Member of Technical Staff - Security
Summary
Own and implement security for an AI company’s infrastructure, training loops, and customer systems, including zero-trust architecture, threat modeling, and SOC 2 readiness.
You will own the security posture across hosted training, GPU infrastructure, compute marketplaces, and customer-facing systems. You will define secure architecture, lead threat modeling, build detection and response capabilities, manage penetration testing, drive compliance, and establish the security function.
Responsibilities
- Own threat modeling across infrastructure, sandboxes, APIs, and internal tooling
- Design and implement zero-trust networking, identity, and access control
- Build secure-by-default authentication, secrets management, supply chain, and container patterns
- Architect tenant isolation and data boundaries
- Develop frameworks for model weight protection, training data isolation, checkpoint integrity, and gradient privacy
- Secure the RL training loop end-to-end
- Build defenses against prompt injection, model exfiltration, and environment manipulation
- Manage external penetration tests
- Build an internal red-teaming practice
- Drive vulnerability management and remediation
- Build security monitoring and alerting
- Implement runtime security
- Own incident response and post-mortems
- Design audit logging and forensic capabilities
- Drive SOC 2 Type II readiness
- Manage security questionnaires and architecture reviews
Requirements
- 5+ years in security engineering, infrastructure security, or offensive security
- Cloud security
- Kubernetes security
- Container runtime hardening
- Python
- Rust or another systems-level language
- Network security in distributed systems
- Service mesh
- mTLS
- Network segmentation
- External penetration testing
- Cryptography
- Identity and access management
- Secure software development lifecycle
Benefits
- Significant equity incentives
- Flexible work arrangement
- Full visa sponsorship
- Relocation support
- Professional development budget
- Regular team off-sites
- Conference attendance