[Remote] Senior Associate - Infrastructure Platform & Security Engineer Job Details | New York Life Insurance Co
Note: The job is a remote job and is open to candidates in USA. New York Life is a Fortune 100 mutual company with a legacy of purpose and integrity. They are seeking a Senior Associate - Infrastructure Platform & Security Engineer to own the platform operating system standards and govern the image artifacts for hybrid environments, ensuring compliant and repeatable builds at scale.ResponsibilitiesResearch and download all patches for the Compute environmentTest each of the patches to ensure that each patch resolves its intended vulnerability or issueBundle the vendor patches and release them to the team for non-prod deployment; be available to resolve issues before and during and after production releaseIf a critical patch is released from a vendor during or in between patch cycles, immediately research the vulnerability, test the patch and prepare it for an out of band patch cycle if necessaryDefine and maintain crossâplatform OS standards for Linux and Windows (configuration baselines, hardening, packages, services, logging, time sync, and required agents)Engineer hardened/certified image artifacts: install/base images, onâprem VM templates, AWS AMIs for EC2, node images, and container base imagesCoordinate certification and security signâoff for image releases (CIS-aligned hardening, approved crypto settings, certificates, and required controls)Maintain image versioning, release notes, and lifecycle (deprecation, end-of-support posture, and upgrade paths) with clear consumer guidanceEnsure that engineering, design, server build, configuration and other related documentation is present and up to date and easily retrievableOwn and evolve Terraform modules that implement the standard âgolden pathâ for provisioning compliant OS platforms across environmentsDesign modules to be reusable, opinionated, and safe-by-default (networking hooks, identity integrations, logging/monitoring, secrets handling, tagging/metadata)Enable Git-based workflows and CI/CD for module promotion and consumption at scale (testing, validation, approvals, and rollback patterns)Implement and operate guardrails/enforcement to prevent drift from OS standards (policy-as-code, validations, and automated compliance checks)Define and run the exception workflow: intake, risk assessment, approvals, time-bound waivers, tracking, and remediation plansPartner with Security, IAM, and Risk teams to ensure governance, auditability, and evidence collection for standards adoptionPlan and execute rollout sequencing for new standards and image releases (pilot â early adopters â broad rollout), minimizing operational riskOperate production support for golden path platforms, including incident response, root cause analysis, and continuous improvements to reduce repeat issuesEstablish runbooks, operational procedures, and communications for consumers and platform operatorsDefine and implement monitoring and dashboards for image/standard adoption, compliance status, and drift detection across Linux, Windows, EC2/AMI, and container basesIntegrate telemetry with enterprise monitoring to provide proactive alerting and visibility for stakeholders and operationsPartner with technology team to execute the standard golden path at scale, aligning on implementation patterns, operational handoffs, and support modelsCollaborate with application teams, cloud platform teams, and infrastructure engineering to onboard workloads to the golden pathProvide technical leadership and mentorship, driving adoption through clear documentation, training, and stakeholder engagementSkills7+ years engineering and operating enterprise OS platforms across Linux and Windows in mission-critical, hybrid environmentsProven expertise building and maintaining hardened/certified images (VM templates, EC2 AMIs, node images, container base images) and operating image build pipelines (e.g., Packer or equivalent)Strong Terraform skills (module design, versioning, testing, promotion) with ability to deliver opinionated 'golden path' modules for broad adoption; familiarity with Ansible and automation at scaleWorking knowledge of AWS compute patterns (EC2/AMI), IAM, logging/monitoring integrations, and tagging/metadata standards; exposure to Azure/Oracle Cloud and hybrid operationsExperience implementing policy-as-code guardrails (validation, drift detection, compliance scanning) and running structured exception/waiver workflowsStrong grounding in networking (TCP/IP, DNS, HTTP/S), storage (SAN/NAS/local/filesystems), HA/resiliency, and virtualization (VMware/UCS)Excellent incident/change discipline, clear communication to technical and non-technical stakeholders, and ability to partner with ETS and cross-functional teams to execute standards at scaleBenefitsOvertime eligible: ExemptDiscretionary bonus eligible: YesSales bonus eligible: NoEmployees are eligible for an annual discretionary bonusEmployees may also be eligible to participate in an incentive programWe provide a full package of benefits for employees â and have unique offerings for a modern workforce, including leave programs, adoption assistance, and student loan repayment programsCompany OverviewFor over 180 years, weâve helped turn your biggest dreams into milestones that last a lifetime. It was founded in 1845, and is headquartered in Leawood, Kansas, USA, with a workforce of 10001+ employees. Its website is https://www.newyorklife.com/amn.Company H1B SponsorshipNew York Life has a track record of offering H1B sponsorships, with 19 in 2026, 148 in 2025, 99 in 2024, 85 in 2023, 77 in 2022, 48 in 2021, 65 in 2020. Please note that this does not guarantee sponsorship for this specific role.