Poshmark logo

Staff Engineer, Infrastructure Security

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Benefits
Career Development

Job Description

About Poshmark

Poshmark is the leading fashion marketplace where style comes alive through discovery, self-expression, and human connection. Powered by a vibrant community of 165 million members, Poshmark brings real people and taste to shopping through a social experience shaped by shared discovery. Buying and selling fashion feels simple, joyful, and personal, while every item tells its own story. Poshmark empowers sellers to grow meaningful businesses, keeps fashion in circulation longer, and gives shoppers access to unique and trusted finds, from everyday pieces to one-of-a-kind vintage and luxury.

The security team at Poshmark is responsible for securing our application platform, cloud infrastructure, and IT systems to protect Poshmark and its 150 million Poshers. This role is for a Staff Cloud/Infrastructure Security Engineer responsible for designing, implementing, and maintaining secure AWS cloud and corporate IT infrastructure, ensuring alignment with industry best practices and CIS benchmarks. The position involves hardening systems, developing security architectures and policies, managing vulnerabilities, and enforcing least-privilege IAM controls across the enterprise.

Responsibilities:

  • Develop bot and fraud attack detection and mitigation strategies.

  • Design, implement and maintain secure AWS architecture aligned with industry standards, security best practices and CIS benchmarks.

  • Harden corporate IT and SaaS applications (Okta, CrowdStrike, Jamf, etc.) through security best practices and layered defense.

  • Develop and maintain cloud and infrastructure security reference architectures, and policies.

  • Continuously assess and manage vulnerabilities across cloud, infrastructure, and endpoint systems.

  • Conduct regular security gap analyses, security reviews, risk assessments, and drive remediation with system owners.

  • Integrate infrastructure security into CI/CD pipelines and change management processes.

  • Architect and enforce cloud and enterprise IAM controls with Okta and AWS IAM, focusing on least privilege, SSO, and federation.

  • Strengthen endpoint and server protection through configuration management and continuous monitoring.

  • Partner with Engineering, DevOps, SRE, IT, and Compliance teams to ensure security requirements are embedded throughout the infrastructure lifecycle.

  • Help with incident response activities across AWS and corporate environments including detection, investigation, containment, eradication, and recovery.

  • Mentor junior engineers and contribute to a culture of proactive, engineering-driven security.

6-Month Accomplishments:

  • Get a thorough understanding of Postmark’s cloud and IT infrastructure.

  • Establish relationships with stakeholders in DevOPs, SRE, IT teams.

  • Drive existing projects to meaningful completion.

  • Partner with the SOC team to understand bot attacks and existing mitigations in place.

12+ Month Accomplishments:

  • Develop a comprehensive roadmap for infrastructure security.

  • Architect scalable least privilege cloud infrastructure.

  • Automate cloud security with secure by design principals.

Requirements:

  • 8+ years of professional experience in Security Engineering, with at least 5+ years focused on AWS Cloud Security or any other public cloud.

  • Demonstrated experience in Enterprise Security technologies (e.g., Okta, CrowdStrike, JAMF, SSO, and related tools).

  • Strong hands-on experience with AWS security services: IAM, WAF, Advanced Shield, GuardDuty, CloudTrail, Macie, Config, Organizations, and Network Firewall, DNS Firewall etc

  • Solid understanding of bot activity, network security, segmentation, and zero-trust principles.

  • Familiarity with security frameworks and standards (CIS, NIST, ISO 27001, OWASP).

  • Excellent written and verbal communication skills. Ability to work cross-functionally and influence without authority.

  • Strong sense of ownership, accountability, and continuous improvement mindset.

  • Preferred Certifications: AWS Certified Security – Specialty, Certified Cloud Security Professional (CCSP) or similar.

  • Bonus: Experience building and deploying security controls and detection mechanisms as code using Terraform, Python, or similar automation frameworks.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Staff Engineer, Infrastructure Security Jobs at Poshmark

What is the work location for this position at Poshmark?
This job at Poshmark is located in Redwood City, California, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Poshmark?
Employer has not shared pay details for this role.
What employment applies to this position at Poshmark?
Poshmark lists this role as a Full-time position.
What experience level is required for this role at Poshmark?
Poshmark is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Poshmark for this role?
Poshmark offers Career Development for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Poshmark?
You can apply for this role at Poshmark either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.