Get more replies from employers
Send a job-specific resume in minutes.
Refractal is hiring a Systems Engineer to own the services and infrastructure that keep our security platform secure in production. You will work across enforcement runtime, data integrity, tenant isolation, agent tracing, model services and cloud infrastructure.
You will turn security and operational requirements into measurable, testable systems and help set technical direction, engineering standards and roadmaps.
Refractal is building security infrastructure for autonomous systems. Tomorrow’s attacks will use adaptive reasoning agents; cyber defenders need the right tools for adaptive defence. Refractal builds the Security Context Graph, which allows defenders to reason more effectively about risk and enforce controls.
Our founding team combines technical pedigree from MIT, NASA, Microsoft, and government with commercial experience in VC and startups. We have also been recognised by MIT's flagship CSAIL AI lab as part of CSAIL Alliances, as well as being selected as the only British AI Security company in Google's highly selective Gemini Cybersecurity Startup Forum. We are today working with leading, high-assurance AI startups and a European government to help secure their AI deployments.
For most of the last decade, AI safety and security lived inside the frontier labs. It was seen as the preserve of the labs to ‘solve’ alignment at the model level, with too little consideration of downstream cybersecurity infrastructure.
2026 has ended this illusion. The gated release of Mythos, Cybersecurity over-refusal on Fable, and the incidents with Anthropic and OpenAI have all shown that the labs cannot be trusted to solve these problems alone. At the same time, the risks have moved beyond the models themselves: agents are being given credentials, tools, and decision‑making authority faster than security can catch up, all while frontier models can be exploited for (or autonomously engage in) offensive cyber operations.
Europe is particularly vulnerable. With little domestic choice of frontier models, European defenders are forced to turn to either American models (and risk over‑refusal mid‑incident), or to Chinese models, which poses other governance questions.
Refractal is building a world‑class team of researchers and product builders to galvanise AI and Cyber talent across Europe and build a leading company in AI Security.
As a Systems Engineer, you will own the services and infrastructure that keep Refractal secure and reliable in production. These systems help customers secure the agents they deploy and defend against malicious agents operated outside their organisation. You will work across the enforcement runtime, data integrity, tenant isolation, agent tracing, model services and cloud infrastructure.
Your work will cover individual actions and wider attack sequences from internal and external agents. You will build systems that receive and normalise events, connect related activity across agents, services and tools, evaluate risk, apply enforcement decisions and record the evidence.
You will work directly with the founders and early customers. You will turn security and operational requirements into systems that are measurable, testable and safe under failure. You will also help set the technical direction, engineering standards and product roadmap.
We need a systems engineer who takes end‑to‑end ownership of security‑critical services. You can work from service design and data storage to deployment and production operation. You reason about latency, failure, isolation, integrity and cost. You use measurements instead of assumptions. You add tracing, metrics and logs before you call a service production‑ready.
You deliver small, correct changes and test failure cases. You understand that a slow decision, a missing trace, a leaked row or a changed audit record can be a security fault. Most importantly, you want to build the systems that let organisations deploy their own autonomous systems safely and defend against malicious agents operated by others.
We assess demonstrated ability, rather than a specific credential or number of years in industry.
You should have:
Particularly strong signals include:
We do not expect any candidate to have worked across all of these areas.