TRM Labs
Senior Infrastructure Engineer
North America
Apply through hirly
Upload your resume and get a version tailored to this job, plus a cover letter, in about thirty seconds — before you create an account.
Apply with hirlyhirly's read of this role
- Seniority
- Senior
- Country
- US
- Work mode
- Remote-friendly
- First seen by hirly
- 28 Sept 2026
Derived automatically from the posting. Sign up to see how the role scores against your own resume.
the posting
Build a Safer World.
TRM Labs provides AI-powered intelligence solutions that help public and private sector agencies investigate and disrupt crime. TRM's platforms enable investigators to trace illicit activity, build cases, and construct operating pictures of threat networks. Leading agencies and businesses worldwide rely on TRM to make the world safer and more secure.
Remote-first (US) · Infrastructure Engineering · flexes to Staff for the right builder
In one line
Our team builds the platform that every TRM product, every internal AI agent, and every investigation our customers run depends on. We are not maintaining a system someone else finished - we are building its next generation, on the bleeding edge, for workloads where reliability and security are not negotiable. We're looking for an engineer who has taken infrastructure from zero to one and can operate it in production.
Why this work matters
TRM's platform lets financial institutions and governments trace illicit finance, disrupt crypto- and AI-enabled crime, and run some of the highest-stakes investigations in the world. Our infrastructure is what lets investigators and banks trust the data underneath them . When we get it right, a case moves and a threat gets stopped. When infrastructure is weak, everything above it is slow, fragile, or unsafe. That's the job: make the foundation something the mission can be built on.
What you'll actually work on
This is real, current work - not a hypothetical roadmap:
Multi-region, multi-cloud Kubernetes across US GCP, EU GCP, and AWS GovCloud - making "stand up another site" a self-serve configuration instead of a bespoke project.
A genuinely self-serve internal PaaS. ~60+ engineers already deploy on it, the large majority with no infra person in the loop. You extend the paved road - golden paths, guardrails, and interfaces engineers actually enjoy using.
Agent-native infrastructure. Secure sandboxes where AI agents build and ship, and encoding our operational knowledge into skills so the platform increasingly runs and heals itself.
Zero-trust secrets with Vault. Short-lived, dynamic credentials replacing every long-lived secret in the system - closing the blast radius on leaked passwords, one database at a time.
Reliability engineering that means it. SLOs and error budgets, real observability, and disaster recovery with validated cross-region restore and sub-hour RTO.
Databases as a first-class platform concern. Postgres on Kubernetes, migrations, replication, and redundancy for services that can't blink.
Compliance as code. SOC2 and FedRAMP posture built into the platform so security is the default, not a scramble before an audit.
What you'll own
You'll own an Area of Responsibility end to end - a slice of the platform that is genuinely yours. You'll define what "great" looks like for it and build the glide path to get there rather than waiting for one; obsess over the metrics that tell you whether it's actually working; and fix root causes so a class of problems disappears instead of working the ticket queue faster. You own the outcome, not just your layer of it.
Who you are
This is a builder's role , and the bar is high:
You've taken infrastructure from zero to one - designed and shipped a platform capability that other engineers came to depend on, not just operated one that already existed.
You write real software (Go, Python, or similar). You build tooling, automation, and services - you don't only wire up other people's tools.
You're deep in GCP and/or AWS - compute, IAM, VPC, networking, storage, load balancing - and comfortable operating across clouds.
You've run Kubernetes in production (GKE/EKS) and are up to date with the state of the art for IaC.
You can debug low-level problems without hand-holding - a networking issue, a saturated node, a slow query, a failing deploy - and get to the actual cause.
You're fluent across the modern platform toolchain: GitOps (Argo/Flux), containers, CI/CD, observability built on SLOs rather than dashboards no one reads.
You have strong instincts for security and databases — zero-trust, secret management, systems hardening; provisioning and migrating production databases. SOC2/FedRAMP exposure is a plus.
If you've built platforms that other engineers rely on every day, we want to talk.
What makes people thrive here
High ownership and low ego. Mission-first. Comfortable where speed and rigor have to coexist - something that takes a quarter elsewhere is expected to move in weeks here, without cutting the corners that matter for security and reliability. You see infra, security, data, and product as one connected system, and you turn one-off fixes into reusable paved roads by instinct.
What should give you pause
The scope is real and the playbook isn't fully written - you'll be writing it. Reliability and compliance expectations are high, and mistakes here show up as real incidents for customers and internal teams. If you prefer an environment where everything is defined before you start, this will feel uncomfortable. If that kind of ownership is exactly what you're after, you'll love it.
How we work
Remote-first (US). Small, high-leverage team with a weekly on-call rotation you'll take part in. We're an AI-native team in practice, not in theory - we use agents in our daily workflow and ship the skills that let the platform operate itself.
Application Instructions
If you’re interested in joining TRM, we encourage you to apply directly. Every application is reviewed by our Talent team.
Before applying, review the job description carefully and highlight the experience and impact that best demonstrate the required qualifications. Please also provide thoughtful and accurate answers to the application questions, as these will be used to evaluate your qualifications for the role.
If you send your resume directly to someone at TRM, we can’t guarantee it will reach the appropriate hiring team. Applying directly is the best way to ensure you’re considered.
What to Expect From Our Interview Process
Our process is designed to understand how you think, solve problems, and deliver impact, while giving you the opportunity to evaluate TRM. Most interview processes include a case study, AI skills assessment, and Leadership Principles interview.
Recruiter Intro: Explore your experience, motivations, and alignment with the role.
Hiring Manager: Dive deeper into your relevant experience, skills, and impact.
First Round: Typically 1–2 interviews focused on the skills most critical to the role.
Final Round: Typically 3–5 interviews to go deeper on your craft, problem-solving, and alignment with TRM.
References: We’ll speak with former colleagues who can provide perspective on your work and impact.
Offer: If it’s a mutual fit, your recruiter will walk you through your offer and answer your questions.
Welcome to TRM: Once you sign, we’ll get you ready for your first day and onboarding.
Your recruiter will share your specific interview plan and preparation guidance along the way.
Learn more about interviewing at TRM
Life at TRM
We are building a safer world. That promise shows up in how we work every day.
TRM moves quickly. We are a high velocity, high ownership team that expects clarity, follow-through, and impact. People who thrive here are energized by hard problems, experimentation, and continuous feedback. If something takes months elsewhere, it will ship here in days.
Our work sits at the intersection of AI, national security, and fighting crime. The problems are complex, the stakes are real, and the environment evolves quickly. The pace and intensity of the work reflect the importance of the mission. As a result, the way we operate requires a high level of ownership, adaptability, collaboration, and creative problem-solving.
At TRM, you should expect:
Priorities and targets to change quickly as we experiment and iterate
Work
Similar jobs
- Senior Cloud Infrastructure EngineerTrener · San Jose (US-HQ)First seen today
- Senior Infrastructure EngineerNova Intelligence · New YorkFirst seen today
- Senior Infrastructure EngineerVast.ai · Los AngelesFirst seen today
- Senior Linux Infrastructure EngineerThe Voleon Group · Remote, United StatesFirst seen todayremote
- Modernization: Infrastructure Engineer (Senior)Spear AI · United States / RemoteFirst seen todayremote
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job