Staff Software Development Engineer - Enterprise AI Infrastructure - #4898

BioSpace

Durham (NC)

Hybrid

USD 147,000 - 195,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

GRAIL is hiring a Staff Software Development Engineer to lead the design, development, and scaling of a centralized, highly governed enterprise AI platform on AWS EKS. You will architect secure LLM tool integrations, multi-agent orchestration, and strict identity/authorization controls in a regulated environment.

The role requires 8–12 years in software and cloud infrastructure, deep knowledge of AWS, Kubernetes, and governance, plus leadership and mentoring capabilities.

Qualifications

  • Bachelor degree or equivalent in Computer Science, Software Engineering, Artificial Intelligence, Cloud Computing, or related field; Master's or PhD preferred.
  • 8-12 years of relevant software development and cloud infrastructure experience with demonstrated technical leadership.
  • Deep expertise in AWS cloud architecture and container orchestration, specifically with Amazon EKS, Kubernetes networking, network isolation (VPC, PrivateLink), IAM, KMS, and GenAI services (e.g., AWS Bedrock).
  • Proven experience in agentic AI development, building autonomous agents, and orchestrating LLM tool-calling workflows using frameworks like LangChain, LangGraph, AutoGen, or Claude Agent SDK.
  • Hands-on experience implementing the Model Context Protocol (MCP) or building robust, governed API/tool integrations for LLMs.
  • Strong background in identity and access management (IAM), OAuth, JWT, and integrating with enterprise IdPs (Okta, Auth0) for scoped, token-based authorization.
  • Advanced proficiency in programming languages such as Python, TypeScript, or Go, and infrastructure-as-code tools (Terraform, AWS CDK).
  • Experience with vector databases, RAG (Retrieval-Augmented Generation) architectures, and row-level access controls (e.g., OpenSearch, FAISS, pgvector).
  • Proficiency with CI/CD pipelines, MLOps practices, Kubernetes ecosystem tools (Helm), containerization, and modern observability stacks.
  • Demonstrated level of knowledge regarding applicable regulatory standards commensurate with the position's complexity and scope, contributing to organizational regulatory compliance.
  • Leadership, communication, mentoring.

Responsibilities

  • Lead design, development, deployment, and monitoring of a scalable, governed enterprise AI platform leveraging Amazon EKS and AWS native services (e.g., Bedrock, OpenSearch Serverless, KMS, VPC).
  • Design and implement agentic AI workflows, specialized autonomous agents, and multi-agent systems using advanced LLM orchestration techniques and agent frameworks.
  • Architect and manage secure integrations using the Model Context Protocol (MCP) to connect the AI platform with internal systems, vector databases, and third-party SaaS applications (e.g., Google Workspace, Slack).
  • Build and enforce strict identity, authorization, and zero-trust token brokering flows leveraging Okta, Auth0, and custom JWT authorizers to ensure secure, least-privilege tool execution.
  • Implement deterministic policy controls (e.g., Cedar policy engine) to enforce role-based access, approval gates, and human-in-the-loop checks at the API gateway level.
  • Develop and maintain highly isolated, scalable containerized runtime environments (e.g., Kubernetes pods on Amazon EKS) for secure AI model execution, tool usage, and knowledge retrieval.
  • Establish and maintain comprehensive audit trails and observability for all AI interactions, utilizing AWS CloudTrail and GenAI observability tools (e.g., OpenTelemetry) to track cost, latency, and tool calls.
  • Collaborate with Product Management, Security, Regulatory, and business stakeholders to translate enterprise requirements into scalable, compliant AI infrastructure solutions.
  • Troubleshoot and resolve complex technical issues involving cloud infrastructure, Kubernetes networking, network isolation (PrivateLink), and agentic workflows.
  • Contribute to technology roadmaps, AI infrastructure strategy, and long-term platform evolution initiatives.
  • Mentor engineers, software developers, and technical teams while promoting engineering excellence, infrastructure-as-code (IaC) best practices, and continuous improvement.
  • Partner with Quality, Regulatory, Privacy, Security, and Compliance functions to ensure software and AI systems operate in accordance with applicable regulatory requirements and company policies.

Skills

Technical leadership
Mentoring
Communication
AI governance
Regulatory compliance
Security mindset

Education

Bachelor's degree in CS/SE/AI/Cloud Computing
Master's or PhD preferred

Tools

Amazon EKS
Kubernetes
Bedrock
OpenSearch Serverless
KMS
VPC
Okta
Auth0
JWT
LangChain
LangGraph
AutoGen
Claude Agent SDK
Terraform
AWS CDK
OpenTelemetry
PrivateLink
FAISS
pgvector

Job description

Our mission is to detect cancer early, when it can be cured. We are working to change the trajectory of cancer mortality and bring stakeholders together to adopt innovative, safe, and effective technologies that can transform cancer care.

We are a healthcare company, pioneering new technologies to advance early cancer detection. We have built a multi-disciplinary organization of scientists, engineers, and physicians and we are using the power of next-generation sequencing (NGS), population-scale clinical studies, and state-of-the-art computer science and data science to overcome one of medicine’s greatest challenges.

GRAIL is headquartered in the bay area of California, with locations in Washington, D.C., North Carolina, and the United Kingdom. It is supported by leading global investors and pharmaceutical, technology, and healthcare companies.

For more information, please visit grail.com

The Staff Software Development Engineer - Enterprise AI Infrastructure is a senior technical role responsible for leading the design, development, and scaling of a centralized, highly governed enterprise AI platform. This position serves as a technical expert focused on AWS and Kubernetes-based (EKS) AI infrastructure, agentic development, and multi-agent orchestration operating within a regulated environment. The Staff Engineer partners closely with cross-functional stakeholders across Software Engineering, Data Science, Security, Regulatory Affairs, and Product to build a unified control plane that securely connects large language models with enterprise tools and company knowledge.

This role is expected to drive technical excellence in cloud infrastructure, container orchestration, AI governance, identity-scoped integrations, and agentic workflows while mentoring engineering teams and advancing the organization’s enterprise AI strategy.

This role is based in Sunnyvale, California in our new headquarters. We will move in September so you may potentially visit our current location in Menlo Park, CA for interviews. We will also consider candidates in our Durham, NC office. We offer a flexible work arrangement, with the ability to work from GRAIL’s office or from home. Our current flexible work arrangement policy requires that a minimum of 60%, or 24 hours, of your total work week be on-site. Your specific schedule, determined in collaboration with your manager, will align with team and business needs and could exceed the 60% requirement for the site. At our Sunnyvale and Durham campuses, Tuesdays and Thursdays are the key days where we encourage on-site presence to engage in events and on-site activities.

Responsibilities
  • Lead the end-to-end design, development, deployment, and monitoring of a scalable, governed enterprise AI platform leveraging Amazon EKS and AWS native services (e.g., Bedrock, OpenSearch Serverless, KMS, VPC).
  • Design and implement agentic AI workflows, specialized autonomous agents, and multi-agent systems using advanced LLM orchestration techniques and agent frameworks.
  • Architect and manage secure integrations using the Model Context Protocol (MCP) to connect the AI platform with internal systems, vector databases, and third-party SaaS applications (e.g., Google Workspace, Slack).
  • Build and enforce strict identity, authorization, and zero-trust token brokering flows leveraging Okta, Auth0, and custom JWT authorizers to ensure secure, least-privilege tool execution.
  • Implement deterministic policy controls (e.g., Cedar policy engine) to enforce role-based access, approval gates, and human-in-the-loop checks at the API gateway level.
  • Develop and maintain highly isolated, scalable containerized runtime environments (e.g., Kubernetes pods on Amazon EKS) for secure AI model execution, tool usage, and knowledge retrieval.
  • Establish and maintain comprehensive audit trails and observability for all AI interactions, utilizing AWS CloudTrail and GenAI observability tools (e.g., OpenTelemetry) to track cost, latency, and tool calls.
  • Collaborate with Product Management, Security, Regulatory, and business stakeholders to translate enterprise requirements into scalable, compliant AI infrastructure solutions.
  • Troubleshoot and resolve complex technical issues involving cloud infrastructure, Kubernetes networking, network isolation (PrivateLink), and agentic workflows.
  • Contribute to technology roadmaps, AI infrastructure strategy, and long-term platform evolution initiatives.
  • Mentor engineers, software developers, and technical teams while promoting engineering excellence, infrastructure-as-code (IaC) best practices, and continuous improvement.
  • Partner with Quality, Regulatory, Privacy, Security, and Compliance functions to ensure software and AI systems operate in accordance with applicable regulatory requirements and company policies.
Adaptability and Growth Expectation

As our organization continues to evolve and grow, this role may require flexibility in responsibilities and duties. Employees should expect that their role may expand, shift, or be modified to meet changing business needs, strategic priorities, and organizational objectives.

This May Include
  • Taking on additional responsibilities.
  • Participating in cross-functional projects and initiatives.
  • Adapting to new technologies, AI methodologies, software frameworks, processes, or engineering practices.
  • Supporting other departments or teams during periods of high demand.
  • Contributing to special projects or temporary assignments as needed.

These job duties are a summary of the primary duties and responsibilities of the position and are not intended to be a comprehensive or all-inclusive listing of duties. Contents are subject to change at the Company's discretion.

Required Qualifications
  • Bachelor's degree or equivalent in Computer Science, Software Engineering, Artificial Intelligence, Cloud Computing, or related field; Master's or PhD preferred.
  • 8-12 years of relevant software development and cloud infrastructure experience with demonstrated technical leadership.
  • Deep expertise in AWS cloud architecture and container orchestration, specifically with Amazon EKS, Kubernetes networking, network isolation (VPC, PrivateLink), IAM, KMS, and GenAI services (e.g., AWS Bedrock).
  • Proven experience in agentic AI development, building autonomous agents, and orchestrating LLM tool-calling workflows using frameworks like LangChain, LangGraph, AutoGen, or Claude Agent SDK.
  • Hands-on experience implementing the Model Context Protocol (MCP) or building robust, governed API/tool integrations for LLMs.
  • Strong background in identity and access management (IAM), OAuth, JWT, and integrating with enterprise IdPs (Okta, Auth0) for scoped, token-based authorization.
  • Advanced proficiency in programming languages such as Python, TypeScript, or Go, and infrastructure-as-code tools (Terraform, AWS CDK).
  • Experience with vector databases, RAG (Retrieval-Augmented Generation) architectures, and row-level access controls (e.g., OpenSearch, FAISS, pgvector).
  • Proficiency with CI/CD pipelines, MLOps practices, Kubernetes ecosystem tools (e.g., Helm), containerization, and modern observability stacks.
  • Demonstrated level of knowledge regarding applicable regulatory standards commensurate with the position's complexity and scope, contributing to organizational regulatory compliance. Minimal applicable standards for this position include:
  • Cybersecurity principles, tools, and control frameworks (e.g., ISO 27001, NIST, SOC 2, HIPAA)
  • Operations within the regulated medical device environment (e.g., IVDD, IVDR, FDA 21 CFR 800 series, FDA 21 CFR Part 11)
  • AI governance, software validation, data integrity, and risk management principles applicable to regulated environments
  • Deep expertise in cloud infrastructure, containerized environments, agentic artificial intelligence, and secure distributed system design.
  • Exceptional problem-solving and analytical skills with the ability to address ambiguous, high-impact technical challenges in AI orchestration and Kubernetes scaling.
  • Strong leadership and influence skills, capable of driving alignment across engineering, security, regulatory, and business stakeholders.
  • Excellent communication skills with the ability to explain complex LLM behaviors, infrastructure architectures, and security boundaries to technical and non-technical audiences.
  • Proven mentoring and coaching capabilities that elevate cloud engineering and AI talent.
  • Strong understanding of AI safety, prompt injection defenses, secure tool execution, and deterministic policy enforcement.
  • Strategic thinking with the ability to balance long-term enterprise AI platform vision with near-term business delivery.
  • High adaptability and intellectual curiosity regarding emerging agentic AI frameworks, MCP specifications, and cloud computing trends.
Physical Working Conditions
  • Standard office or hybrid work environment depending on company policy.
  • Frequent use of software development tools, AI/ML platforms, cloud infrastructure, data engineering tools, and collaboration systems.
  • May require extended hours during major project deadlines, AI model deployments, production incidents, regulatory audits, or strategic initiatives.
  • Operates with significant independence and responsibility and is expected to provide leadership on complex software, AI, technical, and organizational decisions.

The expected, full-time, annual base pay scale for this position is $169k-224k in Sunnyvale, CA and $147K-$195K in Durham NC.

This role may be eligible for other forms of compensation, including an annual bonus and/or incentives, subject to the terms of the applicable plans and Company discretion. This range reflects a good-faith estimate of the range that the Company reasonably expects to pay for the position upon hire; the actual compensation offered may vary depending on factors such as the candidate’s qualifications. Employees in this role are also eligible for GRAIL’s comprehensive and competitive benefits package, offered in accordance with our applicable plans and policies. This package currently includes flexible time-off or vacation; a 401(k) retirement plan with employer match; medical, dental, and vision coverage; and carefully selected mindfulness programs.

GRAIL is an equal employment opportunity employer, and we are committed to building a workplace where every individual can thrive, contribute, and grow. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender, gender identity, sexual orientation, age, disability, status as a protected veteran,, or any other class or characteristic protected by applicable federal, state, and local laws. Additionally, GRAIL will consider for employment qualified applicants with arrest and conviction records in a manner consistent with applicable law and provide reasonable accommodations to qualified individuals with disabilities. Please contact us at [email protected] if you require an accommodation to apply for an open position.

GRAIL maintains a drug-free workplace. We welcome job-seekers from all backgrounds to join us!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Software Development Engineer - Enterprise AI Infrastructure - #4898
Staff Software Development Engineer - Enterprise AI Infrastructure - #4898

GRAIL • Durham (NC)

On-site
USD 147,000 - 224,000
Flexible work policy
Competitive benefits package
401(k) with employer match
Forward Deployed Engineer - Software Development Engineer – Artificial Intelligence (AI) - #4883
Forward Deployed Engineer - Software Development Engineer – Artificial Intelligence (AI) - #4883

Jobzhr • Sunnyvale (CA), Northern (KY)

Hybrid
USD 99,000 - 121,000
401(k) retirement plan with employer
Medical, dental, and vision coverage
Flexible time-off or vacation
+1
Forward Deployed Engineer - Software Development Engineer – Artificial Intelligence (AI) - #4883
Forward Deployed Engineer - Software Development Engineer – Artificial Intelligence (AI) - #4883

GRAIL • Menlo Park (CA)

Hybrid
USD 86,000 - 121,000
Director of Software Engineering - Data Platforms - #4919
Director of Software Engineering - Data Platforms - #4919

GRAIL • Sunnyvale (CA)

Hybrid
USD 224,000 - 321,000
Flexible time-off
401(k) with employer match
Medical, dental, and vision coverage
+1
Director of Software Engineering - Data Platforms - #4919
Director of Software Engineering - Data Platforms - #4919

BioSpace • Sunnyvale (CA)

Hybrid
USD 224,000 - 321,000
Flexible time-off
401(k) match
Medical/Dental/Vision
Senior Data Engineer #4885
Senior Data Engineer #4885

BioSpace • Durham (NC)

On-site
USD 86,000 - 106,000
Flexible time-off
401(k) retirement plan with employer;
Medical, dental, and vision coverage
+1
Staff Software Engineer – Data Team #4555
Staff Software Engineer – Data Team #4555

GRAIL • Menlo Park (CA)

On-site
USD 169,000 - 224,000
Staff Cloud Security Engineer - #4824
Staff Cloud Security Engineer - #4824

GRAIL • Menlo Park (CA)

Hybrid
USD 169,000 - 224,000
Senior Data Engineer #4885
Senior Data Engineer #4885

GRAIL • Durham (NC)

On-site
USD 86,000 - 106,000
401(k) match
Medical/dental/vision
Flexible time-off
+1
Staff Cloud Security Engineer - #4824
Staff Cloud Security Engineer - #4824

BioSpace • Sunnyvale (CA)

Hybrid
USD 169,000 - 224,000