Apply on company website Washington D.C, Sarasota, Miami, New York City, Toronto, ON On-site USD 165,000 – 205,000 / year

RUM Group Inc. is hiring a Senior Platform Engineer - Security

Rumble is the Freedom-First technology platform. We proudly offer a video platform, cloud services, advertising solutions, and a non-custodial cryptocurrency wallet. Rumble Cloud is seeking a Senior Platform Engineer (Security) to help operate, secure, and continuously harden the infrastructure that powers our public cloud, built on OpenStack and Ceph. This role sits at the intersection of platform engineering and security operations: you’ll apply and maintain security hardening across our Linux fleet and cloud control plane, track vulnerabilities through to remediation, and serve as a key engineering partner for internal and external audits. Strong Linux fundamentals are essential, and demonstrated security expertise, ideally backed by certification, is a significant differentiator. You’ll work across operating systems, OpenStack and Ceph components, and Kubernetes, using automation to keep baselines consistent and auditable. You’ll partner closely with cloud engineering, DevSecOps, and compliance stakeholders to ensure the platform meets both reliability and security expectations as it grows. If you enjoy hardening Linux at scale, working directly with vulnerability and control frameworks such as CIS Benchmarks and ISO 27001, and contributing to the security posture of mission-critical cloud infrastructure, this role offers substantial impact and technical depth. Responsibilities - Assess, implement, and maintain security hardening (CIS Benchmarks, STIGs, or equivalent) across Linux hosts, hypervisors, and the cloud control plane, using automated baselines with tools such as Ansible and Terraform. - Track and remediate vulnerabilities at the infrastructure layer, including operating systems and platform components such as OpenStack, Ceph, and Kubernetes, maintaining accurate inventory, patch SLAs, and risk-based prioritization. - Coordinate with the DevSecOps Engineer on application- and pipeline-layer remediation, ensuring alignment between platform hardening and SSDLC practices. - Serve as a primary technical contributor to internal and external audits, including evidence collection, control narratives, and responses to auditor questions, mapping work to ISO 27001 and other relevant frameworks. - Operate and improve core platform services on Linux infrastructure, contributing to automation, capacity planning, incident response, and reliability engineering. - Help design logging, monitoring, and alerting that support both operational and security use cases, in collaboration with platform, security, and SRE teams. - Document hardening baselines, security controls, and operational procedures clearly so that they are repeatable, testable, and auditable. Qualifications - Strong Linux systems engineering background (systemd, networking, storage, package management) on major Linux distributions. - Hands-on experience applying security hardening standards such as CIS Benchmarks, STIGs, or equivalent at production scale. - Solid understanding of vulnerability management (CVSS scoring, risk-based prioritization) and Linux security controls (SELinux or AppArmor, auditd, PAM, host firewalling). - Experience with infrastructure automation using Ansible, Terraform, and scripting in Bash and/or Python. - Experience supporting compliance or audit activities, including evidence collection, control documentation, and working directly with auditors or security teams. - Strong understanding of identity and authentication concepts (SSO, OAuth2/OIDC, privileged access) and excellent documentation skills. Preferred Qualifications - Security certifications such as CISSP, CISM, CCSP, GSEC, GCIH, Security+, or equivalent; more senior certifications are a significant plus. - Experience supporting ISO 27001, SOC 2, PCI DSS, or FedRAMP audits in a hands-on capacity. - Familiarity with OpenStack services (Nova, Neutron, Keystone, Cinder) and/or Ceph. - Experience with Kubernetes security and hardening, including CIS Kubernetes Benchmarks and Pod Security Standards. - Background with SIEM, EDR, or log aggregation tools (Elastic, Splunk, Wazuh, Falco), secrets management (Vault), and disk encryption (LUKS/dm-crypt).
Job Details
Location Washington D.C, Sarasota, Miami, New York City, Toronto, ON
Work mode On-site
Salary USD 165,000 – 205,000 / year
Department Rumble Cloud
Category Security
Posted 2 months ago
Application On company website
About company
RUM Group Inc. logo

RUM’s mission is to maximize the power of human imagination. We’re a holding company with assets designed to foster creativity, and put real power in the hands of the people who don’t just dream them up, they live them.

The company is built on two core beliefs: As AI democratizes knowledge, the world needs a free and open internet to express and explore our scarcest and most valuable assets, human imagination, creativity, and agency. The future enterprise will be run by humans empowered to explore to the edges of their imagination, powered by decentralized agentic AI and transacted on the rails of blockchain technology.

The company is built on the belief that future value accrues to two things that machines cannot replicate at scale: physical infrastructure and human creativity.

Quake AI is the physical foundation — where ideas are built, explored, and scaled to the edges of agentic compute. Rumble is the foundation of creativity, where ideas are expressed and the freedom is granted to push to the edges of imagination. Rumble is where human authenticity and creativity come alive.

All jobs at RUM Group Inc. Visit website