Sr. Security Engineer, Infrastructure & Platform Security

Tesla

Austin, USonsitePosted Jul 9, 2026
Posting intelligenceActively listedReposted 6×, possible evergreen/ghost posting

Skills

kubernetesprometheusterraformjenkinsgrafanadatadogdockergitlabpythonprismahelmcicdargojavago

About the role

What To Expect Tesla is continuously pushing the boundaries of innovation in transportation, energy generation, energy storage, self-driving, AI hardware and software. Infrastructure & Platform Security under the Information Security organization is responsible for building and operating security capabilities to measure and continuously improve the security posture of our global on-premises datacenter infrastructure, public cloud footprint and several platforms which power Tesla critical business applications. Our on-premises IT infrastructure includes AI platforms that powers our AI endeavors.

As a Senior Security Engineer, Infrastructure & Platform Security, you will own the security posture of Tesla's Kubernetes infrastructure while also serving as a Security SRE — ensuring the reliability, observability, and operational health of security tooling and infrastructure. You will work at the intersection of Kubernetes security, platform security, and site reliability engineering, partnering with Platform Engineering and Security Operations teams to harden Tesla's container orchestration layer and keep security systems running at production quality.

What You'll Do

Define, implement, and enforce security policies and controls across Kubernetes clusters spanning on-premises, AI/HPC Infra, and public cloud environments

Own Kubernetes security posture management — RBAC governance, network policy enforcement, admission control, pod security standards, and secrets management

Identify, assess, and drive remediation of vulnerabilities in Kubernetes workloads, container images, and cluster configurations at scale

Perform threat modeling and risk assessments for Kubernetes environments, identifying attack paths and implementing preventive and detective controls

Build and maintain SRE practices for security infrastructure — monitoring, alerting, incident response, capacity planning, and reliability engineering for security tooling

Develop automation and tooling for security operations — automated remediation workflows, security pipeline integrations, and self-healing infrastructure

Collaborate with Security Operations, Detection, and Incident Response teams to develop K8s-specific detection signals, incident response playbooks, and forensic tooling

Operate and maintain security tools deployed across Kubernetes infrastructure, ensuring high availability and minimal performance impact on production workloads

Develop and maintain runbooks, architecture documentation, and operational playbooks for security tools and Kubernetes security controls

Partner with Kubernetes Infrastructure SRE teams to embed security into cluster lifecycle management, upgrades, and capacity operations

What You'll Bring

Degree in Computer Science, Information Systems, or the equivalent in experience and evidence of exceptional ability

Senior level working experience in a security team supporting one or more of the following areas: Kubernetes infrastructure, cloud infrastructure, on-premises datacenter infrastructure, or site reliability engineering

Advanced hands-on experience in Kubernetes administration, cluster operations, and security hardening (RBAC, network policies, admission controllers, OPA/Gatekeeper, Kyverno)

Hands-on experience with container runtime security, image scanning, and supply chain security for containerized workloads

Strong SRE skills — experience building monitoring/alerting (Prometheus, Grafana, Datadog, or equivalent), incident management, SLO/SLI frameworks, and on-call operations for infrastructure

Proficient in CI/CD pipelines (e.g., Jenkins, GitLab, Argo CD) with deep understanding of GitOps principles and secure software delivery

Good understanding of image vulnerability scanning tools (Aqua, Wiz, Prisma, Trivy) and artifact management (Artifactory, Docker Hub)

Proficient in Linux system security and at least one programming language: Python, Go, or Java

Experience with infrastructure as code (Terraform, Helm, Kustomize) and configuration management at scale

Familiarity with infrastructure security, defense-in-depth concepts and penetration testing methodologies for Kubernetes and container breakout techniques

Benefits Compensation and Benefits Along with competitive pay, as a full-time Tesla employee, you are eligible for the following benefits at day 1 of hire:

Medical plans > plan options with $0 payroll deduction

Family-building, fertility, adoption and surrogacy benefits

Dental (including orthodontic coverage) and vision plans, both have options with a $0 paycheck contribution

Company Paid (Health Savings Accounts) HSA Contribution when enrolled in the High-Deductible medical plan with HSA

Healthcare and Dependent Care Flexible Spending Accounts (FSA)

401(k) with employer match, Employee Stock Purchase Plans, and other financial benefits

Company paid Basic Life, AD&D

Short-term and long-term disability insurance (90 day waiting period)

Employee Assistance Program

Sick and Vacation time (Flex time for salary positions, Accrued hours for Hourly positions), and Paid Holidays

Back-up childcare and parenting support resources

Voluntary benefits to include: critical illness, hospital indemnity, accident insurance, theft & legal services, and pet insurance

Weight Loss and Tobacco Cessation Programs

Tesla Babies program

Commuter benefits

Employee discounts and perks program

, Tesla

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Security Engineer roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.