- Location
- San Francisco, California, United States
- Employment
- Full time
- Level
- Mid level
- Posted
- 2 months ago
About this role
Who We Are
Serval is an AI-native automation platform transforming how enterprises operate. We build intelligent agents that understand real-world workflows and execute them end-to-end - replacing manual processes and rigid legacy systems with adaptive, learning software. Founded in early 2024, Serval is already trusted by companies like Fox, Notion, Perplexity, Vercel, and Brex to automate high-volume, high-friction operational work across their organizations.
At the core of Serval is an agentic AI platform that turns natural language into production-grade workflows. Our agents don’t just respond to requests - they reason, take action across systems, and continuously improve with usage. What began with operational use cases has quickly evolved into a horizontal AI automation layer used across IT, HR, Finance, Security, Legal, and Engineering.
Our mission is to eliminate repetitive, manual work across the enterprise and give teams leverage through intelligent automation. Long term, we’re building the universal AI operations layer - a system of agents that sits across business functions and runs the workflows that keep modern companies moving.
We’re backed by leading investors including Sequoia Capital, Redpoint Ventures, Meritech, First Round, General Catalyst, Elad Gil, and others.
Role Overview
As Infrastructure Security Lead, you'll build and scale the foundations of how Serval secures its cloud, compute, and platform infrastructure. You will set the strategy and drive execution for securing our AWS environments, Kubernetes clusters, container runtimes, and the production systems our customers trust us to operate in; making security a property of the infrastructure itself rather than a control bolted on afterward.
You'll be a hands-on leader with deep technical credibility and strong engineering instincts. You will build and mentor a team, partner closely with Engineering and Product, and ensure that secure-by-default infrastructure, least-privilege access, and strong isolation boundaries are designed into the systems that power Serval.
What You'll Do
Design, implement, and operate Serval's infrastructure security program across cloud (AWS), Kubernetes, container runtimes, networking, and CI/CD, including hardening, configuration baselines, workload isolation, and continuous posture management.
Own cloud and identity security, driving least-privilege IAM, secrets management, key management, network segmentation, and the guardrails that keep our multi-tenant production environment safe at scale.
Secure the container and orchestration stack end-to-end. Image provenance and supply-chain integrity, registry and admission controls, runtime sandboxing and isolation, and Kubernetes hardening (RBAC, network policies, pod security), with particular attention to the isolated workers that execute customer workflows.
Build, lead, and directly mentor a team spanning cloud security, platform/Kubernetes security, and infrastructure vulnerability management, hiring and scaling these functions deliberately and proportionately as Serval's platform and customer footprint grow.
Drive infrastructure vulnerability management and remediation, partnering with engineering to identify, prioritize, and durably close exposure across cloud configuration, dependencies, base images, and the software supply chain.
Embed security into the platform by design, partnering deeply across Engineering, Product, and Infrastructure so that secure defaults, paved roads, and policy-as-code are the easiest path for engineers, not an afterthought.
Build infrastructure capable of withstanding sophisticated adversaries, including by using Serval's own agents to solve frontier infrastructure-security and security-engineering problems.
What You'll Need
Have 10+ years in cybersecurity with deep expertise in cloud security, infrastructure security engineering, and platform/production hardening.
Have deep, hands-on expertise with AWS, Kubernetes, container runtimes (e.g., gVisor/Firecracker-style isolation), and infrastructure-as-code (Terraform).
Have deep experience building and leading infrastructure/cloud security, platform security, and vulnerability management teams.
Have stellar leadership skills and a demonstrated history of driving durable, continuous improvements to programs, processes, and people.
Have strong software-engineering instincts, comfortable reading and writing code, building tooling and automation, and shipping policy-as-code and secure-by-default paved roads alongside engineering teams.
Have deep expertise in cloud and identity security primitives: IAM, secrets and key management, network segmentation, workload isolation, and multi-tenant boundary design.
Understand modern adversary tradecraft (TTPs) against cloud and container infrastructure, and have demonstrated experience translating it into practical hardening, isolation, and remediation strategies.
Are mission-oriented, have unimpeachable integrity, and are passionate about building resilient, defensible infrastructure in a highly complex, fast-paced environment.
What We Offer
Impact: Be a key player in shaping the success of our product and company.
Growth: Build a fundamentally new AI product offering with the support of our experienced team and investors. Grow rapidly with the company.
Culture: Join a culture that values innovation, ownership, accountability, and fun.
As published by Serval. Applications are handled on their site.
Skills this posting mentions
About Serval
We Give IT Superpowers. Clear the help desk with automations that build themselves.
All 41 openings at ServalOne click, then it is written
Apply to Serval with a resume written for this role.
Queue Security Engineer, Infrastructure and I read the posting, rewrite your resume against it, draft the cover letter, and score the fit. Then you press send, or press one button and I fill in Serval’s form for you.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- 25 sent a week, free
- No card
- Nothing sent until you say so
More roles at Serval
See all- 5 weeks ago
- 7 weeks ago
- 2 months ago
- 2 months ago
- 2 months ago
- 2 months ago
Similar roles elsewhere
See more- Today
Support Engineer, AI Infrastructure & Tooling
FigmaSan Francisco, CA • New York
$169k - $245k/yrMid levelEngineering
Put this to work
Paste your career in once. Every application after that is written for you.
Drop a resume or a LinkedIn URL. I rank the live openings against it, rewrite the resume and write a cover letter for the best of them, and fill in the employer's form when you press the button. You read, you decide what goes out.
01Drop your resume
A PDF or a LinkedIn URL. About a minute, once.
02I rank the openings
Every weekday morning, the live catalog scored against your history. Up to 20 worth your time, not two hundred links.
03Each one is written up
Resume rewritten for the posting, a cover letter, a fit score. Press send, or let me fill in the form.
- New matches ranked and written before you are up.
- Every bullet stays inside what your history supports. Nothing invented.
- Queued, submitted, interviewing, offer: one screen, not a spreadsheet.
500 free credits on sign-up. No card. Nothing is sent until you say so.
Listed from the job board Serval publishes. Refolk is not the employer and does not handle their hiring. Applications go to Serval directly.