Supabase logo

Supabase

Platform Security Engineer (AMER/APAC)

Region Restricted

Remote work allowed only within certain countries or regions.

APAC

Employer listed it 3 weeks ago · Added 5 days ago

Been open since 3 weeks ago, still being checked, but it has been live a while.

Salary

Not stated

Location

APAC

Work style

Async

Contract

Full-time

Experience

Mid

Category

Software

This employer didn't state pay. Jobs like this usually pay around $165k–$260k a year, a typical range taken from 595 mid-level software roles on Nomaders that do state pay. It's a guide, not an offer.

Remote flexibility

Region Restricted

The board lists this as worldwide, but the job title points at APAC.

What the employer says

  • Source listing states candidate location: "Remote, Global, Remote"
  • Job title names a location: "Platform Security Engineer (AMER/APAC)"

What Nomaders makes of it

  • Applications from outside that area are often rejected

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

About Supabase

Supabase is the Postgres development platform, built by developers for developers. We provide a complete backend solution including Database, Auth, Storage, Edge Functions, Realtime, and Vector Search. All services are deeply integrated and designed for growth.

Start in minutes with a fully managed, scalable Postgres database and a suite of tools that eliminate the complexity of backend development. Use one or use all—Supabase gives teams the flexibility of open source with the speed and simplicity of a modern platform, so they can move fast without sacrificing control.

What Are We Looking For

We’re looking for a Platform Security Engineer to join our team and help strengthen the security of Supabase’s infrastructure, cloud platform, Kubernetes environments, and containerized workloads as we continue to scale. You’ll work closely with infrastructure, platform, SRE, product engineering, and technical leadership , helping us proactively reduce risk across the systems that run Supabase.

This role is ideal for someone who has deep hands-on experience with AWS, Kubernetes, containers, Linux, and large cloud environments and is excited about securing developer infrastructure without slowing teams down. Success in this role means improving the security posture of the platform through pragmatic engineering, clear technical judgment, and scalable guardrails.

What You’ll Be Responsible for

In this role, you’ll:

Identify and reduce security risk across AWS, Kubernetes, containerized workloads, and platform infrastructure.

Conduct threat modeling, architecture reviews, and technical risk assessments for platform and infrastructure systems.

Partner closely with infrastructure, platform, and SRE teams to design practical controls and secure-by-default patterns.

Improve Kubernetes and container security across areas like workload isolation, RBAC, admission control, secrets, network policy, and runtime hardening.

Assess container runtime and Linux isolation risks, including capabilities, seccomp/AppArmor, namespaces, cgroups, and container escape scenarios.

Strengthen AWS security posture across IAM, account boundaries, network controls, logging, detection, encryption, and service configuration.

Build scalable mechanisms such as automation, guardrails, paved paths, detection, secure defaults, and review frameworks.

Distinguish between theoretical risk and material platform risk to prioritize security efforts effectively.

You Might Be a Good Fit If You

Have senior-level experience in platform security, cloud security, infrastructure security, container security, or security engineering .

Have deep practical experience with AWS, Kubernetes, containers, and Linux security fundamentals .

Have worked in large cloud environments , multi-cluster Kubernetes setups, developer platforms, SaaS platforms, or high-scale infrastructure teams.

Can reason clearly about identity, networking, workload isolation, runtime security, secrets, supply chain, and blast radius .

Communicate clearly across both technical and non-technical audiences, especially in a written, asynchronous environment .

Are able to manage security efforts across complex projects with various stakeholders

Are energized by solving real-world infrastructure security problems and navigating ambiguity while moving quickly.

Requirements

The employer hasn't listed requirements separately, they're described in the role summary above and on the original listing.

Benefits

  • ·We hire globally. We believe you can do your best work from anywhere. There are no Supabase offices, but we provide a WeWork membership or co-working allowance you can use anywhere in the world.
  • ·Every team member receives ESOP (equity ownership) in the company. We want everyone to share in the upside of what we’re building together.
  • ·Use this budget to set up your ideal work environment—laptop, monitor, headphones, or whatever helps you do your best work.
  • ·Supabase covers 100% of health insurance for employees and 80% for dependents, wherever you are. Your wellbeing and your family’s health are important to us.

How to apply

  1. 1Check the flexibility label above, region restricted, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Supabase, mentioning your remote working experience and working hours (Async).
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 5d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

Typically $165k to $260k per year · You'll be taken to the employer's careers page.