6 дней назад
Sr. Staff Security Architect (Distributed Storage)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Staff Security Architect (Distributed Storage): Designing end-to-end security architecture for distributed storage platforms, including S3-compatible systems, POSIX-compliant file systems, and KV cache-based data services, with an accent on cryptography, identity frameworks, and multi-tenant isolation. Focus on defining secure data path, control plane, and protocol-layer architectures, integrating IAM and KMS, and protecting high-performance AI-driven workloads.
Location: Remote - California; hybrid work arrangement
Company
develops distributed storage platforms for high-performance, multi-tenant, and AI-driven workloads.
What you will do
- Design and implement end-to-end security architecture across data path, control plane, and protocol layers.
- Secure S3-compatible, POSIX/NFS, and KV cache-based data services, including APIs, request signing, session management, and endpoint security.
- Define encryption, key management, IAM, RBAC, ABAC, SSO, MFA, and federation frameworks across tenants, datasets, and resources.
- Lead threat modeling, security reviews, SSDLC practices, observability, anomaly detection, and data-exfiltration monitoring.
- Strengthen multi-tenant isolation, auditability, compliance, and secure integration with external services.
- Provide technical leadership and mentorship to protocol, storage, platform, and other engineering teams.
Requirements
- Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field.
- 12+ years of experience in security architecture, infrastructure security, or distributed systems.
- Experience designing security for large-scale distributed systems or storage platforms.
- Deep expertise in encryption technologies, cryptographic frameworks, key management, and external KMS integration using KMIP or similar protocols.
- Strong knowledge of IAM, RBAC, ABAC, SSO, MFA, federation, LDAP, Active Directory, and OIDC.
- Experience with secure API design, TLS 1.3, mutual TLS, request signing, multi-tenant isolation, logging, auditing, and SIEM integration.
Nice to have
- Security architecture experience with S3, POSIX/NFS, KV cache systems, memory tiering, or AI/ML data infrastructure.
- Hands-on experience with BYOK, tenant-scoped key management, metadata-based ABAC, zero trust architecture, and cryptographic erasure.
- Knowledge of SOC 2, ISO 27001, NIST, or FedRAMP compliance frameworks.
- Experience with anomaly detection, security analytics, alerting, and high-performance, low-latency distributed systems.
Culture & Benefits
- Cross-functional collaboration with protocol, storage, platform, and ecosystem engineering teams.
- Opportunity to influence system design, implementation, and long-term platform evolution.
- Focus on secure-by-design engineering for distributed storage and AI-driven workloads.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Sr Staff Security Architect (Healthcare)
6 дней назад
Sr. IT Application Security Engineer
120 000 - 150 000$
6 дней назад
Sr. Software Engineer, Security
140 000 - 205 000$
1 день назад
Security Engineer, IAM (Identity & Access Management)
7 дней назад
Staff Security Engineer for Cloud (Automotive)
205 000 - 240 000$
6 дней назад