Platform/ Infrastructure Engineer
Cutshort LightningIndia
it-jobs
Job Description
About the company The client is a US-based cybersecurity startup prevents, detects, and responds to software supply chain attacks by analyzing behavior across the full software development lifecycle for both developers and AI coding agents. They are building a vertical AI agent for supply chain security across three pillars: securing AI agents on developer machines, OSS package security, and CI/CD security, covering the entire agentic pipeline from dev environment to cloud. Founded by ex-Microsoft, 21 years & ex-Uber, Microsoft, Plaid founders, they are a 16-person team working on hard problems at the intersection of security, AI, and open source. Why this role is exciting They are at the forefront of supply chain security research and product development. They were the first to detect several major supply chain attacks in 2025 and 2026, including the axios npm compromise and tj-actions. Their research is regularly cited by Bloomberg, TechCrunch, Hacker News, and Dark Reading. The US Cybersecurity and Infrastructure Security Agency (CISA) has published advisories citing the company. Beyond their enterprise customers, the company has been adopted by more than 15,000 open-source projects, including projects from Microsoft, Google, Amazon, and Datadog. This is a zero-to-one platform role. Today the AWS cost, service health visibility, and their release process are owned in pieces by engineers who are also shipping product. You will own all three end to end, as the first dedicated platform hire, with meaningful early-stage equity upside. Their stack GitHub.com for code repositories. GitHub Actions for CI/CD pipelines. AWS serverless for hosting our services: Lambda, API Gateway, DynamoDB, and S3. Backend services are written in Golang. What you'll do - Own AWS cost. Build real visibility into where our cloud spend goes, then drive it down. Put guardrails and anomaly alerting in place so cost regressions get caught in days, not at the end of the month. - Build service health visibility. Define and instrument the metrics that tell us whether the platform is healthy. Build the dashboards, set the SLOs, and wire up alerting that pages on real problems and stays quiet otherwise. - Own the release process. Design and implement how code gets from a pull request to production, including staged rollouts, rollback, release approvals, and change management that satisfies our enterprise customers and our ISO 27001 obligations without slowing engineers down. - Improve stability. Run infrastructure as code, tighten our incident response and on-call practices, and drive postmortems to actual fixes. - Secure our own pipelines. We sell CI/CD and cloud security, so our own build and deploy path should be the best reference implementation we have. You will run it that way. What we're looking for - 2 to 5 years of experience with strong engineering fundamentals. - Demonstrated AWS cost reduction. We want to hear what the spend was, what you did, and what it became. - Hands-on depth with AWS serverless in production, not just in theory. - Experience implementing metrics, dashboards, and alerting for service health, and evidence that it changed how the team operated. - Experience building or significantly improving CI/CD and release processes, ideally with GitHub Actions. - Comfortable writing code. Golang or Python, plus infrastructure as code. - An AI-native mindset, with prior hands-on experience building with or operating AI agents. - Early-stage startup experience. You are extremely hands-on and can drive a problem end to end without a team behind you. - A security background is a plus but not required. Skills:- Amazon Web Services (AWS), CI/CD, IaC and GitHub
Get AI-Matched to This Job
Upload your resume and our AI will score how well you match this and thousands of similar roles.