Step Up to the Plate
Edge Security Platform Engineer
Location
United States
Posted
36 days ago
Salary
$140K - $160K / year
Seniority
Senior
Job Description
Edge Security Platform Engineer
Major League Baseball (MLB)
• Own and operate MLB’s edge security platforms (WAF, bot mitigation, CDN), including configuration, tuning, and lifecycle management • Maintain secure, resilient environments using infrastructure-as-code and controlled deployment practices • Continuously refine rules, policies, and thresholds to improve protection and prevent drift • Participate in an on-call rotation for high-severity edge security incidents • Design and manage defenses against automated abuse (e.g., credential stuffing, scraping, ticketing bots, payment fraud) • Analyze telemetry to identify threats, false positives, and attacker behavior • Partner with fraud and payment teams to strengthen early detection and mitigation • Optimize security controls to protect uptime and user experience during high-traffic events • Serve as a subject matter expert during incidents, ensuring mitigations meet latency, conversion, and availability targets • Build and maintain logging, monitoring, dashboards, and alerting across edge and application layers • Integrate telemetry with SIEM tools to improve detection, triage, and auditability. • Track and report on key risk and performance metrics • Drive automation for detection, response, and change management while maintaining human oversight • Establish strong deployment controls, audit trails, and support compliance (e.g., PCI, SOC 2) • Collaborate cross-functionally to enhance edge security strategy, tooling, and execution
Job Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or a related field, or equivalent practical experience
- 5+ years in security, platform, SRE, or infrastructure engineering roles supporting high-scale, internet-facing systems; experience with high-demand consumer platforms such as ticketing, e-commerce, streaming, or live events strongly preferred
- Hands-on experience operating and tuning WAF, bot mitigation, rate limiting, CDN security, and related traffic protection controls in production environments
- Direct experience with HAProxy Enterprise WAF and bot/security modules, and with CDN including WAF, bot management, rate controls, and telemetry or log streaming
- Strong understanding of HTTP/S, TLS, DNS, TCP/IP, reverse proxying, caching, rate limiting, server- and client-side fingerprinting, and edge traffic behavior
- Experience investigating web abuse, fraud signals, or adversarial automation affecting login, checkout, account, or transaction flows
- Proficiency with Python, Go, Bash, or similar scripting languages, and experience with Terraform, Ansible, Git-based workflows, CI/CD pipelines, or other infrastructure-as-code practices
- Experience with observability, logging, and SIEM integration for security and operational telemetry
- Strong troubleshooting skills across distributed systems, production incidents, and customer-impacting edge events
- Strong written and verbal communication skills, with the ability to work effectively across technical and non-technical teams.
Benefits
- Competitive Benefits Package
- Company 401K Contribution
- Paid Time Off and Holidays
- Paid Parental Leave
- Access to Free Tickets to Baseball Games & MLB.TV
- Discounts at MLB Store | MLBShop.com
- Employee Assistance Programs (EAP)
- Onsite/Online Training & Development Programs
- Tuition Reimbursement
- Disability Benefits (short term and long term)
- Life and Accidental Death Insurance
- Pet Insurance
Related Guides
Related Categories
Related Job Pages
More Platform Engineer Jobs
Platform - Principal Software Engineer (Networking)
ElasticSelf-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faster while protecting a
Role Description As part of the Platform Engineering department, the Traffic team is crafting, building, and improving the multi-cloud platform at scale for Elastic Cloud Hosted and Serverless. We grow and mature our distributed network services and solutions for multiple cloud service provider platforms. We are built on Kubernetes, Go/Scala, and custom orchestration architectures. In your daily life with us, you will participate in: - Coding and innovating technical designs - Crafting solutions and improving resilience - Prioritizing security, bug fixes, and features - Debugging Azure Networking for Elastic Cloud Serverless Qualifications - 10+ years in Software Engineering with product success in delivering Cloud network solutions - Experience in public cloud, Go, and managed Kubernetes services is advantageous - Success and lessons from striving for 'progress not perfection' in Platform reliability - Passion for developing solutions that involve inclusive communication methods - Examples of working in distributed teams or working remotely is desirable Requirements - Designed and built a SaaS product in a public cloud ideally using Infrastructure-as-Code tooling such as Crossplane or Terraform - Built Kubernetes-at-scale infrastructure across multiple cloud providers - Written product features or functions in Golang or other programming languages - Worked with containerized services (such as Docker) - Proven results in leading and improving cross-team engineering initiatives - Experience in system administration with professional skills in Linux on distributed systems at scale - Diagnosed or designed, implemented, and created solutions with the Elastic Stack - Experienced in a self-organizing and sharing in a globally distributed team environment - Strengthened team members by uplifting others with coaching and mentoring Benefits - Competitive pay based on the work you do here and not your previous salary - Health coverage for you and your family in many locations - Ability to craft your calendar with flexible locations and schedules for many roles - Generous number of vacation days each year - We match up to $2000 (or local currency equivalent) for financial donations and service - Up to 40 hours each year to use toward volunteer projects you love - Minimum of 16 weeks of parental leave
Role Description We are looking for a Platform Engineer to own and improve the build, deployment, observability, security, and operational tooling around our cloud-native data protection and disaster recovery solution for Kubernetes. - Maintain existing platform services - Improve automation - Support CI/CD pipelines - Assist with Kubernetes-based deployments - Ensure that staging and production environments remain observable, secure, and operationally ready Qualifications - Hands-on experience with Kubernetes operations, including basic workload management, pod lifecycle, troubleshooting, and logs - Experience with CI/CD systems and pipelines, preferably Jenkins - Scripting experience, preferably in Python - Experience with cloud platforms such as AWS, Azure, or Google Kubernetes Engine - Additional experience in any of the following areas would be beneficial: - Concourse CI - Automated test execution through CI/CD pipelines - Prometheus and Grafana monitoring, alerting, and dashboard maintenance - Security scanning in build pipelines, including static analysis and container image scanning - Helm chart development and Kubernetes packaging - Marketplace integrations such as OpenShift Operator, Rancher Marketplace, CNAB, or similar - Terraform provider development or maintenance - Cloud operations dashboards, usage reporting, and operational metrics - Managing access keys, certificates, rotation schedules, and related security controls - Handling operational processes such as user data deletion requests - Python runtime upgrades and dependency management - MongoDB operations, preferably with Percona Operator and encryption - Kubernetes self-hosted deployment models - Log collection and analysis platforms - Working with staging and production environments - Creating technical reports based on customer usage and storage consumption data Benefits - Full time job - All necessary equipment such as laptop, additional monitor, and accessories - Individual career path and professional development initiatives - Continuous performance feedback and end-year performance review - Remote work and flexible work hours (we're fine with breaks in the middle of the day) - Set of non-salary benefits (Medicover, MultiSport, life insurance, referral program)
• Design and develop a Go-based control plane powering the Kubernetes lifecycle platform • Manage hundreds of Kubernetes clusters across many locations • Implement cluster registry and state model for sites, hardware types, clusters, nodes, capacity, and health • Establish bootstrap workflows for newly booted bare-metal nodes into Kubernetes-ready nodes • Ensure control-plane reliability using etcd or equivalent strongly consistent state • Develop local site agents that remain operational during temporary central-control-plane outages • Create integration contracts with OS image layer and workload orchestration layer
• Build CI/CD pipelines that build multiple Linux OS images in parallel • AWS-based image builder infrastructure for x86 and ARM64 images • PXE boot infrastructure so bare-metal servers can install themselves • DHCP and TFTP configuration for boot-time server identification • Harbor or OCI registry workflows for storing, tagging, promoting, and mirroring images • Cosign signing, SBOM generation, and vulnerability scan gates • Runbooks for bringing up new data-center sites and debugging failed boots or failed image builds

