Platform Security Engineer at Supabase
Job Description
About Supabase
Supabase provides a comprehensive Postgres development platform, designed by developers for developers. It offers a full backend solution encompassing Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are fully integrated for seamless growth, allowing quick starts with a managed Postgres database and tools that simplify backend development. Supabase combines open source flexibility with the speed of a modern platform, empowering teams to innovate rapidly while maintaining control.
What We're Looking For
We are seeking a Platform Security Engineer to join our team and enhance the security of Supabase's infrastructure, cloud platform, Kubernetes environments, and containerized workloads as we continue to scale. This role involves close collaboration with infrastructure, platform, SRE, product engineering, and technical leadership to proactively mitigate risks across the systems powering Supabase. The ideal candidate will have deep practical experience with AWS, Kubernetes, containers, Linux, and large cloud environments, and be passionate about securing developer infrastructure without hindering team agility. Success means significantly improving the platform's security posture through pragmatic engineering, sound technical judgment, and scalable guardrails.
Key Responsibilities
- Identify and mitigate security risks across AWS, Kubernetes, containerized workloads, and overall platform infrastructure.
- Conduct threat modeling, architecture reviews, and technical risk assessments for platform and infrastructure systems.
- Collaborate with infrastructure, platform, and SRE teams to design effective controls and secure by default patterns.
- Strengthen Kubernetes and container security, covering areas such as workload isolation, RBAC, admission control, secrets management, network policy, and runtime hardening.
- Evaluate container runtime and Linux isolation risks, including capabilities, seccomp/AppArmor, namespaces, cgroups, and container escape scenarios.
- Improve AWS security posture concerning IAM, account boundaries, network controls, logging, detection, encryption, and service configuration.
- Develop scalable security mechanisms, including automation, guardrails, paved paths, detection systems, secure defaults, and review frameworks.
- Differentiate between theoretical and material platform risks to effectively prioritize security efforts.
Ideal Candidate Profile
You might be a good fit if you possess:
- Senior-level experience in platform security, cloud security, infrastructure security, container security, or security engineering.
- Deep practical experience with AWS, Kubernetes, containers, and Linux security fundamentals.
- Experience working in large cloud environments, multi-cluster Kubernetes setups, developer platforms, SaaS platforms, or high scale infrastructure teams.
- The ability to clearly understand and articulate concepts related to identity, networking, workload isolation, runtime security, secrets, supply chain, and blast radius.
- Excellent written and asynchronous communication skills for both technical and non technical audiences.
- Proficiency in managing security initiatives across complex projects involving diverse stakeholders.
- A proactive approach to solving real world infrastructure security challenges and navigating ambiguity while working efficiently.
- A preference for building guardrails, automation, and secure defaults over implementing unnecessary processes or bottlenecks.
What We Offer
- Fully Remote Work: We hire globally, believing you can achieve your best work from anywhere. Supabase operates without physical offices, providing a WeWork membership or co-working allowance for use worldwide.
- Equity Ownership (ESOP): Every team member receives equity ownership in the company, ensuring everyone shares in our collective success.
- Tech Allowance: A budget to create your optimal work environment, covering equipment like laptops, monitors, or headphones.
- Health Benefits: Supabase covers 100% of health insurance for employees and 80% for dependents, regardless of location, prioritizing your and your family's wellbeing.
- Annual Off-Sites: The entire company gathers once a year in a new city for a week of connection, collaboration, and enjoyment.
- Flexible Work: We embrace an asynchronous work model, trusting you to manage your own time effectively to complete your tasks.
- Professional Development: An annual education allowance supports your continuous learning through courses, books, conferences, or other growth opportunities.
About the Team
Supabase was founded with a remote first and open source first philosophy. We believe our globally distributed team is key to building developer beloved tools. We have:
- Approximately 400 team members
- Representation in over 60 countries
- Over 20 languages spoken
- More than $1B raised, including a $500M Series F round
- A community of over 540,000 members
We operate with speed, build transparently in public, and utilize the products we ship. We are deeply committed to the open source ecosystem, aiming to support rather than replace existing tools and communities.
Ready to Apply?
Take the next step in your career journey.
Apply NowYou will be redirected to the company's application page
Link verified about 18 hours ago
💜 Please mention that you found the job on True Work From Home, this helps us grow. Thanks!
More Security Engineer Jobs
Discover similar opportunities that match your skills
Senior Security Engineer - Blue Team
Quality and Release Manager
Senior Backend Engineer
Software Engineer - Infrastructure
Senior Automation Engineer
DevSecOps Engineer
Offensive Security Engineer
Senior Forward Deployment Engineer at Clutch
About Supabase
Supabase is an open-source Backend-as-a-Service (BaaS) built on PostgreSQL. It gives developers a managed database, authentication, real-time updates, storage, serverless functions, and vector search through a simple dashboard and instant APIs.
View Company Profile