TL;DR
Staff+ Software Security Engineer (AI): Scoping, designing, and building complex security systems end-to-end for hirify.global's AI platforms with an accent on threat modeling, cryptographic foundations, and developer security. Focus on hardening CI/CD pipelines, architecting identity and secrets management, and implementing cloud/cluster security controls for trustworthy AI systems.
Location: Hybrid (San Francisco, New York City, Seattle). Must be based in or able to work from one of these US office locations at least 25% of the time.
Salary: $405,000 – $485,000 USD
Company
hirify.global is a public benefit corporation focused on creating reliable, interpretable, and steerable AI systems to be safe and beneficial for society.
What you will do
- Scope, design, and build complex security systems end to end, maintaining them through production.
- Identify systematic risks through threat modeling and risk assessment, then build the controls and infrastructure.
- Advance the developer security program by embedding security practices into the SDLC and developer workflows.
- Architect systems that protect sensitive assets, including model weights, customer data, and training datasets.
- Implement and maintain cloud security controls including IAM, network segmentation, and encryption.
- Build critical security foundations including cryptographic frameworks, mTLS infrastructure, and authorization systems.
Requirements
- At least 8 years of software engineering experience with deep security expertise, leading complex security initiatives independently.
- Bachelor's degree in Computer Science or equivalent industry experience.
- Strong programming skills in Python or at least one systems language such as Go, Rust, or C/C++.
- Deep understanding of identity systems, cryptographic primitives, and secrets management.
- Working knowledge of Kubernetes security primitives including RBAC, namespaces, and network policies.
- Experience leading cross-functional security initiatives and navigating complex organizational dynamics.
- Outstanding communication skills, translating technical concepts effectively.
Nice to have
- Designed or operated identity and secrets management systems for large-scale AI or cloud infrastructure.
- Built security frameworks or libraries adopted across an engineering organization.
- Led a developer security program including supply chain security and secure build infrastructure.
- Built or secured CI infrastructure using Nix, Bazel, or Kubernetes-based deploy systems.
- Understanding of Linux systems internals including namespaces, cgroups, and seccomp.
Culture & Benefits
- Work as a single cohesive team on a few large-scale research efforts, valuing impact over specific puzzles.
- Extremely collaborative group with frequent research discussions.
- Competitive compensation and benefits, with optional equity donation matching.
- Generous vacation and parental leave, plus flexible working hours.
- Visa sponsorship is available for eligible candidates.
- Lovely office spaces in San Francisco, New York City, and Seattle for collaboration.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →