The opportunity
Supabase was born-remote and open-source-first. We believe our globally distributed team is our secret weapon in building tools developers love.
What you'll do
Identify and reduce security risk across AWS, Kubernetes, containerized: workloads, and platform infrastructure.
Conduct threat modeling, architecture reviews, and technical risk assessments: for platform and infrastructure systems.
Partner closely with infrastructure, platform, and SRE teams to design: practical controls and secure-by-default patterns.
Improve Kubernetes and container security across areas like workload: isolation, RBAC, admission control, secrets, network policy, and runtime hardening.
Assess container runtime and Linux isolation risks, including capabilities,: seccomp/AppArmor, namespaces, cgroups, and container escape scenarios.
Strengthen AWS security posture across IAM, account boundaries, network: controls, logging, detection, encryption, and service configuration.
What they're looking for
- Build scalable mechanisms such as automation, guardrails, paved paths,: detection, secure defaults, and review frameworks.
- Distinguish between theoretical risk and material platform risk to prioritize security efforts effectively.
- Have senior-level experience in platform security, cloud security,: infrastructure security, container security, or security engineering .
- Have deep practical experience with AWS, Kubernetes, containers, and Linux security fundamentals .