Albert Invent
Head of Infrastructure & Security
Remote (United States)
Sponsorship not specifiedDetected 17 days ago
AWSAzureCloud PlatformsKubernetesCI/CDDevOpsSite Reliability EngineeringPlatform EngineeringMachine LearningAirflowData ScienceMLOpsCybersecurityPenetration TestingSIEMIncident ResponseComplianceFirewallZero TrustLeadershipCollaborationAdaptabilityGxP
About the role
- As chemists ourselves, we know what it's like when software doesn't work the way you do - stuck with systems built by people who never spent a day at the bench.
Responsibilities
- Own cloud cost strategy in partnership with Finance: drive per-unit cost metrics, implement team-level budget visibility and alerting, and deliver leadership-facing dashboards on infrastructure efficiency.
- Own Albert's security posture end-to-end: library and server patching, SAST/DAST pipeline, WAF, SIEM, EDR, IDS/IPS, and data loss prevention.
- Implement and evolve a Zero Trust architecture across cloud and identity layers.
- Lead compliance and audit readiness for enterprise partners - GxP obligations, SOC 2, and a path toward ITAR and FedRAMP.
- Own Azure interoperability strategy to meet the integration requirements of our enterprise partner base.
- Own the ML/AI infrastructure platform so the data science team has a reliable, well-operated backend without having to own it themselves.
- Drive infrastructure modernization: identity provider decoupling, CI/CD pipeline standardization, and internal developer platform improvements that increase engineering velocity.
- Execution & Collaboration Build and lead a global SRE organization on a follow-the-sun model - existing India team, planned EU team (Germany-anchored), and US presence.
- Define and own the SLO framework, error budget model, and service tiering classification across Albert's platform.
- Manage vendor relationships and negotiate contracts for cloud services, security tooling, and infrastructure software.
Requirements
- cloud security architecture, IAM, Zero Trust, network segmentation, SAST/DAST, SIEM/EDR, and working knowledge of compliance frameworks (SOC 2, NIST, ISO 27001, ITAR, FedRAMP, or equivalent).
- Experience driving IaC standardization and DevOps maturity across an engineering organization - not just within a single team.
- Track record of cloud cost reduction through FinOps practices - unit economics, per-team budget accountability, and leadership-facing visibility.
- The ability to translate infrastructure ambiguity into a prioritized roadmap with clear owners and measurable outcomes.
- Experience managing vendor relationships and infrastructure budgets at the organizational level.
Skills
- library and server patching, SAST/DAST pipeline, WAF, SIEM, EDR, IDS/IPS, and data loss prevention.
- Establish incident response, escalation paths, post-mortem process, and disaster recovery and business continuity programs.
- Respond to enterprise security questionnaires and audits with structured, defensible answers - and close the gaps they surface.
Benefits
- Drive reduction in preventable incidents and MTTR; build the runbooks, observability standards, and on-call practices that make 24/7 coverage sustainable.
Company info
- connect infrastructure decisions to business outcomes and communicate clearly across functions and seniority levels.
- Work through regional SRE directors and partner teams to execute without creating bottlenecks.
- Leverage AI tooling aggressively to maximize team leverage - and set the expectation that the team does the same.
- Define reliability KPIs by region and hold regional SRE leaders accountable to them.
- You will have 8+ years in cloud infrastructure, platform engineering, or site reliability engineering, with at least 3 years in a senior leadership role owning a team or function.
- Deep AWS expertise; meaningful Azure exposure required given our enterprise partner profile.
- Kubernetes at architectural depth - decision-making, not just operations.
- Demonstrated experience designing SLO frameworks, error budgets, and service reliability programs.
- Demonstrated experience building or managing global, distributed engineering teams operating across time zones.
- the ability to distinguish between tech debt that matters and tech debt that can wait.
- MLOps infrastructure experience (Kubeflow, Airflow, or equivalent) preferred.
- ITAR or FedRAMP hands-on experience preferred.
- Relevant certifications (CISSP, CISM, CCSP, or equivalent) preferred.
- Deep understanding of how enterprise customers operate; asks the right questions and designs solutions that stick.
- Comfortable operating in dynamic, fast-moving customer and company environments where the approach evolves with new information.
Apply directly at Albert Invent →Create a free account for alerts like thisView Albert Invent immigration profile
This listing is sourced directly from Albert Invent's careers page and normalized into a canonical job model.