JOB DETAILS

Senior Security Engineer, Infrastructure Security

CompanyCLEAR - Corporate
LocationNew York
Work ModeOn Site
PostedMay 3, 2026
About The Company
CLEAR is a security identity company making experiences safer and easier—physically and digitally. With over 33 million Members and a growing network of partners across the world, CLEAR’s identity platform is transforming the way people live, work, and travel. Whether you are in the airport, at the stadium, or on your phone, CLEAR connects you to the things that make you, you. CLEAR+ helps you speed through airport security, while CLEAR1 is our enterprise product that powers trusted identity solutions for businesses across healthcare, travel, and financial services. Headquartered in New York City with offices in Austin, TX and Washington D.C., CLEAR’s mission is to strengthen security and create frictionless experiences.
About the Role

CLEAR is building THE secure identity company of the future. Our mission is to make experiences safer and easier—physically and digitally. With more than 38 million Members and a growing network of partners across the world, CLEAR's secure identity platform is transforming the way people live, work, and travel. Whether it’s at the airport, stadium, or throughout your everyday life, CLEAR unlocks the magic of frictionless experiences.

As a Senior Security Engineer on the Infrastructure Security Engineering (ISE) team, you will help safeguard CLEAR’s core platforms across cloud, identity, and corporate endpoint controls. You’ll harden our AWS and Kubernetes environments, scale security controls through infrastructure-as-code, and partner with teams across Engineering, CorpIT, and Security to make secure-by-default the easiest path.

What you’ll do:

  • Design, implement, and continuously improve security controls for our AWS and GCP accounts, Kubernetes clusters, and containerized workloads.
  • Embed guardrails into infrastructure-as-code (Pulumi/Terraform) and CI/CD so security is automated, repeatable, and testable.
  • Partner with platform and product teams to prioritize and remediate misconfigurations and vulnerabilities based on risk and business impact.
  • Ensure infrastructure access patterns align with Zero Trust principles (least privilege, just-in-time access, strong authentication).
  • Automate recurring security workflows (detections, reporting, evidence collection) to reduce manual toil and improve time to response.
  • Act as a trusted partner to Platform, SRE, and Product Engineering teams—supporting design reviews, offering practical guidance, and championing secure patterns that fit how teams actually build.

How you’ll measure success:

  • Meaningful reduction in critical and high-severity vulnerabilities across cloud, container, and endpoint assets, and sustained performance against targets.
  • Policy-as-code adoption and increased coverage of AWS organizations, accounts, clusters, and services protected by standardized guardrails, SCPs, and baseline configurations.
  • New infrastructure and platform capabilities shipped with clear, reusable security patterns (networking, identity, secrets, logging) that teams adopt without friction.
  • Improved signal-to-noise and reduced manual effort in vulnerability management and security operations as a result of automation, better configuration, and clearer ownership.
  • Positive feedback from engineering and partner teams on the clarity, reliability, and usability of infrastructure security controls and guidance.

What you’re great at:

  • 6+ years of experience in infrastructure, cloud, or platform security, with hands-on responsibility for securing AWS-based environments at scale.
  • Strong understanding of modern infrastructure architectures: multi-account AWS, Kubernetes/EKS, containers, CI/CD, and microservices.
  • Deep familiarity with AWS security building blocks: IAM, organizations and SCPs, VPC/networking, KMS, logging/monitoring, and common security services.
  • Proficiency with infrastructure-as-code (Pulumi and/or Terraform) and scripting or general-purpose languages (e.g., Python, Go, or similar) to automate security controls and workflows.
  • Ability to explain complex infrastructure risks and tradeoffs to both deeply technical partners and non-technical stakeholders.
  • Experience in regulated or audited environments (e.g., PCI, SOC 2, FedRAMP, NIST 800-53) and translating requirements into pragmatic controls.

How You'll be Rewarded:

At CLEAR, we help YOU move forward - because when you’re at your best, we’re at our best. You’ll work with talented team members motivated by our mission of making experiences safer and easier. Our offices are bright and energetic with an open concept and plenty of conference rooms and casual co-working spaces. We also offer catered lunches every day and have fully stocked kitchens. Outside of the office, we invest in your well-being and learning & development with stipends and reimbursement programs. 

We offer holistic total rewards, including comprehensive healthcare plans, family-building benefits (fertility and adoption/surrogacy support), flexible time off, annual wellness stipend, free OneMedical memberships for you and your dependents, a CLEAR Plus membership, and a 401(k) retirement plan with employer match. The total compensation range for this role is $225,000 -$300,000, depending on levels of skills and experience.

This range represents the combined base salary and new hire equity package (in Restricted Stock Units) for this position at CLEAR. Additionally, this role will be eligible for refresh equity grants as part of our ongoing compensation program. Actual compensation will vary based on factors including, but not limited to, location, education, skills, experience, and performance. All stock based compensation will be subject to the terms and conditions of applicable agreements.

CLEAR provides reasonable accommodation to qualified individuals with disabilities or protected needs. Please let us know if you require a reasonable accommodation to apply for a job or perform your job. Examples of reasonable accommodation include, but are not limited to, time off, extra breaks, making a change to the application process or work procedures, policy exceptions, providing documents in an alternative format, live captioning or using a sign language interpreter, or using specialized equipment.

We are committed to a transparent and secure hiring process. All communications related to this role will come directly from a CLEAR employee through valid CLEAR channels (e.g., a valid @clearme.com email address or verified CLEAR LinkedIn profile). We encourage candidates to remain alert to job scams and to report any suspicious activity.

#LI-Onsite

Key Skills
AWSKubernetesInfrastructure-as-codePulumiTerraformPythonGoIAMZero TrustCI/CDSecurity engineeringCloud securityContainer securityVulnerability managementNetwork securityRisk assessment
Categories
TechnologySecurity & SafetyEngineeringSoftware
Benefits
Comprehensive healthcare plansFamily-building benefitsFlexible time offAnnual wellness stipendFree OneMedical membershipsCLEAR Plus membership401(k) retirement plan with employer matchCatered lunchesLearning and development stipends
Job Information
📋Core Responsibilities
You will design and implement security controls for AWS and Kubernetes environments while embedding guardrails into infrastructure-as-code. You will also partner with engineering teams to remediate vulnerabilities and automate security workflows to improve response times.
📋Job Type
full time
💰Salary Range
$175,500 - $215,000
📊Experience Level
5-10
💼Company Size
2887
📊Visa Sponsorship
No
💼Language
English
🏢Working Hours
40 hours
Apply Now →

You'll be redirected to
the company's application page