Company
Decagon
Annual salary
$200k – $330k/yr
Location
San Francisco, CA
Listed
110d ago
- Experience:
- 4 to 10 years
- Workplace:
- 5 days in-office in SF or NYC
- Visa:
- Visa sponsorship available
- Equity:
- Competitive equity
On-site in San Francisco, CA. Visa sponsorship available.
Send us your LinkedIn and CV. If your experience fits, we'll introduce you to the recruiter filling this role.
Apply for a referral →The recruiter emails you before anything happens and may suggest other jobs that suit you better.
About this Role
About the Role
We're hiring our first Platform Security Engineer to design, build, and operate the security infrastructure that powers Decagon's AI platform. This is a builder's role: you'll spend your time creating durable, well-engineered systems including paved paths for secure service creation, security tooling that automatically applies secure configurations, and infrastructure-as-code that makes it easy for every engineer at Decagon to do the right thing.
As the first dedicated engineer at this intersection, you'll have outsized impact on how security infrastructure is built here, and you'll shape the technical direction of the infrastructure security program. You'll also help us invest in automation, observability, and self-service so the team operates with confidence.
The work is close to the business. Decagon serves some of the world's most security-conscious enterprises, including major financial-services institutions, and the security platform you build directly unlocks these high-value deals. This role offers a clear runway to grow your impact across security, infrastructure, and platform engineering.
In this role, you will
Design and implement secure, multi-tenant infrastructure that isolates customer data while enabling efficient AI model serving across our platform
Build "golden paths" for security including service templates, libraries, terraform policies, and automation, so new services are secure and production-ready by default
Own infrastructure-as-code (Terraform) and GitOps best practices, including reusable modules and policy-as-code
Expand and help operate the platforms behind alerting detection, secrets management, IAM, and automated remediation, integrating them cleanly into CI/CD and developer workflows
Partner with Security, Infrastructure, and product engineering teams to translate enterprise and compliance requirements (SOC 2, ISO 27001, GDPR) into reliable, automated technical controls
Participate in security on-call and continuously raise the bar on operability, runbooks, and incident learnings
Your background looks something like this
5+ years building and operating production infrastructure, with meaningful exposure to security or a strong interest in moving deeper into security problems
Deep knowledge of Google Cloud Platform and/or AWS, including compute, networking, IAM, and security services
Proficiency with infrastructure-as-code (Terraform, Ansible, or similar) and a track record of building developer-facing tooling and automation
Strong coding ability in at least one systems language (e.g. Python, Go, TypeScript) and comfort building paved-path tooling teams adopt
Experience applying AI-assisted tooling (Cursor, Claude Code, and similar) to make engineers dramatically more effective
Experience with secure container deployment, service mesh, and Kubernetes security best practices
Observability and incident-response tooling experience (instrumentation, alerting, dashboards), with a bias toward eliminating toil
Clear written communication and the ability to turn ambiguous requirements into simple, reliable designs
Even better
A track record of being an early or founding platform/infrastructure/security engineer at another company
Experience building internal platforms: service templates, paved-road deployment, self-serve environments, or developer portals
A security-minded approach to the software supply chain (provenance, secrets, least privilege) and familiarity with static analysis tooling (Semgrep, CodeQL)
Experience with detection and response data pipelines (Kafka/Pulsar, Splunk/Panther/RunReveal, or similar)
Knowledge of enterprise compliance requirements (SOC 2, ISO 27001, GDPR) from an infrastructure and platform perspective
Frequently Asked Questions
How do I apply for the Senior Platform Engineer (US) role at Decagon? +
Use the Apply for a referral button on this page to send us your LinkedIn and CV. If your experience fits, we'll introduce you to the recruiter filling this role. They'll email you to check you're interested, then put you forward for this job or others that suit you better. It's free.
What does this Decagon role pay? +
The listing gives $200k – $330k/yr.
Is this role remote? +
The listing gives the location as San Francisco, CA. 5 days in-office in SF or NYC. Visa sponsorship available.
Related Roles
Browse all startup roles
Salaried roles at startups, AI companies and established businesses, all filled by referral. One application covers every role.
View all startup roles →