← All verified jobs

Information Security Engineer - Infrastructure Security

palantir Washington, D.C.

See all open roles at palantir

Ghost-risk verdict

Some ghost-posting signals

  • open for 129 days (90+ without a fill is a strong ghost signal)
  • 287 open roles at this company in 30 days (mass-hiring blitz)
  • no salary disclosed (correlates with ghost postings)

How we score ghost risk →

See your fit for this role and apply with a truthfully tailored résumé.

See my fit, free

About the role

Core Responsibilities

Design, implement, and improve defensive security controls across endpoints, servers, identity systems, cloud services, SaaS applications, networks, and data flows

Own or contribute to security posture improvements, including hardening standards, configuration management, vulnerability remediation, access controls, monitoring, and ongoing validation

Evaluate security risks in new platforms, products, architectures, vendors, and services, and translate findings into practical recommendations and engineering work

Build and maintain automation for security operations, such as configuration validation, drift monitoring, patching, access reviews, policy enforcement, alert triage, and security hygiene

Partner closely with Identity, Infrastructure, Engineering, Legal, and other Information Security teams to improve security architecture and reduce recurring risk

Translate findings from assessments, red team exercises, incident investigations, and operational reviews into durable fixes—including configuration changes, architectural improvements, policy updates, and automation

Develop expertise in one or more security domains while remaining effective across the broader infrastructure security lifecycle

What We're Looking For

Experience securing one or more major infrastructure domains, such as Windows, macOS, Linux, Active Directory, cloud platforms, SaaS applications, networking, identity systems, or enterprise endpoints

A broad infrastructure security mindset and curiosity about systems outside your primary area of expertise

Understanding of common infrastructure attack paths, adversary tactics, techniques, and procedures, and the security controls used to prevent, detect, and contain them

Ability to assess complex environments and identify how weaknesses in identity, endpoints, applications, networks, cloud services, or data flows can combine to create security risk

Experience evaluating security tooling and validating that controls are deployed effectively and continue to work as intended

Familiarity with infrastructure-as-code, configuration management, CI/CD, or other approaches to making security controls repeatable and scalable

What We Value

Ability to independently own projects, make progress through ambiguity, and balance competing priorities while collaborating effectively with colleagues

Experience working in complex, high-assurance, regulated, or rapidly changing environments

The ability to move between strategic problem-solving and hands-on technical work

Strong written and verbal communication skills, including the ability to explain technical security risks and drive remediation with partner teams

Contributions to security programs, tooling, automation, incident investigations, or technical research—whether public or internal

What We Require

5+ years of hands-on experience in information security, infrastructure security, security engineering, security operations, or a closely related field

Demonstrated experience securing at least one major infrastructure or security domain, with the ability and interest to work across multiple domains

Active TS/SCI security clearance, or eligibility and willingness to obtain one

A strong sense of ownership, sound judgment, and integrity

Stop applying to ghosts.

OyaPilot surfaces only verified, real jobs, scores your fit, and tailors your application truthfully.