Member of Technical Staff - Security

Own the security posture across hosted training, GPU infrastructure, compute marketplaces, and customer-facing systems. Define secure architecture, lead threat modeling, build detection and response capabilities, manage penetration testing, drive compliance, and establish the security function.

Responsibilities

  • Own threat modeling across infrastructure, sandboxes, APIs, and internal tooling
  • Design and implement zero-trust networking, identity, and access control
  • Build secure-by-default authentication, secrets management, supply chain, and container patterns
  • Architect tenant isolation and data boundaries
  • Develop frameworks for model weight protection, training data isolation, checkpoint integrity, and gradient privacy
  • Secure the RL training loop end-to-end
  • Build defenses against prompt injection, model exfiltration, and environment manipulation
  • Manage external penetration tests
  • Build an internal red-teaming practice
  • Drive vulnerability management and remediation
  • Build security monitoring and alerting
  • Implement runtime security
  • Own incident response and post-mortems
  • Design audit logging and forensic capabilities
  • Drive SOC 2 Type II readiness
  • Manage security questionnaires and architecture reviews

Requirements

  • 5+ years in security engineering, infrastructure security, or offensive security
  • Cloud security, preferably GCP
  • Kubernetes security and container runtime hardening
  • Python and Rust or another systems-level language
  • Network security in distributed systems, including service mesh, mTLS, and network segmentation
  • Experience managing external penetration tests
  • Strong fundamentals in cryptography, identity and access management, and secure software development lifecycle
  • Experience securing GPU infrastructure or ML training pipelines
  • Offensive security background, including CTFs, bug bounties, or red team engagements
  • Familiarity with AI-specific threat models
  • Experience building security programs from scratch
  • SOC 2, ISO 27001, or FedRAMP experience
  • Open-source security tooling contributions
  • Familiarity with eBPF, Falco, or similar runtime security tools

Benefits

  • Significant equity incentives
  • Flexible work arrangement
  • Full visa sponsorship
  • Relocation support
  • Professional development budget
  • Regular team off-sites
  • Conference attendance

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available