Member of Technical Staff (Secure Infrastructure and Platform)

Security Level 5

San Francisco (CA)

On-site

USD 200,000 - 350,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Healthcare
Dental
Vision
401k match

Job summary

Security Level 5 in the Bay Area seeks an experienced infrastructure engineer to design and operate a frontier AI datacenter with strict security controls, including zero-trust concepts and air-gapped networks.

You will lead the setup from racks to deployment pipelines, ensuring secure boot, attestation, and code signing while collaborating with labs and government stakeholders to shape the SL5 standard and drive impactful research.

Qualifications

  • 5+ years building and operating production infrastructure at scale (GPU/accelerator fleets preferred).
  • Or 2+ years building and stress-testing frontier AI training infra.
  • Familiar with secure boot, attestation, code signing, key management, and image pipelines.
  • Experience in air-gapped, internet-isolated environments.
  • Able to communicate with both technical and non-technical stakeholders.
  • Desire to make security work matter beyond the product.

Responsibilities

  • Design and stand up the SL5 prototype compute platform (racks, networks, device security policy, imaging, enrollment, build server).
  • Enforce deny-all, permit-by-exception with no live internet; implement measured boot and signed images.
  • Make the platform fast and usable for researchers under air-gap constraints; adapt workflows accordingly.
  • Co-develop infrastructure and machine-security sections of the SL5 standard with labs/government.
  • Publish research for technical and policy audiences with appropriate sensitivity.

Skills

Production infra
SRE
GPU fleets
Security concepts
Communication

Job description

About Security Level 5

Security Level 5 is a Bay Area AI security nonprofit working with AI labs and US intelligence agencies to defend frontier models from priority nation-state-level threats. We're a small technical team, we move fast, and we're growing quickly this year.

The Mission

We're hiring for what's plausibly the most difficult, urgent, and interesting challenge in AI security engineering this decade (for humans, at least): designing and building the first datacenter purpose-built to Security Level 5, the standard for defending frontier AI labs against attackers with the resources of a nation-state and billion-dollar budgets. We're working on the first SL5 components this year and aiming for an at-scale SL5 datacenter build in 2027.

We wrote the first version of the standard with input from CISOs and senior security staff at the frontier labs, and US security and intelligence officials. Now we're designing the SL5 architectures purpose-built for frontier AI workloads, and standing up the reference tech stack to guide labs' buildouts. This stack has to hold against nation-states, not destroy researchers' productivity, not cost more than labs can pay, and ship in 2-3 years.

About the role

An SL5 datacenter requires infrastructure engineering at the frontier of security. You would set up and operate networks with extremely strict security properties, zero-trust concepts and bespoke security components, all without Internet access and still capable of training large models. The network you'll be building won't actually be SL5, but will implement the novel and difficult security interventions needed for it. We're looking for someone who has designed / operated large production infrastructure and wants to solve that problem under these constraints, from setting up the racks to maintaining orchestration.

What you'd work on

  • Designing and standing up the SL5 prototype compute platform: setting up racks, configuring networks and device security policy & attestation, imaging, enrollment, build server etc.

  • Deny-all, permit-by-exception execution with no live internet: measured boot and signed images on hosts, allow-listing enforcement, and the pipeline by which images and updates get built and signed.

  • Making the platform fast and usable for researchers despite the constraints, and re-shaping workflows where the old cloud-native habits don't survive contact with an air gap.

  • Co-developing the relevant infrastructure and machine-security sections of the SL5 standard with labs and government stakeholders.

  • Publishing research for technical and policy audiences (with appropriate sensitivity).

You'd be a fit if you

  • Have 5+ years building and operating production infrastructure at scale: cloud platform, SRE, datacenter, ML infra, or similar, ideally including GPU/accelerator fleets

  • Or have 2+ years building and stress-testing training infrastructure at a frontier AI lab. We've seen people without these credentials succeed at some of our most difficult tasks, so if that's you, let us know why you'll succeed anyway.

  • Are comfortable with the primitives this depends on: secure boot, attestation, code signing, key management, image/build pipelines, network segmentation

  • Have worked in, or can clearly reason about, environments where the internet isn't available and the host can't be trusted (air-gapped, classified, or otherwise hard-isolated)

  • Communicate clearly with both technical and non-technical stakeholders, including ML researchers whose cloud-native intuitions about tooling may need to be re-shaped

  • Want your security work to matter outside the company shipping it

Bonus

  • Experience with confidential computing, TEEs, or accelerator security features (memory isolation, interconnect encryption, attestation)

  • Experience running air-gapped, classified, or other high-side environments, or building cross-domain / data-diode transfer systems

  • Existing security clearances or clearance eligibility

  • Experience where infrastructure speed and security were in direct tension and you had to ship both

Logistics

Bay Area, in-person. This role's base salary range is $200,000 - $350,000 USD per year. We may be open to paying exceptional and/or highly experienced employees more than this. We also provide full benefits, including healthcare, dental, vision, 401k match, and more.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Executive Admin
Executive Admin

Security Level 5 • San Francisco (CA)

On-site
USD 80,000 - 130,000
Healthcare
Dental
Vision
+1
Senior Director for National Security
Senior Director for National Security

Security Level 5 • San Francisco (CA)

On-site
USD 180,000 - 280,000
SL5 Fieldbuilder (Fellowships)
SL5 Fieldbuilder (Fellowships)

Security Level 5 • San Francisco (CA)

On-site
USD 150,000 - 220,000
Healthcare
Dental
Vision
+1
Office and Events Manager
Office and Events Manager

Security Level 5 • San Francisco (CA)

On-site
USD 120,000 - 160,000
Healthcare
Dental
Vision
+1
Operations Generalist
Operations Generalist

Security Level 5 • San Francisco (CA)

On-site
USD 130,000 - 180,000
Healthcare
Dental
Vision
+1
Frontier AI Security Infrastructure Engineer
Frontier AI Security Infrastructure Engineer

Security Level 5 • San Francisco (CA)

On-site
USD 200,000 - 350,000
Healthcare
Dental
Vision
+1
Senior Security Infrastructure Engineer — Private AI Cloud
Senior Security Infrastructure Engineer — Private AI Cloud

Aionia Group • Reston (VA)

On-site
USD 110,000 - 150,000
Staff Security Engineer, InfrastructureSan Francisco
Staff Security Engineer, InfrastructureSan Francisco

fal • San Francisco (CA)

On-site
USD 130,000 - 160,000
Competitive salary + equity
Full health, dental, and vision coverage
Opportunity to work on frontier AI infrastructure
Senior Data Center Security Specialist
Senior Data Center Security Specialist

Socket.dev • San Francisco (CA)

On-site
USD 180,000 - 250,000
Security Engineer - Member of Technical Staff
Security Engineer - Member of Technical Staff

Simile • San Francisco (CA)

On-site
USD 200,000 - 400,000
Equity grants
Comprehensive medical, dental, and vision coverage
Flexible time off policies