Millions of people use Notion every day, and we’re growing quickly
The Infrastructure Security team’s mission is to build a secure-by-default foundation across Notion’s technical stacks—architecting systems that make the secure path the easy path
As an IC4 on this team, you’ll own meaningful infrastructure security problems end-to-end: from identifying risk, to designing pragmatic controls, to shipping secure defaults that scale across engineering
Proactively enhance the security posture of our AWS accounts and cloud infrastructure
Create secure frameworks for secrets management and authentication/authorization
Design and deploy robust Identity and Access Management (IAM) solutions
Provide guidance and education on security and privacy best practices to cross-functional partners
Participate in (and help drive) mitigation strategies during security-related incident response- Working in production: you can debug systems in production and continuously improve components with minimal disruption
Pragmatic, risk-based prioritization: you model threats, balance trade-offs, and focus security investments where they drive the most business impact
Security architecture and expertise: you’ve built and maintained systems to secure cloud architectures, ranging from secrets management to Identity and Access Management solutions
Backend/infrastructure development: you’ve written and shipped production-grade code, and can contribute to the codebase and architecture to raise the bar on secure systems design
Empathetic communication: you communicate nuanced ideas clearly in writing and in real time; in disagreements, you engage thoughtfully and look for the right compromise
AWS security best practices, zero trust architectures, and/or deep IAM expertise
Participation in security communities (local or regional groups, conferences)
Data security or privacy engineering experience
Experience applying AI tooling to defensive security workflows