Staff Infrastructure Engineer
What engineering roles in crypto pay
243 salaries · our own dataThis role pays $205k-$245k, above the $202k median for engineering roles in crypto on this board.
As a Staff Infrastructure Engineer at TRM Labs, you'll build the platform that every TRM product, every internal AI agent, and every investigation their customers run depends on. You're not maintaining a system someone else finished - you're building its next generation on the bleeding edge, for workloads where reliability and security are non-negotiable. You'll own an Area of Responsibility end to end, defining what great looks like and building the glide path to get there.
What you'll do
- Design and operate multi-region, multi-cloud Kubernetes across US GCP, EU GCP, and AWS GovCloud, making "stand up another site" a self-serve configuration instead of a bespoke project.
- Extend a genuinely self-serve internal PaaS that ~60+ engineers already deploy on, building golden paths, guardrails, and interfaces engineers actually enjoy using.
- Build agent-native infrastructure with secure sandboxes where AI agents build and ship, and encode operational knowledge into skills so the platform increasingly runs and heals itself.
- Implement zero-trust secrets with Vault, replacing long-lived secrets with short-lived, dynamic credentials to close the blast radius on leaked passwords.
- Own reliability engineering that means it: SLOs and error budgets, real observability, and disaster recovery with validated cross-region restore and sub-hour RTO.
- Treat databases as a first-class platform concern, managing Postgres on Kubernetes, migrations, replication, and redundancy for services that can't afford downtime.
- Build compliance as code, embedding SOC2 and FedRAMP posture into the platform so security is the default, not a scramble before an audit.
What you bring
- You've taken infrastructure from zero to one - designed and shipped a platform capability that other engineers came to depend on, not just operated one that already existed.
- You write real software in Go, Python, or similar languages; you build tooling, automation, and services rather than only wiring up other people's tools.
- You're deep in GCP and/or AWS (compute, IAM, VPC, networking, storage, load balancing) and comfortable operating across clouds.
- You've run Kubernetes in production (GKE/EKS) and are up to date with the state of the art for Infrastructure as Code.
- You can debug low-level problems without hand-holding - networking issues, saturated nodes, slow queries, failing deploys - and get to the actual cause.
- You're fluent across the modern platform toolchain: GitOps (Argo/Flux), containers, CI/CD, observability built on SLOs rather than dashboards no one reads.
- You have strong instincts for security and databases: zero-trust, secret management, systems hardening, provisioning and migrating production databases.
Nice to have
- SOC2/FedRAMP exposure.
- Experience with AI-native infrastructure and agent platforms.
What we offer
- Base salary of $205,000 - $245,000.
- Remote-first (US), with a small, high-leverage team and a weekly on-call rotation.
About TRM Labs
TRM Labs provides AI-powered intelligence solutions that help public and private sector agencies investigate and disrupt crime. TRM's platforms enable investigators to trace illicit activity, build cases, and construct operating pictures of threat networks. TRM is a Series C company with $220M in total funding, backed by Goldman Sachs, Bessemer, Y Combinator, Thoma Bravo, and others, operating as a distributed-first company with hubs in Los Angeles, San Francisco, New York, Washington D.C., London, and Singapore.
