partly.com - Platform Security Engineer
Requirements
• (Preferred) 5+ years in security engineering, platform engineering, or SRE with strong security focus. You've done this before and can hit the ground running with minimal hand-holding. • (Preferred) Hands-on Kubernetes security experience. You understand RBAC, network policies, and admission controllers. You've implemented security controls in production K8s environments. • Compliance framework experience. You've worked with at least one of ISO 27001, SOC 2, or PCI-DSS. You understand the difference between checkbox compliance and actually being secure. • Cloud security expertise. Strong understanding of cloud security principles. GCP experience preferred. You know how to secure cloud infrastructure. • Infrastructure-as-code practitioner. Experience with Terraform, ArgoCD, GitOps workflows. You believe infrastructure changes should go through code review. • Clear communicator. Ability to communicate security risk to non-technical stakeholders. You can translate technical vulnerabilities into business risk. • (Bonus) CNCF security tooling experience. Cilium, Kyverno, Falco, or similar tools. Container security and supply chain security (SBOM, image signing). • (Bonus) Rust or Go experience. Our backend languages - helpful for understanding the systems you're securing and reviewing security-sensitive code. • Please note: if you don't have all the skills/experience listed above but believe you could be outstanding in this role, please still consider applying. Many folks, especially those from underrepresented or marginalised groups, often count themselves out. Please allow us to learn more about you and why you're exceptional!
Responsibilities
• Own Partly's security posture and compliance. Prepare for and pass security audits such as ISO 27001 and SOC 2 certifications through Vanta platform maintenance. Respond to enterprise customer questionnas, maintain the risk register communicating it to engineering and leadership teams. • Own Partly's infrastructure hardening by implementing principle of least privilege across stack components like PostgreSQL roles for applications and Kubernetes RBAC refinement ensuring application only gets necessary secrets. Maintain continuous compliance via Vanta platform maintenance, responding to security questionnaires from enterprise customers. • Participate in on-call rotation alongside the SRE team during "Season Openers". Own security incident response planning and testing including leading post-incident reviews for both availability incidents as well as those related to security. Build event monitoring and alerting systems specifically tailored towards identifying potential threats or breaches in real time. • Work closely with the SRE team, building processes from scratch while ensuring platform reliability is maintained alongside infrastructure hardening efforts for Partly's digital solutions globally integrated across hundreds of companies worldwide.
Benefits
• Healthy, Catered Lunches - Enjoy fresh, healthy lunches every workday in our Auckland, Christchurch, London and San Francisco offices. With no meal prep needed, you can eat, connect, and refuel with your team. (And yes, snacks and drinks are always on hand.) • Healthy Body, Healthy Mind - We care about performing at our peak. Every team member gets a $1,500 annual wellness allowance (or local equivalent) on a Partly-branded card. Use it on things such gym memberships, rock climbing, physio, massage, GP visits, prescriptions; anything that you or your family, need! • Family Comes First - Primary caregivers receive 3 months of fully paid parental leave, plus a flexible return-to-work (four days on full pay for your first three months back). • Getting Here Is On Us - If you commute to a Partly office or co-working space, choose from a paid 24/7 car park or commute allowance. One less thing to think about! • Workspaces That Inspire - Our brand new, architecturally designed offices are built for collaboration and creativity, with great coffee, social spaces, and some of the best cafes a few steps away. • Office-First with Flexibility - In cities where we have an office (Christchurch, Auckland, London, San Francisco), we default there every day. This let's us move faster, make better decisions and build strong relationships. We also operate with a very high trust environment, so you can manage your time around your life, and flex your schedule to get your best work done. • We Celebrate Together - From weekly happy hours and monthly lunches to quarterly season openers and an annual global offsite, we make time to connect, celebrate, and have fun as one team. • If you are relocating from overseas or domestically to Partly HQ, we offer a generous relocation allowance to support your move
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT