Infrastructure Security Engineer
Core
Design and ship Kubernetes security controls, secure the software supply chain, manage cloud IAM, and protect research infrastructure and AI training pipelines.
Role type
Senior IC Infrastructure Security Engineer
Builds
Production Kubernetes clusters, secure supply chains, cloud IAM architectures, and guardrails for AI agents and developer tooling.
Domain
Cloud infrastructure, Kubernetes, AI/ML research environments, software supply chain security
Deliverable
production ML models | infrastructure
Required skills
Kubernetes security (admission policies, RBAC, workload identity, network policy), cloud IAM and networking, infrastructure as code, GitOps, Python/TypeScript/Rust programming, software supply-chain security (signing, provenance, SBOMs), threat modeling, security architecture documentation
Preferred skills
GPU/HPC compute security, training pipeline security, policy engines (Kyverno, OPA Gatekeeper, Falco), multi-tenant cloud isolation, security audit evidence (SOC 2, ISO 27001), open-source contributions in cloud/Kubernetes security
Technologies
Kubernetes, Kyverno, OPA Gatekeeper, Falco, GitOps, Python, TypeScript, Rust
Responsibilities
Design and implement Kubernetes security controls; harden software supply chains; own cloud IAM and identity architecture; secure research infrastructure and training pipelines; threat model platform components; build guardrails for AI agents; write infrastructure and policy as code; support incident response
Seniority
Senior, hands-on IC