Infrastructure Security Engineer

The Material Group

San Francisco (CA)

On-site

USD 180,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Comprehensive medical, dental, vision,
Life and disability insurance
Parental leave
Flexible PTO
Paid Holidays
Relocation support

Job summary

The Material Group is seeking a security-focused Infrastructure Engineer to own security across training and serving systems for frontier models. You will harden multi-cloud Kubernetes, design policy, protect the software supply chain, and manage identities and secrets across clusters.

You will build detection and response tooling, safeguard assets like model weights and data, and work across thousands of compute nodes.

Qualifications

  • BS in CS, EE, or related field, or equivalent experience.
  • Proficiency in Rust, Go, or Python.
  • Strong Linux internals: namespaces, cgroups, seccomp, capabilities.
  • Deep Kubernetes security: authz, admission control, workload isolation.
  • Software supply chain security practices: SBOM, signing, attestation.
  • Identity and secrets management.
  • Experience protecting high-value assets (model weights, data, or equivalent).
  • Track record in detection, response, and threat modeling.
  • Multi-cloud experience: AWS, GCP, Azure, CoreWeave, Crusoe.

Responsibilities

  • Audit and harden multi-cloud Kubernetes clusters.
  • Design authorization, admission, and workload isolation policy.
  • Secure the software supply chain from build to deploy.
  • Manage identity and secrets across clusters and accelerators.
  • Protect high-value assets including model weights and training data.
  • Build detection and response tooling for clusters, workloads, and the fabric.

Skills

Rust
Go
Python
Linux internals
Kubernetes security
SBOM, signing, attestation
Identity and secrets management
Threat modeling
Multi-cloud (AWS, GCP, Azure)

Education

BS in CS, EE, or related field, or equivalent experience

Tools

Kubernetes

Job description

About the role

Own infrastructure security across the systems that train and serve frontier models. Your expertise spans supply chain, identity and secrets, multi-cloud Kubernetes, workload isolation, runtime defense, and detection and response across thousands of compute nodes.

What you\'ll do

  • Audit and harden multi-cloud Kubernetes clusters

  • Design authorization, admission, and workload isolation policy

  • Secure the software supply chain from build to deploy

  • Manage identity and secrets across clusters and accelerators

  • Protect high-value assets including model weights and training data

  • Build detection and response tooling for clusters, workloads, and the underlying fabric

What you\'ll need

  • BS in CS, EE, or related field, or equivalent experience

  • Software engineering skills: Rust, Go, or Python

  • Strong Linux internals: namespaces, cgroups, seccomp, capabilities

  • Deep Kubernetes security: authz, admission, workload isolation, runtime defense

  • Software supply chain security: SBOM, signing, attestation

  • Identity and secrets management

  • Experience protecting high-value assets (model weights, training data, or equivalent)

  • Track record in detection, response, and threat modeling

  • Multi-cloud experience: AWS, GCP, Azure, CoreWeave, Crusoe

What we offer

  • Top-tier compensation structured to recognize and retain the best talent

  • Meaningful equity

  • Comprehensive medical, dental, vision, life, and disability insurance

  • Parental leave for all new parents, including adoptive and surrogate journeys

  • Flexible PTO

  • Paid Holidays

  • Relocation support

Equal Employment Opportunity

We’re an Equal Opportunity Employer and do not discriminate on the basis of any protected status under applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Security Engineer
Data Security Engineer

General Intuition & Medal • New York (NY)

On-site
USD 100,000 - 150,000
Competitive salary and equity
Comprehensive medical, dental, and vision coverage
401(k)
+4
Senior Member of Technical Staff - Infrastructure Security
Senior Member of Technical Staff - Infrastructure Security

Xcede • San Francisco (CA)

On-site
USD 120,000 - 160,000
Significant compensation and equity opportunity
Work across cloud, Kubernetes, GPU infrastructure, CI/CD, and platform engineering
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Doist • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies
Infrastructure Engineer, Security
Infrastructure Engineer, Security

Thinkingmachines • San Francisco (CA)

On-site
USD 200,000 - 475,000
Health insurance
Unlimited PTO
Paid parental leave
+1
Security Engineer, Infrastructure
Security Engineer, Infrastructure

Scale AI, Inc. • San Francisco (CA)

On-site
USD 237,000 - 297,000
Security Engineer, Infrastructure
Security Engineer, Infrastructure

Scale AI • San Francisco (CA), Seattle (WA), New York (NY)

On-site
USD 237,600 - 297,000
Comprehensive health, dental, and vision coverage
Retirement benefits
Learning and development stipend
+2
Security Engineer, Infrastructure
Security Engineer, Infrastructure

Scale AI, Inc. • Washington

On-site
USD 237,000 - 297,000
Security Engineer, Infrastructure
Security Engineer, Infrastructure

Scale AI, Inc. • Seattle (WA)

On-site
USD 237,000 - 297,000
Infrastructure Engineer, Security
Infrastructure Engineer, Security

Thinking Machines Lab • San Francisco (CA)

On-site
USD 200,000 - 475,000
Health benefits
Unlimited PTO
Parental leave
+1
Infrastructure Security Engineer - Multi-Cloud & Kubernetes
Infrastructure Security Engineer - Multi-Cloud & Kubernetes

The Material Group • San Francisco (CA)

On-site
USD 180,000 - 240,000
Equity
Comprehensive medical, dental, vision,
Life and disability insurance
+4