Elastic logo
Elastic·Verified

Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec

Remote (region-restricted)Full-timeSeniorUTC+0–+1UK#kubernetes#terraform#elasticsearchHealthPTOParental leaveBonus

About Elastic

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to accelerate results that matter. Complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.

The Role

Join the InfoSec - Security Architecture team as a Senior Information Security Infrastructure Engineer, playing a key role in protecting our data and systems. This team ingests the security telemetry that powers the entire security organization.

In this role, you will ensure telemetry flows into Elasticsearch consistently and keep underlying Elastic clusters healthy. You will own the pipeline end to end: from landing new security data sources through ingest pipelines and into the indices used by detection, incident response (IR), and consulting teams.

What You Will Be Doing

  • Security Telemetry Ingestion: Build and maintain ingestion of security-relevant data into Elasticsearch (cloud provider audit logs, identity/SaaS activity, endpoint, and asset data). Integrate with third-party and cloud provider APIs handling authentication, pagination, rate limits, and schema changes across both Elastic and custom integrations.
  • Cluster Health & Operations: Maintain Elastic Cloud on Kubernetes (ECK) clusters. Monitor, upgrade versions/builds, manage capacity and shards, handle Index Lifecycle Management (ILM), and enable Cross-Cluster Search (CCS).
  • Infrastructure as Code: Use Terraform to manage cloud infrastructure and Elasticsearch resources (pipelines, index templates, alerts). Deploy scheduled ingest jobs using Kubernetes and Helm.
  • AI & Automation: Implement AI automation and tooling to eliminate toil, including self-healing jobs, health checks, alerting, internal CLIs, and agent-assisted workflows for operations.
  • Data Quality & Reliability: Own end-to-end data validation, monitor backfills, enforce consistent schemas and fields, and monitor infrastructure costs.

What You Bring

  • Demonstrated ability to operate Elastic and Elasticsearch in production (ingest pipelines, index templates, mappings, queries, upgrades). Experience with ECK or Elasticsearch on Kubernetes is strongly preferred.
  • Experience leveraging AI tooling to accelerate development, operational workflows, and debugging complex systems while taking ownership of final outcomes.
  • Kubernetes: Experience deploying and operating workloads (scheduled jobs, Helm charts, operators) and troubleshooting pods/jobs.
  • Terraform: Proven track record managing cloud and Elasticsearch resources as code.
  • API Integration: Hands-on experience consuming REST APIs for data ingestion, covering authentication, pagination, rate limits, concurrency, and error handling.
  • Scripting: Solid Python scripting capabilities to write, read, and maintain ingestion and automation scripts.
  • Eligibility to work in Department of Defense (DoD) Impact Level 4 or above cloud service environments.

Bonus Points

  • Hands-on experience with cloud providers, preferably GCP, and working with audit/logging data.
  • Familiarity with GitHub, PR-based workflows, GitHub Actions, and CI/CD practices.
  • Knowledge of SOC operations and incident response (IR) workflows.
  • Experience designing and building dashboards and visualization tools.

Benefits & Perks

  • Competitive pay based on current work and market value
  • Comprehensive health coverage for you and your family
  • Flexible working locations and hours as a distributed company
  • Generous paid vacation days
  • Charitable donation and service matching up to $2,000 (or local equivalent) annually
  • Up to 40 hours per year of paid volunteer time
  • Minimum of 16 weeks of paid parental leave

Timezone overlap

UTC+0–+1

Open to

UK

Sign in to track applications and earn points.

More roles at Elastic

Similar remote roles