Turn this role into an interview — a resume and cover letter built around what this employer wants.
Fireworks AI is seeking a Security Engineer to design, implement, and operate security controls across AI infrastructure, AI platforms and internal systems.
The role partners with multiple teams to strengthen our security posture as we scale, ensuring confidentiality, integrity, and availability of data, models, and infrastructure in a multi-cloud environment. You will embed security across the stack and contribute to continuous security improvements.
Hands-on experience with Kubernetes, Docker, and containerized production environments; deep knowledge of Kubernetes internals and native security controls is a strong plusFamiliarity with security tooling in managed CI/CD environments (e.g., GitHub Actions, Harness, CircleCI)Strong understanding of cloud-native architectures using GCP, particularly in the area of network segregation, authentication, authorization, encryption, data protection, intrusion detection, and cloud-specific security benchmarksSolid experience working in Linux environments, including system administration, debugging, and automation via command-line toolingProficient in Python and/or Go with experience in designing production-grade systemsFamiliarity with modern identity and access controls (SAML, OAuth, OIDC, SSO, RBAC/ABAC)3 to 7 years of experience in software engineering or security engineering with a strong focus on security, infrastructure, or cloud-native systemsExperience designing secure multi-cloud deployments and zero-trust architecturesExperience designing, operating, and securing large-scale Kubernetes platforms, including control plane security, node hardening, and multi-tenant isolationProficiency with infrastructure-as-code using Terraform and Python, including experience building modular policy-as-code frameworksExperience designing, operating, and securing large-scale multi-cloud platforms across AWS, GCP, Azure, Oracle Cloud, and GPU as service cloud providersStrong understanding of data protection techniques, including encryption at rest/in transit, tokenization, key management, and confidential computingExperience integrating security into microservice architectures, service meshes, and distributed systemsHands-on experience securing LLM/ML platforms, model inference infrastructure, GPU clusters, or data labeling pipelinesExperience designing detection engineering pipelines across cloud audit logs, network telemetry, and application signalsExperience building large-scale IAM and PAM platforms using least-privilege, workload identity, and just-in-time accessFamiliarity with container image vulnerability remediation, security, SBOM generation, and software supply chain securityExperience building, implementing and operating security automation platforms for incident response and security operationsFamiliarity with compliance tooling and frameworks (e.g., Vanta, SOC 2, ISO 27001, ISO 42001, PCI-DSS)