Jobs and Careers
PA

Senior Security Engineer (Infrastructure & Identity Security)

PagerDuty
United Statesfull_timeVerifiedPosted 10 Apr 2025

About the role

PagerDuty, Inc. (NYSE:PD) is a global leader in digital operations management. Half of the Fortune 500 and nearly 70% of the Fortune 100 trust PagerDuty as essential infrastructure.

Join us. At PagerDuty, you'll tackle complex problems, collaborate with kind and ambitious people, and help build a more equitable world—all in a flexible, award-winning workplace.

PagerDuty is seeking a Senior Security Engineer (Infrastructure & Identity Security) to join our diverse, customer-focused team! As a Senior Security Engineer, you will be a key technical leader driving security initiatives across PagerDuty's SaaS offerings, with deep expertise in Identity and Access Management. While you'll spearhead our IAM modernization efforts and implement robust authentication patterns, you'll also be instrumental in maintaining our overall security posture through architecture reviews, threat modeling, and automated security solutions. We're looking for a security generalist who excels in IAM - someone who can tackle diverse security challenges across our infrastructure while bringing specialized knowledge in identity and access patterns. Since we own and operate what we build, you'll collaborate with 30+ engineering teams to implement secure, scalable solutions that enhance security while maintaining developer productivity. This is an exciting opportunity to not only revolutionize our IAM strategy but also contribute to the broader security landscape of our SaaS platform.

This role is expected to come into our Atlanta office one day per month, so you can thrive in your new role and fully embrace being a Dutonian!

KEY RESPONSIBILITIES  

  • Lead and implement comprehensive IAM strategy across cloud infrastructure
  • Work closely with Product Engineering teams and conduct architecture reviews and threat modeling sessions focusing on but not limited to identity and access patterns
  • Design and implement modern service-to-service authentication patterns using technologies such as IRSA (IAM Roles for Service Accounts) and pod identity
  • Develop and maintain a robust secrets management framework and strategy
  • Drive adoption of principle of least privilege across all services and applications
  • Design and implement automated workflows for access reviews and certification
  • Design and implement security controls for AWS cloud infrastructure and containerized environments
  • Develop metrics and monitoring for IAM-related security events and access patterns
  • Monitor and maintain security tooling supporting infrastructure security controls
  • Design and implement security automations and tool integrations
  • Develop automated vulnerability management workflows to drive timely remediation
  • Implement automated incident response playbooks

Additional Responsibilities:

  • Mentor and guide team members on security best practices and implementation approaches
  • Participate in our team's on-call rotation, triaging and addressing security issues as they arise.
  • Contribute to roadmap and annual planning discussions

BASIC QUALIFICATIONS

  • 5+ years of experience as a full-stack Security Engineer in an AWS native, micro-service SaaS environment with focus on IAM.
  • Deep expertise in cloud security, particularly AWS services including but not limited to:
    • GuardDuty, CloudTrail, Config 
    • IAM family, Secrets Manager, KMS
    • EKS, Service Mesh architectures
  • Strong expertise and experience implementing and managing identity providers, specifically Okta and/or Microsoft Entra at scale (1000+ users). 
  • Strong understanding of zero trust principles and modern authentication patterns
  • Experience working with multiple development teams and technology stacks
  • 5+ years experience leading technical security initiatives, with proven ability to scope ambiguous projects, break down complex work into actionable items, and successfully delegate responsibilities while maintaining project momentum
  • Proficiency with security tools:
    • Vulnerability Management & EDR: Wiz, Snyk, Qualys/Nessus, Crowdstrike
    • SIEM: SumoLogic or Splunk
  • Experience with Infrastructure as Code and CI/CD:
    • Terraform, Helm, Chef, Ansible, Buildkite, Jenkins, ArgoCD
  • 4+ years of experience and proficiency in at least one programming language and framework (Python, Java, or similar)
  • Strong understanding of Threat Modeling principles
  • Experience with Security Incident Response & Risk Management
  • High appetite for challenging problems with a high degree of ownership.

PREFERRED QUALIFICATIONS

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

PagerDuty

View company profile →