← all jobs

[Remote] Senior Infrastructure Security Engineer

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Dropbox is a company focused on simplifying the way people work together through innovative cloud-based solutions. The Senior Infrastructure Security Engineer will safeguard Dropbox's digital ecosystem by designing and implementing security controls for AI and agentic infrastructure, while collaborating with cross-functional teams to enhance security posture.

Responsibilities

  • Design, deploy, and operate security controls for Dropbox’s AI and agentic infrastructure, including model gateways, inference services, vector stores, retrieval systems, and supporting cloud and Kubernetes platforms
  • Implement least-privilege and secure-execution patterns for AI agents, including per-tool authorization, sandboxing, human-in-the-loop approvals for high-impact actions, and separation of policy validation from execution
  • Lead security implementation for AI tool and agent connectivity layers, including MCP gateway deployments, with controls for OAuth-based authorization, scope minimization, token audience validation, origin validation, replay protection, and secure isolation between trusted and untrusted tool domains
  • Deploy, build, and/or operate security infrastructure solutions to help scale and raise the security bar for Dropbox’s on-prem and cloud infrastructure
  • Automate security controls using scripting to eliminate redundant work and minimize need for human involvement
  • Collaborate with cross functional teams and lead security initiatives to influence product decisions and enhance security posture

Skills

  • 9+ years of Security experience or related industry experience, demonstrating impactful contributions to security strategies
  • Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience, with coding proficiency
  • Experience securing LLM, RAG, or agentic AI systems in production, with hands-on implementation of controls for prompt injection, sensitive-data disclosure, excessive agency, data or model poisoning, and AI supply-chain risk
  • Experience designing identity and authorization for non-human workloads and agents using technologies such as SPIFFE/SPIRE, OAuth 2.1 or OIDC, AWS IRSA, Google Workload Identity Federation, Azure managed identities, or equivalent patterns
  • Integrate adversarial testing and release gates for AI systems into CI/CD, including regression coverage for prompt injection, tool abuse, memory poisoning, approval bypass, and multi-agent escalation scenarios
  • Solid knowledge of Linux fundamentals including system administration, security, networking, scripting, and troubleshooting
  • Proficiency using one or more scripting or high-level languages to automate tasks, manipulate data, or build small systems e.g. Bash, Python, Go, Rust, Ruby, NodeJS, C/C++, Java
  • Experience securing MCP-based systems or similar AI agent and tool protocols
  • Experience with multi-agent security controls such as trust boundaries, signed inter-agent messaging, and circuit breakers
  • Familiarity with NIST AI RMF, NIST SP 800-218A, MITRE ATLAS, CSA AICM, and OWASP LLM and agentic security guidance
  • Experience with security tools such as Teleport, CrowdStrike, Proofpoint, IPS/IDS, SIEM or SOAR
  • Certifications such as CISSP, CISM, or equivalent

Company Overview

  • Dropbox is a smart workspace company that provides secure file sharing, collaboration, and storage solutions. It was founded in 2007, and is headquartered in San Francisco, California, USA, with a workforce of 1001-5000 employees. Its website is https://www.dropbox.com.
  • Company H1B Sponsorship

  • Dropbox has a track record of offering H1B sponsorships, with 13 in 2026, 121 in 2025, 105 in 2024, 103 in 2023, 166 in 2022, 197 in 2021, 157 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • More open positions

    [Remote] Lead Program Manager - GTM Acceleration

    Work from home Full-time role

    [Remote] Account Manager, Strategic Parternships

    Work from home Full-time role

    [Remote] Senior Project Manager

    Work from home Full-time role

    [Remote] Project Manager, Litigation (Non-technical)

    Work from home Full-time role

    [Remote] Dayforce Implementation Consultant (Remote - US, Canada, PH)

    Work from home Full-time role

    Lead Strategy Consultant, Conversation Intelligence (CI)

    Work from home Full-time role

    Remote Web Chat Associate – Customer Engagement & Support Specialist (Part‑Time, Work‑From‑Home) – careerzynith

    Work from home Full-time role

    [Remote] Data and Reporting Analyst (Remote)

    Work from home Full-time role

    Customer Service Representative

    Work from home Full-time role

    AI Specialist

    Work from home Full-time role

    Lead Fraud Investigator

    Work from home Full-time role

    Senior Coordinator, Complaint & Appeals - Remote

    Work from home Full-time role

    Online Walgreens Data Entry DPS At Careermilard

    Work from home Full-time role

    Purchasing & Data Entry Specialist – Procurement Operations, Vendor Coordination, and Order Management at careerzynith

    Work from home Full-time role

    Litigation Attorney | $220k Base | Fully Remote

    Work from home Full-time role

    Senior Software Engineer, Core Experiences - State College, PA, USA

    Work from home Full-time role

    Remote Data Entry Associate – Cloud Services Support for careerzynith – Entry‑Level, No Experience Required, Competitive Hourly Rate

    Work from home Full-time role

    Channel Partnerships Director

    Work from home Full-time role

    [Remote] Applications Project Manager – Tissue & Towel

    Work from home Full-time role

    [Remote] Information Technology Service Management Analyst

    Work from home Full-time role

    Auto Liability Claims Assistant Branch Manager

    Work from home Full-time role