Help define the future of hardware development by building a collaboration platform for circuit designs, enabling the next generation of smart vehicles, IoT devices, rockets, medical devices, robotics, and much more.
At AllSpice, we're building the agile development framework for hardware designers, including a Git-friendly translation layer and automated CI/CD framework for native circuit designs — think GitHub/GitLab + Copilot for electronics.
Read more about our latest Series A announcement here!
As a Sr./Principal Infrastructure Engineer, you will improve our cloud infrastructure architecture and security operations as we scale up our products and services.
If you are passionate about optimizing infrastructure at scale and have experience in security engineering, this role is for you.
What you'll doThis is a high-impact role that comes with lots of autonomy and requires a self-driven, collaborative person. You will own new server deployments and automation, and should be able to:
Work closely with a customer success manager to manage enterprise deployments and SSO integrations
Work closely with application developers to deploy infrastructure solutions to product problems
Document our security processes and identify opportunities for improvement
Manage the process for security compliance certification (ISO 27001 & SOC 2) and pentesting
Coordinate improvements to architecture and hosting services
Automate new software deployments, data backups, and data recovery
Monitor and improve the performance and availability of our cloud infrastructure
Take part in an on-call rotation and respond to incidents, driving blameless postmortems that prevent recurrence
Scale out our infrastructure for zero-downtime software deployments
Identify opportunities to decrease cloud cost and increase performance
Conduct stress-testing for backups and establish disaster recovery processes
Manage process for ISO 27001 and SOC 2 audit
Work with the development team to support CI/CD workflows
detect security flaws, perform penetration testing, and conduct red team exercises
Terraform & Docker Swarm for deployment, migrating to Kubernetes (K8s)
AWS for production
Grafana, Loki, and Prometheus for observability
GitHub Actions for CI/CD
Playwright for e2e testing
Gitea application fork
Go [server-side]
Rust back-end parsing layer for ECAD files
PostgreSQL
Our ideal candidate has:
[Principal] 8+ years of cloud infrastructure and/or security engineering experience
[Staff] 6+ years of cloud infrastructure and/or security engineering experience
[Senior] 4+ years of cloud infrastructure and/or security engineering experience
Deep hands-on expertise with AWS services (IAM, GuardDuty, AWS WAF, etc.) and Linux administration
Experience managing security compliance programs (SOC 2, ISO 27001) and penetration testing
Strong project management skills with the ability to drive cross-functional initiatives
Comfort with ambiguity and a high degree of autonomy
Can think in terms of the big picture and deliver on the details
Fluency with AI tools — you use them day-to-day to debug, document, and reduce operational toil, and expect this to be a normal part of how the team operates
Bachelor's degree or higher in a technology-related field
Must be a U.S. Citizen or Lawful Permanent Resident (Green Card holder)
(preference, not required) Availability to work out of our flex offices in San Francisco or Boston 1–2 days per week
You don't need to check every box, but the more of these you bring, the better:
AWS services, particularly security-focused services, such as IAM, GuardDuty, AWS WAF, etc.
Terraform, Ansible and infrastructure-as-code experience
SOC 2 and ISO 27001 process familiarity
Logging aggregation and metrics observability (e.g. Loki, Datadog)
Docker and Kubernetes and/or Helm experience
Distributed systems design and operation, including secure multi-tenant SaaS and self-hosted deployments
SBOM generation and audit
Bash and Python scripting; Go or Rust programming experience (our application back-end and parsing layer)
nginx and alternate reverse-proxy services
Documentation and project management
SSO, OIDC, and LDAP
Data lakes and high-availability services
Opportunity to make a large impact
Supportive and smart colleagues
Flexible work
Competitive salary and equity
Health, dental, and vision benefits
Generous PTO
Home office stipend
Relocation package
Skills Required
- 4+ years of cloud infrastructure and/or security engineering experience for Senior level
- 6+ years of cloud infrastructure and/or security engineering experience for Staff level
- 8+ years of cloud infrastructure and/or security engineering experience for Principal level
- Deep hands-on expertise with AWS security services, including IAM, GuardDuty, and AWS WAF
- Linux administration experience
- Experience managing SOC 2 and ISO 27001 compliance programs and penetration testing
- Strong project management skills and ability to drive cross-functional initiatives
- Bachelor’s degree or higher in a technology-related field
- Must be a U.S. Citizen or lawful permanent resident
- Experience with Terraform, Ansible, and infrastructure as code
- Logging aggregation and metrics observability experience, such as Loki or Datadog
- Docker, Kubernetes, and/or Helm experience
- Distributed systems design and operation experience, including secure multi-tenant SaaS and self-hosted deployments
- SBOM generation and audit experience
- Bash and Python scripting experience
- Go or Rust programming experience
- nginx or alternate reverse-proxy experience
- Experience with SSO, OIDC, and LDAP
- Data lakes and high-availability services experience
- Availability to work from San Francisco or Boston flex offices one to two days per week
What We Do
What if we could design hardware with the ease and speed of software? AllSpice is building the first ever developer-led platform for collaborating on and seamlessly validating hardware designs. The world around us is enabled by novel circuit designs. Consider the seemingly trivial act of hailing a taxi from the comfort of your home. This simple process (for you) relies on a 3 million light-emitting diode display with a user interface that is logically routed to a capacitive sensor capable of tracking your finger at sub-millimeter resolution, an antenna capable of transmitting to a radio tower kilometers away at a rate of 20 Gb/s, repeated 35,000 km to a satellite, which is able to use it’s own integrated sensors and drivers to maintain geosynchronous orbit over decades without human interference. The infrastructure we've taken for granted wasn't designed overnight and isn't staying put. It's constantly evolving to enable the next generation of life-changing products. But this evolution is currently hamstrung by incumbent and proprietary development infrastructure built for waterfall project management (mostly in the 90s), requiring manual pdf exports, emails, and in-person meetings at each design revision. The next generate of human innovation, like putting the first human colonies on Mars, requires a step-change in how hardware designs are managed. At AllSpice, we've experienced this problem as hardware engineers and we've seen the solutions as software leaders. Today, AllSpice Hub is allowing electrical engineering teams to dramatically accelerate their development by enabling a truly agile workflow. They can seamlessly push a new design update in git, open a design review, tag stakeholders, notify them by email and slack, all while AllSpice automatically collects review artifacts, like visual diffs and review checklists. See it live at https://hub.allspice.io/AllSpice/Archimajor What now? This is just the tip of the iceberg. Our users are adding collaborators from firmware, software, mechanical engineering, management, and logistics begging for even more ways connect their design data to revolutionize their workflow and connect their teams.
Why Work With Us
We encourage exploration and growth in all areas of our work. We never put a pin in something we don't understand. As a team, we set priorities more often than processes. We enjoy the freedom from overbearing bureaucracy that comes with being part of a small team. We're a remote-first team, and believe amazing progress can happen from anywhere.
Gallery









