Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Infrastructure Security Engineer

$280k - $330k

Crusoe

Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens — to power the world's most ambitious AI workloads. When you join Crusoe, you join a team that is building the future, faster. We're in the midst of the greatest industrial revolution of our time. The demand for AI compute is boundless, and power is a bottleneck. We're solving that — with an energy-first approach that makes AI infrastructure better for the world and faster for the people innovating with AI. We're looking for problem‑solving, opportunity‑finding teammates with a sense of urgency, who believe in the scale of our ambition and thrive on a path not fully paved — people who want to grow their careers alongside a team of experts across energy, manufacturing, data center construction, and cloud services. If you want to do the most meaningful work of your career, help our customers and partners advance their AI strategies, and be part of a high‑performing team that believes in each other, come build with us at Crusoe. About This Role As the Principal Infrastructure Security Engineer, you will serve as the visionary lead for securing Crusoe’s next‑generation AI cloud infrastructure. This is a role for an industry‑recognized security expert who has operated at hyperscale and understands how to systematically dismantle infrastructure risk. You are stepping in at a critical evolutionary phase: leading the architectural shift to a true zero‑trust, identity‑first fabric. In this position, you will bridge the gap between hardware roots‑of‑trust and the cloud control plane. You will tackle complex challenges across the entire stack, from hardware‑level supply chain vulnerabilities and BMC hardening to securing public build environments and implementing cryptographically attested workload identities. You aren't just securing a cloud; you are defining the security standard for the age of generative AI infrastructure while directly driving our enterprise security roadmap. What You’ll Be Working On Platform Security Services: Lead the architectural transition to a zero‑trust network by driving the adoption of Workload Identity (SPIRE/SPIFFE) and enforcing mutual TLS (mTLS) with encryption, authorization policy enforcement across all service‑to‑service communications. Eradicating Static Credentials: Architect and deploy Just‑in‑Time (JIT) access models, temporary credentials (PAM), and granular machine identities to systematically eliminate static credentials and API keys across the infrastructure. Full‑Stack Supply Chain Security: Architect and enforce security controls across the entire supply chain spectrum: from firmware and bare‑metal (hardening BMC administration and establishing verifiable roots‑of‑trust) up through the hypervisor, VM layer, cloud control plane, and CI/CD build environments (GitLab). Enterprise Data Security & Secrets Management: Drive the technical delivery of highly requested enterprise trust features, including Customer‑Managed Encryption Keys (CMEK) and an internal Secrets‑as‑a‑Service platform (Vault‑aaS). Runtime Integrity & Advanced Threat Defense: Lead the deployment of host‑level controls using eBPF and Falco‑class tooling for kernel lockdown, audit expansion, and immutable logging to detect and prevent threats in real‑time. Network & Hardware Isolation: Guide the security architecture for SDN 2.0 (OVN sharding per tenant), secure VPC peering, and private connectivity (IPsec VPN, VPC Interface Endpoints) to ensure rigorous tenant isolation without an AI workload performance tax. Executive Advisory & Prioritization: Act as a trusted advisor to leadership, synthesizing ambiguous systemic signals — from endpoint and SaaS risks to deep infrastructure vulnerabilities — into clear engineering action plans and RFCs. What You’ll Bring to the Team Hyperscale Provenance: 12+ years of experience in infrastructure security, security architecture, or production engineering, with significant tenure at a major cloud provider (e.g., AWS, GCP, Azure) or specialized high‑performance computing environment. Identity & Zero Trust Mastery: Deep, hands‑on architectural expertise with modern identity frameworks (SPIFFE/SPIRE, OIDC, OAuth 2.0) and a proven track record of successfully rolling out mTLS and temporary credentialing at scale. Supply Chain & Pipeline Security: Strong experience securing public/private build environments, enforcing CI/CD pipeline integrity, and mitigating risks across software, firmware, and hardware supply chains. Deep Systems & Kernel Authority: Authoritative knowledge of OS‑level security, Linux kernel internals, hypervisor isolation boundaries, and runtime integrity tooling (eBPF, Falco). Hardware‑to‑Software Security: Proven experience securing bare‑metal infrastructure, including Baseboard Management Controller (BMC) hardening, TPMs, Secure Boot, and out‑of‑band management networks. Coding & Automation Fluency: Strong ability to read, review, and write code (Go, Python, Rust, or C/C++) to automate security guardrails and prototype secure systems. Communication Mastery: The rare ability to explain the nuances of hypervisor supply chain risks to an engineer, and the business value of CMEK to executive leadership and enterprise customers. Mandatory Education: A Bachelor’s or Master’s degree in Computer Science, Computer Engineering, Cybersecurity, or a related field (or equivalent professional experience). Bonus Points AI/ML Workload Expertise: Direct experience securing massive‑scale GPU clusters, LLM training pipelines, or highly sensitive AI datasets. Open Source Leadership: Maintainer status or major contributions to CNCF security tools (e.g., SPIFFE/SPIRE, Falco, OPA) or the Linux Kernel. Corporate & IT Security Crossover: Experience partnering with IT security to mitigate endpoint, SaaS (Okta, Google Workspace), and insider risks that bridge the corporate and production boundaries. Benefits Competitive compensation and equity packages Restricted Stock Units Paid time off, paid holidays & leave of absence programs Comprehensive health, dental & vision insurance Employer contributions to HSA account Paid parental leave Paid life insurance, short‑term and long‑term disability Professional development & tuition reimbursement Mental health & wellness support Commuter benefits (parking & transit) Cell phone stipend 401(k) Retirement plan with company match up to 4% of salary Volunteer time off Global travel insurance & emergency assistance Daily meals allowance Additional perks & programs specific to location Compensation Range Compensation will be paid in the range of up to $280,000 - $330,000 + Bonus. Restricted Stock Units are included in all offers. Compensation to be determined by the applicant's knowledge, education, and abilities, as well as internal equity and alignment with market data. Crusoe is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, disability, genetic information, pregnancy, citizenship, marital status, sex/gender, sexual preference/ orientation, gender identity, age, veteran status, national origin, or any other status protected by law or regulation. #J-18808-Ljbffr Crusoe

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Principal Infrastructure Security Engineer in San Francisco, CA vacancy
  • $240k - $250k

    Saviynt Inc. is seeking a Principal Software Engineer in San Francisco, CA, to join their AI Security team. In this role, you will design and implement workflows for AI security products and develop secure, scalable software across major cloud platforms. The ideal candidate... 
    Principal

    Saviynt Inc.

    San Francisco, CA
    1 day ago
  • Salesforce, Inc. is seeking a Principal Software Engineer for their Platform Security team in San Francisco, California. This role involves leading software...  ...experience, strong knowledge in security infrastructure, and proven leadership capabilities. The responsibilities... 
    Principal

    Salesforce, Inc.

    San Francisco, CA
    1 day ago
  • $240k - $250k

    Saviynt in San Francisco is hiring a Principal Software Engineer to lead the development of AI security products. With over 10 years of software engineering experience required, you will design, implement, and release end-to-end workflows across cloud platforms like AWS... 
    Principal

    Saviynt

    San Francisco, CA
    3 days ago
  • $277.6k

    About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence...  ...security culture. About the Role OpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (InfraSec) team. InfraSec protects the... 
    Principal

    Centaur Labs

    San Francisco, CA
    1 day ago
  • Principal Cloud Security Operations Engineer (Scripting, AWS, DevOps, CISM, CCSA, CISSP, CCIE Security, CEH) in San Francisco, CA AWS, CEH, CISA, CISSP, DevOps, Python, scripting, Security Operations, SIEM Location: California Job Function: Information Security Date... 
    Principal
    Permanent employment
    Full time
    Work experience placement
    Remote work
    Relocation

    DBA Web Technologies

    San Francisco, CA
    more than 2 months ago
  • $147k - $237.5k

    Palo Alto Networks, Inc. is seeking a Security Engineer for their Chronosphere team in San Francisco, California. The role involves defining and building core security infrastructures while ensuring security standards are met across all projects. Ideal candidates will have... 
    Remote job

    Palo Alto Networks, Inc.

    San Francisco, CA
    21 hours ago
  • A leading AI research company is hiring a Security Engineer to join the Infrastructure Security team. Responsibilities include designing security controls and collaborating with engineering teams to enhance security across infrastructure. Candidates should have a strong... 
    Remote job
    Flexible hours

    OpenAI

    San Francisco, CA
    4 days ago
  •  ...and transform millions of lives in the coming years. THE ROLE We are seeking a highly motivated and adaptable engineer to own the infrastructure and security foundation that a fleet of wearable robots depends on. This means hardening our cloud and device infrastructure... 
    Full time
    Work at office
    Relocation

    Skip

    San Francisco, CA
    1 day ago
  • $260k - $275k

    Saviynt, located in San Francisco, is hiring a Senior Principal Software Engineer to lead the development of our AI security products. You will design and implement secure and scalable workflows, work across various cloud platforms, and contribute to product direction... 
    Principal

    Saviynt

    San Francisco, CA
    1 day ago
  • $2,000 per month

     ...The Role As a Principal Infrastructure Engineer , you will help lead and build out the automation for provisioning and managing the Nextdata OS in...  ...founding engineering team to deliver a self‑service and secure OS platform for the data product developers of the future... 
    Principal

    NextData

    San Francisco, CA
    2 days ago
  • Slope is seeking a Principal Software Engineer to join their Infrastructure Security team. This role is crucial in safeguarding OpenAI’s technology and products, focusing on the development of robust security systems and architecture. You'll need strong software engineering... 
    Principal
    Remote job
    Flexible hours

    Slope

    San Francisco, CA
    4 days ago
  •  ...Distributed Systems Software Engineer - Public Cloud (Senior/Lead/Principal) Our Public Cloud engineering teams...  ...reliable, lightning fast, supremely secure, and to preserve all of their...  ...systems. Your Impact Deliver cloud infrastructure automation tools, frameworks, workflows... 
    Principal

    Salesforce, Inc..

    San Francisco, CA
    2 days ago
  • $260k - $275k

    Medium is seeking a Senior Principal Software Engineer in San Francisco to lead the design and implementation of AI security solutions. This role requires over 15 years in software engineering, with expert skills in Java, Spring, and cloud platforms such as AWS and Azure... 
    Principal

    Medium

    San Francisco, CA
    2 days ago
  • $261k - $326k

    A technology company specializing in AI infrastructure is seeking a Principal Engineer to enhance reliability and scalability of cloud systems. This role demands over 15 years of experience in production engineering or related fields and involves setting technical directions... 
    Principal

    Crusoe

    San Francisco, CA
    1 day ago
  • Upstart is looking for a Principal Software Engineer to provide technical leadership and drive architectural direction. The role involves designing internal platforms and security automation systems, partnering with stakeholders across functional areas. Ideal candidates... 
    Principal
    Remote work

    Upstart

    San Francisco, CA
    1 day ago
  • $200k - $350k

     ...assembling a team of top researchers and engineers across AI and biology to build an AI scientist. Role As a Principal Infrastructure Engineer, you’ll play a key role in designing...  ..., persistent volumes, StatefulSets), and security (RBAC, Pod Security Standards, secrets... 
    Principal
    Work at office

    Edison Scientific

    San Francisco, CA
    2 days ago
  • $150k - $215k

    Nscale is seeking a Principal Back-End Network Engineer to lead technical initiatives for AI infrastructure. Responsibilities include owning the reliability of Infiniband networks and driving operational excellence. With over 10 years of experience in HPC networking, you... 
    Principal

    Nscale

    San Francisco, CA
    2 days ago
  • An innovative tech platform is seeking a Senior Principal Software Engineer to lead the development of its next-gen API Platform. The role involves...  ...experience and extensive knowledge in API design, cloud platforms, and security protocols. #J-18808-Ljbffr jobright.com
    Principal
    Remote job

    jobright.com

    San Francisco, CA
    5 days ago
  •  ...located in San Francisco, CA, needs a hybrid or remote Sr. Cloud Security Engineer for a full-time position. This is a critical, highly...  ...enforcing security best practices across our client's cloud infrastructure. The primary focus will be on Microsoft Azure, with a requirement... 
    Full time
    Remote work

    ClearBridge Technology Group

    San Francisco, CA
    2 days ago
  •  ...A technology innovation firm is looking for an experienced Data Center Security Engineer to secure its expanding data center infrastructure. This role involves designing security controls, conducting audits, and collaborating with a team of security experts to ensure... 
    Remote work

    OpenAI

    San Francisco, CA
    2 days ago
  • Abby Care is seeking a Principal Engineer to lead the technical direction of its platform in San Francisco. This full-time role demands over 10 years of experience in architecture for large-scale systems, with a focus on scalable AI-driven workflows. The successful candidate... 
    Principal
    Full time

    Abby Care

    San Francisco, CA
    2 days ago
  • $162k - $235k

     ...looking for We're searching for a Senior Cloud Security EngineerYou will be part of the Cloud Security engineering team dedicated to building resilient,...  ...scale. Cloud security collaborates with infrastructure and application teams closely. The areas we cover... 
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    San Francisco, CA
    6 hours ago
  • $240k

    Convex is seeking experienced engineers to design and maintain its global cloud infrastructure in San Francisco. This role involves architectural decisions and collaboration with teams to improve system performance and reliability while prioritizing simplicity. The ideal... 
    Principal

    Convex

    San Francisco, CA
    3 days ago
  • DocuSign, Inc. is looking for a Principal Engineer to manage technological strategies within the marketing and sales domains. This role requires over 15 years of experience in software engineering, focusing on large-scale, data-intensive platforms that drive business efficiency... 
    Principal

    DocuSign, Inc.

    San Francisco, CA
    5 days ago
  • $285k - $315k

    Ironclad Inc. is seeking a Principal Engineer in San Francisco to drive the development of AI-powered contract solutions. The role requires over 10 years of experience in software engineering, especially in designing and evolving distributed systems. You'll collaborate... 
    Principal
    Contract work

    Ironclad Inc.

    San Francisco, CA
    3 days ago
  •  ...highly collaborative and diverse team of talent. who will be responsible for ensuring the security and compliance of our cloud infrastructure and data. You will work with the engineering, DevOps, and IT teams to design, implement, and maintain security policies, controls,... 
    Contract work
    Remote work

    Avant Digital Inc

    San Francisco, CA
    3 days ago
  • $152k - $175k

     ...future of AI and machine learning, offering cutting‑edge cloud infrastructure for full‑stack AI applications. Founded in 2022, we are a...  ...computing landscape, we are seeking a full‑time, remote Security Engineer to join our team. This critical position will be instrumental... 
    Principal
    Full time
    Remote work
    Home office
    Flexible hours

    Runpod

    San Francisco, CA
    1 day ago
  • Jack & Jill is looking for a Principal Software Engineer to join their team in San Francisco. In this role, you will architect and build secure embedded finance products using Java. You’ll work closely with a seasoned team to shape a high-scale platform and innovate on... 
    Principal

    Jack & Jill

    San Francisco, CA
    3 days ago
  • $275k - $300k

    Snorkel AI is seeking a Principal Software Engineer to shape product and technical systems to meet today's AI challenges. The role demands 12+ years of experience in software engineering, focusing on building scalable AI data solutions for enterprise clients. This position... 
    Principal

    jobs.frontdoordefense.com - Jobboard

    San Francisco, CA
    5 days ago
  • $145k - $195k

     ...Senior Cloud Security Engineer Denver, CO or Long Beach, CA or SF Bay Area, CA True Anomaly seeks those with the talent and ambition...  ...'t about checking compliance boxes—it's about protecting infrastructure that enables space domain awareness and satellite operations... 
    Permanent employment

    True Anomaly

    San Francisco, CA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Infrastructure Security Engineer. Be the first to apply!