Member of Technical Staff - Security
Own the security posture across hosted training, GPU infrastructure, compute marketplaces, and customer-facing systems. Define secure architecture, lead threat modeling, build detection and response capabilities, manage penetration testing, drive compliance, and establish the security function.
Responsibilities
- Own threat modeling across infrastructure, sandboxes, APIs, and internal tooling
- Design and implement zero-trust networking, identity, and access control
- Build secure-by-default authentication, secrets management, supply chain, and container patterns
- Architect tenant isolation and data boundaries
- Develop frameworks for model weight protection, training data isolation, checkpoint integrity, and gradient privacy
- Secure the RL training loop end-to-end
- Build defenses against prompt injection, model exfiltration, and environment manipulation
- Manage external penetration tests
- Build an internal red-teaming practice
- Drive vulnerability management and remediation
- Build security monitoring and alerting
- Implement runtime security
- Own incident response and post-mortems
- Design audit logging and forensic capabilities
- Drive SOC 2 Type II readiness
- Manage security questionnaires and architecture reviews
Requirements
- 5+ years in security engineering, infrastructure security, or offensive security
- Cloud security, preferably GCP
- Kubernetes security and container runtime hardening
- Python and Rust or another systems-level language
- Network security in distributed systems, including service mesh, mTLS, and network segmentation
- Experience managing external penetration tests
- Strong fundamentals in cryptography, identity and access management, and secure software development lifecycle
- Experience securing GPU infrastructure or ML training pipelines
- Offensive security background, including CTFs, bug bounties, or red team engagements
- Familiarity with AI-specific threat models
- Experience building security programs from scratch
- SOC 2, ISO 27001, or FedRAMP experience
- Open-source security tooling contributions
- Familiarity with eBPF, Falco, or similar runtime security tools
Benefits
- Significant equity incentives
- Flexible work arrangement
- Full visa sponsorship
- Relocation support
- Professional development budget
- Regular team off-sites
- Conference attendance