Your mission is to design and operate the security posture across our entire engineering stack. You will ensure our research environments, proprietary model weights, software infrastructure, and customer integrations remain secure, all while maintaining the rapid iteration and engineering velocity our researchers need.
Responsibilities- Design and deploy robust security architectures across our distributed GPU clusters, shared compute platforms, and network infrastructure.
- Drive secure software development lifecycle (SDLC) practices, partnering with Infrastructure and Research teams to build security directly into our pipelines, APIs, and orchestrators (e.g., Kubernetes, Slurm).
- Own identity and access management (IAM), data governance, and encryption strategies for petabyte-scale physical observation data and proprietary model checkpoints.
- Conduct threat modeling, vulnerability assessments, and implement proactive threat detection and incident response tooling tailored to the unique footprint of large-scale ML infrastructure.
- Support Forward Deployed teams by navigating the strict security and compliance constraints of high-stakes customer environments, delivering secure solutions that work in practice, not just in theory.
What we're looking for- Demonstrated experience in security engineering, infrastructure security, or application security within large-scale distributed systems or cloud environments (GCP, AWS, or Azure).
- Strong systems and software engineering background: Linux, networking, infrastructure-as-code, and proficiency in programming languages like Python, Go, or Rust.
- Deep understanding of the unique security challenges associated with machine learning platforms, distributed training, and protecting high-value model weights/IP.
- Comfort working directly with complex systems, conducting architectural security reviews, and adapting fast to new constraints or customer environments.
- A bias toward real-world impact over elegance: solutions that actually work for the user, under pressure.
- Owns deliverables end-to-end, from requirements through autonomous execution.