Help define the future of hardware development by building a collaboration platform for circuit designs, enabling the next generation of smart vehicles, IoT devices, rockets, medical devices, robotics, and much more.
At AllSpice, we're building the agile development environment for hardware designers, including a Git-friendly translation layer and automated CI/CD framework for native circuit designs, think GitHub/GitLab + Copilot for electronics.
Read more about our latest Series A announcement here!
As Director of Infrastructure, you will own AllSpice's infrastructure strategy, security posture, and compliance programs while building and leading a small, high-impact team. This is a hands-on leadership role: roughly 60% management and strategic work, 40% individual contribution, reporting to the CTO. With the team at 1–2 people for the next 12 months, you need to be equally comfortable drafting a Terraform module and presenting a security review to an enterprise customer's CISO.
If you are passionate about building secure, scalable infrastructure and want executive-level ownership at a fast-growing startup, this role is for you.
What you'll doThis is a high-impact role that comes with significant autonomy and requires a self-driven, strategic, and collaborative leader. You will own our infrastructure, security, and compliance programs end-to-end.
Strategic leadership and security ownershipOwn AllSpice's security posture: policies, incident response, disaster recovery, and ongoing risk assessment
Drive SOC 2 compliance, penetration testing, and audit processes; evaluate additional security certifications as needed
Make architectural decisions on infrastructure direction, including cloud strategy, cost optimization, high availability, and scaling
Work with legal counsel on security and data-protection matters, including DPAs, breach notification obligations, and regulatory requirements
Partner with customer success and sales to support enterprise deployments, IT security reviews, and SSO/OIDC integrations
Serve as the primary technical point of contact for customer InfoSec questionnaires and procurement processes
Support self-hosted and GovCloud deployments for customers with ITAR, EAR, or CUI requirements
Hire, mentor, and manage infrastructure engineers as the team grows
Set team goals, define processes, and establish on-call rotations
Participate in the on-call rotation and lead incident response when needed
Create growth paths for ICs and foster a culture of operational excellence
Architect and maintain production AWS environments using Terraform and infrastructure-as-code
Automate deployments, backups, and disaster recovery across cloud and self-hosted configurations
Monitor and improve performance, availability, and cost efficiency of production systems
Work closely with application developers to deploy infrastructure solutions to product problems
Lead an enterprise customer through a self-hosted deployment, including architecture review, SSO integration, and security sign-off
Scale infrastructure for zero-downtime deployments across multi-region AWS accounts
Drive SOC 2 Type II audit to completion and establish ongoing compliance cadence
Evaluate and pursue additional security certifications to support enterprise and government customers
Stress-test backup and disaster recovery procedures and publish runbooks
Identify opportunities to reduce cloud spend while improving performance
Coordinate tabletop exercises and incident response drills with the Security Incident Response Team
Terraform & Docker Swarm deployed to AWS for production infrastructure
Grafana, Loki, and Prometheus for observability
GitHub Actions for CI/CD
Playwright for e2e testing
Gitea application fork
Go [server-side]
PostgreSQL
Our ideal candidate has:
8+ years of cloud infrastructure and/or security engineering experience
2+ years of people management experience (hiring, mentoring, performance management)
Deep hands-on expertise with AWS services (IAM, GuardDuty, VPC, Lambda, etc.), Linux administration, and Docker
Demonstrated ownership of security policy, compliance programs (SOC 2, ISO 27001), and incident response
Experience coordinating with legal counsel, customer-facing teams, and executive leadership on security and compliance matters
Strong project management skills with ability to lead cross-functional initiatives from engineers to customers
Comfort with ambiguity and a high degree of autonomy
Bachelor's degree or higher in a technology-related field
Must be a U.S. Citizen or Lawful Permanent Resident (Green Card holder)
(preference, not required) Availability to work out of our flex offices in San Francisco or Boston 1–2 days per week
You don't need to check every box, but the more of these you bring, the better:
Infrastructure and operations
Terraform and infrastructure-as-code at scale
AWS services (IAM, GuardDuty, Elasticsearch, ElastiCache, Lambda) and experience with other cloud providers (GCP, Azure)
Docker and Kubernetes
Bash and Python scripting
nginx and reverse-proxy services
PostgreSQL administration
Security and compliance
SOC 2, ISO 27001, and other security certification frameworks
ITAR/EAR/CUI compliance and GovCloud deployments
SSO, OIDC, LDAP, and enterprise authentication
Vulnerability scanning, penetration testing coordination, and vendor security reviews
Leadership
Hiring, mentoring, and building infrastructure teams from the ground up
Working with legal counsel on data protection, DPAs, and regulatory matters
Customer-facing technical communication (InfoSec reviews, enterprise onboarding)
Project management using tools such as Jira, Notion, or similar
Opportunity to make a large impact at an executive level
Supportive and smart colleagues
Flexible work
Competitive salary and equity
Health, dental, and vision benefits
Generous PTO
Home office stipend
Relocation package
Top Skills
What We Do
What if we could design hardware with the ease and speed of software?
AllSpice is building the first ever developer-led platform for collaborating on and seamlessly validating hardware designs.
The world around us is enabled by novel circuit designs. Consider the seemingly trivial act of hailing a taxi from the comfort of your home. This simple process (for you) relies on a 3 million light-emitting diode display with a user interface that is logically routed to a capacitive sensor capable of tracking your finger at sub-millimeter resolution, an antenna capable of transmitting to a radio tower kilometers away at a rate of 20 Gb/s, repeated 35,000 km to a satellite, which is able to use it’s own integrated sensors and drivers to maintain geosynchronous orbit over decades without human interference.
The infrastructure we've taken for granted wasn't designed overnight and isn't staying put. It's constantly evolving to enable the next generation of life-changing products. But this evolution is currently hamstrung by incumbent and proprietary development infrastructure built for waterfall project management (mostly in the 90s), requiring manual pdf exports, emails, and in-person meetings at each design revision. The next generate of human innovation, like putting the first human colonies on Mars, requires a step-change in how hardware designs are managed. At AllSpice, we've experienced this problem as hardware engineers and we've seen the solutions as software leaders.
Today, AllSpice Hub is allowing electrical engineering teams to dramatically accelerate their development by enabling a truly agile workflow. They can seamlessly push a new design update in git, open a design review, tag stakeholders, notify them by email and slack, all while AllSpice automatically collects review artifacts, like visual diffs and review checklists.
See it live at https://hub.allspice.io/AllSpice/Archimajor
What now?
This is just the tip of the iceberg. Our users are adding collaborators from firmware, software, mechanical engineering, management, and logistics begging for even more ways connect their design data to revolutionize their workflow and connect their teams.
Why Work With Us
We encourage exploration and growth in all areas of our work. We never put a pin in something we don't understand. As a team, we set priorities more often than processes. We enjoy the freedom from overbearing bureaucracy that comes with being part of a small team. We're a remote-first team, and believe amazing progress can happen from anywhere.
Gallery


.png)






