Senior Software Infrastructure Engineer
Ultra
- Location
- Onsite (Brooklyn, Ohio)
- Employment
- Full-time
- Level
- Senior Level
Posted 2 days ago
About the Role
Ultra is a robotics company building intelligent warehouse robots for end-to-task automation. This role owns the company's data infrastructure and information security architecture to enable mission-critical projects and secure AI tooling for enterprise customers.
Skills
Infrastructure Engineering
Security Engineering
Python
Authn/Authz Systems
SOC2 Compliance
Data Infrastructure
AI Tooling
System Architecture
Legacy System Auditing
RBAC
Cloud Security
Platform Engineering
Full job details
Overview
Ultra is looking for a Senior Software Infrastructure Engineer to design and implement industry standard company data infrastructure and tooling, along with airtight information security and architecture, to enable multiple mission-critical projects for Ultra’s long-term growth. As Senior Infrastructure Engineer, you'll own the company's data infrastructure and information security architecture end to end: auditing what exists today, closing the gap to industry-standard practice within six months, and building the authZ/authN foundation that makes AI tooling and enterprise customers trust us with their data. You'll also own the platform that lets engineers and vibe-coders across Ultra get safe, compliant data access without waiting on you for every request. This is an in-person NYC role with direct line of sight to top-line business goals.
Who You Are
- You have 7+ years in infrastructure/security engineering, with real ownership of authn/authz systems in production
- You're proficient in Python; a software generalist who knows when to build vs. buy
- You've led or heavily contributed to a SOC2 (or equivalent) compliance effort — you know what auditors actually look for
- You're comfortable auditing legacy systems and making the call on what to fix, replace, or leave alone
- You have experience designing data infrastructure that scales to onboard new data sources without re-architecting each time
- You're dangerous with LLMs because you know when they're wrong; you've thought hard about misbehaving agents and what it takes to secure AI tooling
- You can look at a backlog of "we need access to X" requests and pick the highest-leverage platform investment
- You have a bias toward shipping durable systems over quick patches; you document decisions so others can build on them
What You’ll Do
- Audit existing authn/authz infrastructure and produce a gap analysis against industry standards
- Design and execute a roadmap to bring infrastructure to industry-standard within 6 months
- Drive SOC2 compliance workstream — controls, evidence, remediation; turn compliance requirements into enforceable platform controls
- Build scalable systems/tooling for onboarding new data sources
- Design and implement authorization architecture that securely enables AI tooling across the company
- Support software engineers and vibe-coders so everyone can ship code safely and quickly
- Partner with engineering leadership on architecture decisions that support enterprise-market expansion
Bonus Points
- You've built a comprehensive authentication and authorization system at another company
- You have strong opinions about the best way to implement RBAC (and its limitations)