Назад
Company hidden
6 дней назад

Sr. Staff Security Architect (Distributed Storage)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Staff Security Architect (Distributed Storage): Designing end-to-end security architecture for distributed storage platforms, including S3-compatible systems, POSIX-compliant file systems, and KV cache-based data services, with an accent on cryptography, identity frameworks, and multi-tenant isolation. Focus on defining secure data path, control plane, and protocol-layer architectures, integrating IAM and KMS, and protecting high-performance AI-driven workloads.

Location: Remote - California; hybrid work arrangement

Company

hirify.global develops distributed storage platforms for high-performance, multi-tenant, and AI-driven workloads.

What you will do

  • Design and implement end-to-end security architecture across data path, control plane, and protocol layers.
  • Secure S3-compatible, POSIX/NFS, and KV cache-based data services, including APIs, request signing, session management, and endpoint security.
  • Define encryption, key management, IAM, RBAC, ABAC, SSO, MFA, and federation frameworks across tenants, datasets, and resources.
  • Lead threat modeling, security reviews, SSDLC practices, observability, anomaly detection, and data-exfiltration monitoring.
  • Strengthen multi-tenant isolation, auditability, compliance, and secure integration with external services.
  • Provide technical leadership and mentorship to protocol, storage, platform, and other engineering teams.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field.
  • 12+ years of experience in security architecture, infrastructure security, or distributed systems.
  • Experience designing security for large-scale distributed systems or storage platforms.
  • Deep expertise in encryption technologies, cryptographic frameworks, key management, and external KMS integration using KMIP or similar protocols.
  • Strong knowledge of IAM, RBAC, ABAC, SSO, MFA, federation, LDAP, Active Directory, and OIDC.
  • Experience with secure API design, TLS 1.3, mutual TLS, request signing, multi-tenant isolation, logging, auditing, and SIEM integration.

Nice to have

  • Security architecture experience with S3, POSIX/NFS, KV cache systems, memory tiering, or AI/ML data infrastructure.
  • Hands-on experience with BYOK, tenant-scoped key management, metadata-based ABAC, zero trust architecture, and cryptographic erasure.
  • Knowledge of SOC 2, ISO 27001, NIST, or FedRAMP compliance frameworks.
  • Experience with anomaly detection, security analytics, alerting, and high-performance, low-latency distributed systems.

Culture & Benefits

  • Cross-functional collaboration with protocol, storage, platform, and ecosystem engineering teams.
  • Opportunity to influence system design, implementation, and long-term platform evolution.
  • Focus on secure-by-design engineering for distributed storage and AI-driven workloads.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →