JobRaahGet matched free

Jobs

Product & Infrastructure Security Engineer

Ultahost · Georgia · United States · On-site

Posted Aug 17, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

Job Overview UltaHost is looking for a Senior Product & Infrastructure Security Engineer to take ownership of the security of our hosting products and the infrastructure that delivers them. This is a deeply technical, hands-on position combining product security, application security, Linux/server security, virtualization, network security, vulnerability management, and DDoS incident response. We are looking for someone who understands security not only from a testing perspective, but from the realities of operating and protecting production hosting infrastructure. What You’ll Own Hosting Product & Application Security Review the security of VPS, VDS, dedicated servers, shared hosting, WordPress, cloud, Mac hosting, email hosting, game hosting, customer portals, control panels, APIs, and internal hosting platforms. Assess authentication, authorization, session security, tenant isolation, secrets handling, privileged operations, and data-exposure risks. Perform threat modeling, architecture reviews, security testing, API security reviews, and release risk assessments. Define security requirements and release checks for new products, major features, and sensitive platform changes. Work with Product, Engineering, DevOps, and QA teams until vulnerabilities are remediated, retested, and closed. Server, Virtualization & Network Security Define secure baselines for Linux servers, hypervisors, control panels, network devices, firewalls, storage systems, and management interfaces. Review SSH configurations, exposed ports and services, routing, DNS, firewall rules, segmentation, management access, and privilege boundaries. Secure environments involving Proxmox, KVM, VMware, Ceph, containers, VPS nodes, dedicated infrastructure, and data-center connectivity. Investigate brute-force attacks, malware, suspicious processes, privilege escalation, lateral movement, data exfiltration, and abnormal traffic. Own technical DDoS/DoS response, including traffic analysis, mitigation, provider escalation, evidence collection, and post-incident reviews. Vulnerability & Technical Incident Management Run vulnerability scanning, configuration audits, patch-risk assessments, and targeted penetration testing. Prioritize vulnerabilities according to actual customer and infrastructure risk. Assign remediation owners and deadlines and verify that fixes are effective. Lead product and infrastructure security incidents. Support internal security incidents when servers, networks, or applications are involved. What We’re Looking For 5+ years of hands-on experience in hosting security, infrastructure security, Linux security, network security, product security, cloud security, or a closely related role. Advanced Linux administration skills. Real-world experience with VPS, dedicated servers, shared hosting, control panels, hypervisors, storage, or large multi-tenant environments. Experience with Proxmox, KVM, VMware, Ceph,…