Albert Invent

Albert Invent

Head of Infrastructure & Security

Remote (United States)

Sponsorship not specifiedDetected 17 days ago
AWSAzureCloud PlatformsKubernetesCI/CDDevOpsSite Reliability EngineeringPlatform EngineeringMachine LearningAirflowData ScienceMLOpsCybersecurityPenetration TestingSIEMIncident ResponseComplianceFirewallZero TrustLeadershipCollaborationAdaptabilityGxP

About the role

  • As chemists ourselves, we know what it's like when software doesn't work the way you do - stuck with systems built by people who never spent a day at the bench.

Responsibilities

  • Own cloud cost strategy in partnership with Finance: drive per-unit cost metrics, implement team-level budget visibility and alerting, and deliver leadership-facing dashboards on infrastructure efficiency.
  • Own Albert's security posture end-to-end: library and server patching, SAST/DAST pipeline, WAF, SIEM, EDR, IDS/IPS, and data loss prevention.
  • Implement and evolve a Zero Trust architecture across cloud and identity layers.
  • Lead compliance and audit readiness for enterprise partners - GxP obligations, SOC 2, and a path toward ITAR and FedRAMP.
  • Own Azure interoperability strategy to meet the integration requirements of our enterprise partner base.
  • Own the ML/AI infrastructure platform so the data science team has a reliable, well-operated backend without having to own it themselves.
  • Drive infrastructure modernization: identity provider decoupling, CI/CD pipeline standardization, and internal developer platform improvements that increase engineering velocity.
  • Execution & Collaboration Build and lead a global SRE organization on a follow-the-sun model - existing India team, planned EU team (Germany-anchored), and US presence.
  • Define and own the SLO framework, error budget model, and service tiering classification across Albert's platform.
  • Manage vendor relationships and negotiate contracts for cloud services, security tooling, and infrastructure software.

Requirements

  • cloud security architecture, IAM, Zero Trust, network segmentation, SAST/DAST, SIEM/EDR, and working knowledge of compliance frameworks (SOC 2, NIST, ISO 27001, ITAR, FedRAMP, or equivalent).
  • Experience driving IaC standardization and DevOps maturity across an engineering organization - not just within a single team.
  • Track record of cloud cost reduction through FinOps practices - unit economics, per-team budget accountability, and leadership-facing visibility.
  • The ability to translate infrastructure ambiguity into a prioritized roadmap with clear owners and measurable outcomes.
  • Experience managing vendor relationships and infrastructure budgets at the organizational level.

Skills

  • library and server patching, SAST/DAST pipeline, WAF, SIEM, EDR, IDS/IPS, and data loss prevention.
  • Establish incident response, escalation paths, post-mortem process, and disaster recovery and business continuity programs.
  • Respond to enterprise security questionnaires and audits with structured, defensible answers - and close the gaps they surface.

Benefits

  • Drive reduction in preventable incidents and MTTR; build the runbooks, observability standards, and on-call practices that make 24/7 coverage sustainable.

Company info

  • connect infrastructure decisions to business outcomes and communicate clearly across functions and seniority levels.
  • Work through regional SRE directors and partner teams to execute without creating bottlenecks.
  • Leverage AI tooling aggressively to maximize team leverage - and set the expectation that the team does the same.
  • Define reliability KPIs by region and hold regional SRE leaders accountable to them.
  • You will have 8+ years in cloud infrastructure, platform engineering, or site reliability engineering, with at least 3 years in a senior leadership role owning a team or function.
  • Deep AWS expertise; meaningful Azure exposure required given our enterprise partner profile.
  • Kubernetes at architectural depth - decision-making, not just operations.
  • Demonstrated experience designing SLO frameworks, error budgets, and service reliability programs.
  • Demonstrated experience building or managing global, distributed engineering teams operating across time zones.
  • the ability to distinguish between tech debt that matters and tech debt that can wait.
  • MLOps infrastructure experience (Kubeflow, Airflow, or equivalent) preferred.
  • ITAR or FedRAMP hands-on experience preferred.
  • Relevant certifications (CISSP, CISM, CCSP, or equivalent) preferred.
  • Deep understanding of how enterprise customers operate; asks the right questions and designs solutions that stick.
  • Comfortable operating in dynamic, fast-moving customer and company environments where the approach evolves with new information.

This listing is sourced directly from Albert Invent's careers page and normalized into a canonical job model.