Staff / Principal Software Engineer, Infrastructure Security
LovableStockholmFull TimeEngineering
Remotely
awssecuritykubernetesgcpiamcloudflareworkload identitykms
Job Description
📋 Description
- Set the technical direction for cloud, identity, and build/runtime security at Lovable.
- Design and ship guardrails: workload identity, least-privilege IAM, network segmentation, secrets
- Harden the supply chain end-to-end - from developer laptop to production deploy.
- Partner with Platform, SRE, and the Lovable Apps Platform team to make the secure path the easy
- Mentor engineers across the company and raise the security bar by default, not by review.
🎯 Requirements
- 8+ years in infrastructure or cloud security, with at least 3 at staff/principal level.
- Deep expertise in GCP, AWS, and Cloudflare security primitives - IAM, network, KMS, workload
- Hands-on with Kubernetes, Terraform, Wiz, GitHub Actions, and modern CI/CD - and a clear view on
- Comfort writing Go, Python, or Rust to ship guardrails as code, not policies as PDFs.
- Track record of measurably reducing blast radius - secrets, lateral movement, prod access - at a
- Bonus: experience securing multi-tenant platforms or LLM/agent-driven infrastructure.