Назад
Company hidden
2 часа назад

Security Engineer (Infrastructure)

224 000 - 275 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Infrastructure): Own end-to-end security for bare metal infrastructure including supply chain, provisioning, hardening, and secure decommissioning with an accent on securing AI frontier compute infrastructure and building security programs from scratch. Focus on designing hardened OS images, enforcing BMC security models, implementing encryption at fleet scale, and leading threat modeling and incident response.

Location

Location: On-site in New York, NY; Austin, TX; San Francisco, CA; Seattle, WA, United States

Salary: $224,000 – $275,000 per year plus equity

Company

hirify.global builds civilization-scale infrastructure for AI, focusing on delivering massive compute power faster than anyone else with teams spanning hardware and software.

What you will do

  • Own end-to-end security for every server in the bare metal fleet, from supply chain to secure decommissioning.
  • Design and maintain hardened golden OS images with automated vulnerability scanning and patch pipelines.
  • Define and enforce BMC security models including access control, credential rotation, and firmware integrity.
  • Collaborate with network engineering on micro-segmentation, IDS/IPS, firewall architecture, and zero-trust implementation.
  • Implement data-at-rest encryption, key management, and secure storage access at fleet scale with automation.
  • Lead threat modeling, security reviews for new hardware and network designs, and respond to security incidents.

Requirements

  • On-site presence in one of the specified US cities is required.
  • Experience in information security or infrastructure engineering focused on bare metal, IaaS, or high-scale cloud infrastructure.
  • Deep Linux hardening skills (SELinux, AppArmor, kernel-level security) and network security expertise (TCP/IP, VPNs, firewall rulesets, zero-trust).
  • Practical encryption implementation experience including disk-level (LUKS), hardware-level, HSMs, and trusted computing (TPM/TXT).
  • Fluent automation skills in Python, Go, or Rust and configuration management tools (Ansible, Puppet, Chef).
  • Strong communication skills to work across engineering teams and clearly convey security decisions.

Nice to have

  • Experience with BMC platforms (OpenBMC, iDRAC, iLO), hardware root of trust, and secure boot.
  • Knowledge of compliance standards such as SOC 2, ISO 27001, FedRAMP.
  • Certifications like CISSP, OSCP, or CEH.

Culture & Benefits

  • High ownership and full autonomy with end-to-end responsibility.
  • Fast-paced environment focused on velocity and first principles thinking.
  • Commitment to pay equity and transparency.
  • Equal Employment Opportunity Employer with inclusive hiring practices.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →