IAM, focusing on least privilege, SSO, and federation.
  • Strengthen endpoint and server protection through configuration management and continuous monitoring.
  • Partner with Engineering, DevOps, SRE, IT, and Compliance teams to ensure security requirements are embedded throughout the infrastructure lifecycle.
  • Help with incident response activities across AWS and corporate environments including detection, investigation, containment, eradication, and recovery.
  • Mentor junior engineers and contribute to a culture of proactive, engineering-driven security.
6-Month Accomplishments:
  • Get a thorough understanding of Postmark's cloud and IT infrastructure.
  • Establish relationships with stakeholders in DevOPs, SRE, IT teams.
  • Drive existing projects to meaningful completion.
  • Partner with the SOC team to understand bot attacks and existing mitigations in place.
12+ Month Accomplishments:
  • Develop a comprehensive roadmap for infrastructure security.
  • Architect scalable least privilege cloud infrastructure.
  • Automate cloud security with secure by design principals.
Requirements:
  • 8+ years of professional experience in Security Engineering, with at least 5+ years focused on AWS Cloud Security or any other public cloud.
  • Demonstrated experience in Enterprise Security technologies (e.g., Okta, CrowdStrike, JAMF, SSO, and related tools).
  • Strong hands-on experience with AWS security services: IAM, WAF, Advanced Shield, GuardDuty, CloudTrail, Macie, Config, Organizations, and Network Firewall, DNS Firewall etc
  • Solid understanding of bot activity, network security, segmentation, and zero-trust principles.
  • Familiarity with security frameworks and standards (CIS, NIST, ISO 27001, OWASP).
  • Excellent written and verbal communication skills. Ability to work cross-functionally and influence without authority.
  • Strong sense of ownership, accountability, and continuous improvement mindset.
  • Preferred Certifications: AWS Certified Security - Specialty, Certified Cloud Security Professional (CCSP) or similar.
  • Bonus: Experience building and deploying security controls and detection mechanisms as code using Terraform, Python, or similar automation frameworks.

Salary Range:
$155,900.00 - $261,100.00 Annual

Poshmark is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

View Poshmark's Job Applicant Privacy Policy here.

  • Redwood City, CA, United States Box Full time

    WHAT IS BOX? Box (NYSE:BOX) is the leader in Intelligent Content Management. Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform business workflows with enterprise AI. We help companies thrive in the new AI-first era of business. Founded in 2005, Box simplifies work for...


  • Redwood City, CA, United States Box Full time

    WHAT IS BOX? Box (NYSE:BOX) is the leader in Intelligent Content Management. Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform business workflows with enterprise AI. We help companies thrive in the new AI-first era of business. Founded in 2005, Box simplifies work for...


  • Redwood City, CA, United States Box Full time

    WHAT IS BOX? Box (NYSE:BOX) is the leader in Intelligent Content Management. Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform business workflows with enterprise AI. We help companies thrive in the new AI-first era of business. Founded in 2005, Box simplifies work for...


  • Redwood City, CA, United States Box Full time

    WHAT IS BOX? Box (NYSE:BOX) is the leader in Intelligent Content Management. Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform business workflows with enterprise AI. We help companies thrive in the new AI-first era of business. Founded in 2005, Box simplifies work for...


  • Redwood City, CA, United States Celonis GmbH Full time

    We're Celonis, the global leader in Process Intelligence technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing AI, data and intelligence at the core of business processes - and for that, we need your help. Care to join us? The Team: Come join us on the ground floor on a team...


  • Redwood City, CA, United States Celonis GmbH Full time

    We're Celonis, the global leader in Process Intelligence technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing AI, data and intelligence at the core of business processes - and for that, we need your help. Care to join us? The Team: Come join us on the ground floor on a team...


  • Redwood City, CA, United States Chan Zuckerberg Initiative Full time

    The Chan Zuckerberg Initiative was founded in 2015 by Priscilla Chan and Mark Zuckerberg to help solve some of society's toughest challenges - from curing or preventing disease to improving education and addressing the needs of our local communities. We provide the operational support across our areas of work. The Team Across our work in Science, Education,...


  • Redwood City, CA, United States Stanford University Full time

    Build and maintain scalable, highly available, and resilient systems in the cloud and on-prem. Implement any new cloud functionality or migrate existing processes to the cloud and maintain them. Build and deploy systems utilizing Continuous Integration/Continuous Delivery framework and infrastructure automation. This is a hybrid-eligible position. Core...


  • Redwood City, CA, United States Stanford University Full time

    Build and maintain scalable, highly available, and resilient systems in the cloud and on-prem. Implement any new cloud functionality or migrate existing processes to the cloud and maintain them. Build and deploy systems utilizing Continuous Integration/Continuous Delivery framework and infrastructure automation. This is a hybrid-eligible position. Core...


  • Redwood City, CA, United States Stanford University Full time

    Build and maintain scalable, highly available, and resilient systems in the cloud and on-prem. Implement any new cloud functionality or migrate existing processes to the cloud and maintain them. Build and deploy systems utilizing Continuous Integration/Continuous Delivery framework and infrastructure automation. This is a hybrid-eligible position. Core...