Member of Technical Staff — Security

RadixArk

Palo Alto (CA)

On-site

USD 180,000 - 240,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

RadixArk is seeking a Member of Technical Staff — Security to build the security program from the ground up and prepare for SOC 2 audits. You’ll own security across infrastructure, products, and operations, enabling enterprise customers and auditors to gain confidence in our controls.

You’ll work across cloud, backend systems, and APIs, establishing threat models, incident response, and vulnerability management while enabling teams with secure development practices.

Qualifications

  • 4+ years in security, infrastructure, or backend systems or equivalent training.
  • Strong understanding of AWS, GCP, or Azure IAM, networking, and data protection.
  • Proficiency with Linux/Unix and command-line tools.
  • Hands-on experience with Kubernetes and container security.
  • Knowledge of secure coding practices and common vulnerabilities.

Responsibilities

  • Build and document internal security architecture, controls, and practices.
  • Create threat models for systems and data touching customer information.
  • Develop IRP and BC/DR plans and manage vulnerability SLAs.
  • Prepare SOC 2 readiness documentation for audits.
  • Define SOC 2 scope and inventory of infra, apps, and dependencies.
  • Oversee security posture across cloud, networks, and vendor interfaces.
  • Lead SOC 2 audit coordination with teams and auditors.
  • Design security monitoring, alerting, and incident response runbooks.
  • Enforce secure development practices and embed security in CI/CD.

Skills

Security architecture
Threat modeling
Incident response
Vulnerability management
Kubernetes security
IAM & encryption
Penetration testing
Compliance knowledge
Open‑source risk

Education

Bachelor's degree in CS/Engineering
Security certifications (CISSP, CISM, CEH)

Tools

Kubernetes
Container security
Infrastructure as Code
Cloud IAM
Vulnerability scanners
SOC 2 audits

Job description

RadixArk is looking for a Member of Technical Staff — Security to champion both our internal security posture and help us prepare for vendor audits and compliance requirements. As our first dedicated security engineer, you'll lay the foundation for security practices across our infrastructure, products, and operations—ensuring we can confidently serve enterprise customers and pass SOC 2 audits.

This is a unique opportunity to shape security from the ground up at a fast-growing AI infrastructure company. You'll work across backend systems, cloud infrastructure, and customer-facing APIs to build security into our products and processes before external auditors arrive.

Key Responsibilities

Security Posture & Compliance:

  • Build and document our internal security architecture, controls, and practices
  • Create threat models for our systems and products that interact with customer data
  • Develop an Incident Response Plan (IRP) and Business Continuity/Disaster Recovery (BC/DR) plan
  • Establish vulnerability and patch management processes with clear SLAs
  • Prepare security documentation for vendor audits, including SOC 2 readiness
  • Define which systems and data handle customer data to determine SOC 2 audit scope
  • Create and maintain an inventory of infrastructure, applications, and third‑party dependencies
  • Classify data flows and identify security boundaries between in‑house and outsourced components
  • Document which security controls are managed internally vs. outsourced to vendors (AWS, GCP, etc.)

Infrastructure & Application Security:

  • Review and improve network security: firewalls, intrusion detection/prevention (IDS/IPS), DDoS mitigation
  • Audit API authentication, authorization, rate limiting, and multi‑tenancy isolation
  • Implement secrets management and secure configuration practices
  • Review cloud IAM, networking, and data protection (encryption in transit and at rest)
  • Evaluate container and supply‑chain security practices

Security Monitoring & Operations:

  • Design and implement security logging and monitoring systems
  • Set up SIEM/SOAR tooling or evaluate and integrate centralized logging
  • Establish security alerting, incident response procedures, and runbooks
  • Conduct regular vulnerability scans and penetration tests
  • Develop security processes to answer vendor questionnaires and RFPs
  • Create documentation for customers on security controls, certifications, and data handling
  • Lead the SOC 2 audit process—coordinate with internal teams and external auditors
  • Stay informed on relevant compliance frameworks (SOC 2, HIPAA, Export Control, etc.)

Team Enablement:

  • Enforce secure development practices to engineers
  • Help teams understand threat models relevant to their work
  • Build security into CI/CD pipelines and deployment processes
Experience & Requirements

Core Technical Skills:

  • 4+ years working on security, infrastructure, or backend systems (or equivalent combination of hands‑on experience and security training)
  • Strong understanding of cloud platforms: AWS, GCP, or Azure (IAM, networking, data protection, secrets management)
  • Proficiency in Linux/Unix system administration and command‑line tools
  • Hands‑on experience with Kubernetes, container security, or infrastructure‑as‑code
  • Solid understanding of network security, authentication/authorization protocols, and cryptography basics
  • Experience conducting vulnerability assessments, penetration testing, or security audits

Security Expertise:

  • Demonstrated experience building or improving security programs (threat modeling, security architecture, incident response)
  • Knowledge of secure coding practices, OWASP Top 10, and common vulnerability types (SQLi, XSS, CSRF, etc.)
  • Familiarity with security tools: vulnerability scanners, SIEM, secret management systems, IDS/IPS
  • Understanding of regulatory compliance frameworks (SOC 2 is a plus; export control is a major plus for us)

Preferred Experience:

  • Background in founding or early‑stage startups—you understand scrappy, pragmatic security (not over‑engineering on day one)
  • Experience with ML infrastructure, GPU/compute management, or high‑performance systems
  • Involvement in SOC 2 audits or other compliance programs
  • Experience writing security policies, playbooks, and operational runbooks
  • Familiarity with supply‑chain security, open‑source risk, or dependency management

Education & Background:

  • Bachelor's degree in Computer Science, Engineering, Cybersecurity, or equivalent professional experience
  • Relevant security certifications (CISSP, CISM, CEH, OSCP, etc.) are a plus but not required
Notes for Candidates

We're looking for someone who is pragmatic, autonomous, and genuinely excited about security as a core part of our business—not someone looking for a checklist compliance role. You should be comfortable with ambiguity, able to prioritize ruthlessly, and willing to help across all of ops/finance/legal as needed (that's the reality of founding team hires at a Series A startup).

If you have questions about the role, security priorities, or company direction, we'd love to hear from you.

About RadixArk

RadixArk is an infrastructure‑first company built by engineers who've shipped production AI systems, created SGLang (30K+ GitHub stars, the fastest open LLM serving engine), and developed Miles (our large‑scale RL framework). Founded by AI infrastructure veterans from xAI and NVIDIA, we're on a mission to democratize frontier‑level AI infrastructure by building world‑class open systems for inference and training. Our team has optimized kernels serving billions of tokens daily, designed distributed training systems coordinating 10,000+ GPUs, and contributed to infrastructure that powers leading AI companies and research labs.

RadixArk is an Equal Opportunity Employer and is proud to offer equal employment opportunity to everyone regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, and more.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Business Development
Business Development

RadixArk • Palo Alto (CA)

On-site
USD 150,000 - 200,000
Competitive compensation
Meaningful equity
Comprehensive benefits
+1
Member of Technical Staff — Heterogenous Hardware
Member of Technical Staff — Heterogenous Hardware

RadixArk • Palo Alto (CA)

On-site
USD 180,000 - 240,000
Competitive compensation
Equity
Flexible work arrangements
+1
Member of Technical Staff — Cluster / Platform
Member of Technical Staff — Cluster / Platform

RadixArk • Palo Alto (CA)

On-site
USD 200,000 - 400,000
Member of Technical Staff — Training
Member of Technical Staff — Training

RadixArk • Palo Alto (CA)

On-site
USD 120,000 - 160,000
Comprehensive benefits
Flexible work arrangements
Talent Operations
Talent Operations

RadixArk • Palo Alto (CA)

Hybrid
USD 118,000 - 145,000
Member of Technical Staff - Security
Member of Technical Staff - Security

Prime Intellect • San Francisco (CA), Northern (KY)

Hybrid
USD 180,000 - 350,000
Senior Software Engineer
Senior Software Engineer

RADICL Defense • Boulder (CO)

Hybrid
USD 130,000 - 190,000
Equity grant
Hybrid work model
Health, dental, and vision
Senior Software Engineer
Senior Software Engineer

Fleet Glass Services, Inc. • Boulder (CO)

On-site
USD 90,000 - 120,000
Health, dental, and vision benefits
401K plan
Responsible PTO plan
+1
Member of Technical Staff — Inference
Member of Technical Staff — Inference

RadixArk • Palo Alto (CA)

On-site
USD 190,000 - 260,000
Competitive compensation
Meaningful equity
Comprehensive benefits
+1
Member of Technical Staff — Inference-Kernel, Compiler & Communication
Member of Technical Staff — Inference-Kernel, Compiler & Communication

RadixArk • Palo Alto (CA)

On-site
USD 210,000 - 290,000
Competitive compensation
Comprehensive benefits
Flexible work arrangements