Cloud Platform & Infrastructure Engineer
aisle
Prague, Czech Republic
Posted Aug 25, 2026
- Full-time
- Research & Development
Job description
## **Why Aisle?** AISLE is **building the AI that finds, fixes, and verifies software vulnerabilities autonomously** - an end-to-end system that closes the gap between when a vulnerability appears and when it's safely patched. Vulnerabilities are the #1 root cause of cyber incidents, yet most organizations take weeks or months to remediate what attackers now exploit in days. We're ending that backlog. Our systems already find and fix vulnerabilities in the world's most heavily audited codebases - 375+ independently validated CVEs across projects like OpenSSL, curl, Linux, and Chromium - at machine speed and superhuman scale. AISLE runs entirely inside our customers' perimeter (cloud, on-prem, or fully air-gapped) and can run on our optimized models or theirs, so even the most sensitive organizations, including those operating critical infrastructure, stay in full control of their code and their models. Backed by world-class founders, advisors, and angel investors, we're defining a new category: sovereign, AI-native security. Our goal isn't to improve vulnerability management - it's to end the backlog and move toward a future where software defends itself. We’re a small, talent-dense team spread across Europe, the US and Canada. We value **high ownership, high velocity, and low-ego collaboration**. If you want to work with world-class minds in AI and security, thrive in fast-moving environments, and care about solving one of the toughest challenges in tech, Aisle is the place for you. ## **What we’re looking for** - **5+ years of experience** in cloud infrastructure, platform engineering, or SRE as a high-impact Individual Contributor. - **Deep Cloud Expertise:** Expert-level, hands-on knowledge of multiple cloud providers. Your primary focus and deepest expertise must be in AWS, but familiarity with GCP or Azure is a plus for supporting diverse customer-managed environments. - **Advanced Networking:** Exceptional understanding of cloud networking concepts (VPCs, Transit Gateways, complex peering, DNS, ingress/egress patterns, and VPNs) required for secure, distributed cloud architectures. - **Security & Compliance Mastery:** Strong experience operating in highly regulated environments. Familiarity with implementing a wide range of controls for certifications such as FedRAMP (Moderate or High), SOC2, and ISO27001 is highly desired, including robust IAM, encryption, and continuous monitoring. - **Diverse Deployment Architecture:** Deep experience designing and deploying software into highly restricted, customer-managed environments. This includes "Bring Your Own Cloud" (BYOC) models, fully on-premise installations, strict air-gapped networks, and highly secure GovCloud environments. - **Infrastructure as Code (IaC):** Extensive hands-on experience provisioning, managing, and versioning complex cloud infrastructure using Terraform or OpenTofu. - **Operational Maturity & Secure Delivery:** Understanding of "Platform as a Product" and experience building robust, automated delivery pipelines capable of shipping seamless updates across our multi-tenant SaaS, isolated customer VPCs, and fully disconnected (air-gapped) deployments. - **Identity & Access Management:** Proven, hands-on experience integrating enterprise identity providers in a B2B SaaS environment. Familiarity with SSO, SAML, OIDC, and SCIM protocols is expected. - **Container Orchestration:** Production-level experience with Kubernetes, including managed distributions such as EKS. Comfortable with Helm, cluster networking, RBAC, workload security, and managing multi-tenant or multi-cluster environments. - **Observability & Monitoring:** Strong command of the modern OpenTelemetry observability stack. Able to design and instrument systems to support meaningful SLOs/SLIs and feed actionable alerting pipelines. ## **What you’ll do** - **Build the Platform:** Engineer and scale our cloud infrastructure, ensuring it supports a hybrid/BYOC delivery model seamlessly across AWS, GCP, and Azure without increasing developer friction. - **Architect for Compliance & Security:** Serve as a core technical driver for achieving rigorous compliance certifications (such as FedRAMP, SOC2, or ISO27001). Ensure all infrastructure, networking topologies, logging, and access controls meet the highest federal and commercial security standards. - **Secure Cloud Networking:** Design, implement, and maintain complex network architectures that securely bridge our systems with our customers' private cloud environments. - **Optimise Cloud Spend:** Implement FinOps practices and architectural changes to ensure efficient resource utilization and cost-effective scaling across all cloud providers. - **Champion Reliability:** Establish and maintain system reliability through SLAs, SLOs, and Error Budgets. Drive blameless post-mortems and continuous improvement in our infrastructure. - **Shift Security Left:** Partner closely with Security to embed security best practices into our CI/CD pipelines, Terraform modules, and platform defaults.