Skip to content
AnthropicAnthropic

Senior Software Security Engineer

Senior security engineer building and maintaining identity, secrets, and cloud security systems for AI infrastructure. Requires 5+ years experience, strong Python/Go/Rust skills, and cloud security expertise.

About the job

Responsibilities

  • Build and maintain identity and secrets management systems, including credential issuance, rotation, and workload authentication across multi-cloud environments
  • Contribute to cluster security controls including RBAC policies, namespace isolation, workload identity, and pod security
  • Implement and maintain cloud security controls including IAM, network segmentation, VPC architecture, and encryption across multi-cloud and on-prem environments
  • Design and implement secure development frameworks and libraries that make secure coding the path of least resistance, including service-to-service authentication, serialization libraries, and tool proxies
  • Harden CI/CD pipelines against supply chain attacks through isolated build environments, signed attestations, dependency verification, and automated policy enforcement
  • Identify and remediate security gaps through code review, threat modeling, and hands-on debugging
  • Contribute to continuous cloud security posture management using infrastructure-as-code scanning, misconfiguration detection, and automated remediation

Requirements

  • At least 5 years of software engineering experience implementing and maintaining security-relevant systems in production
  • Bachelor's degree in Computer Science or equivalent industry experience
  • Strong programming skills in Python or at least one systems language such as Go or Rust
  • Experience contributing to cloud security controls
  • A track record of taking ownership of problems end to end, from identifying the issue to shipping and monitoring the fix
  • Clear communication skills and the ability to work collaboratively across engineering teams
  • Low ego and high empathy, with a genuine interest in helping teammates succeed
  • Passion for AI safety and the role security engineering plays in building trustworthy AI systems

Nice-to-Haves

  • Contributions to developer security tooling including SAST, dependency scanning, or secure build infrastructure
  • Familiarity with Kubernetes security primitives including RBAC, namespaces, network policies, and admission controllers
  • Experience with cloud security posture management tooling, infrastructure-as-code security scanning, or automated remediation
  • Experience with network security and isolation techniques including east-west controls, traffic inspection, and cloud network policy
  • Experience with eBPF for security monitoring and enforcement, or developing kernel security policies
  • Experience building secrets management or workload authentication systems, including familiarity with protocols such as OAuth 2.0, OIDC, SAML, or SPIFFE/SPIRE
  • Background building or operating security systems in environments that support research workflows and rapid iteration

Skills

Python, Go, Rust, Kubernetes, RBAC, IAM, CI/CD, Oauth 2.0, OIDC, SAML, Spiffe/Spire, Ebpf, SAST, Infrastructure As Code, Cloud Security

Anthropic

Anthropic

San Francisco, CA
Platform Security Engineer, DRTM / Secure Launch
$320k+/yrHybrid8+ YOESecurity Engineering

Owns DRTM adoption, attestation, and platform hardening across x86 and ARM infrastructure, working across firmware, bootloaders, kernels, hardware, and silicon security. The role requires deep systems-security experience, upstream Linux or firmware contributions, and strong vendor and OEM leadership.

Mercor

Mercor

San Francisco, CA

Security GRC Lead
$350k+/yrOn-site7+ YOESecurity Engineering

Leads the company’s security GRC function, owning SOC 2, ISO 27001, enterprise audits, third-party risk, policy governance, and automated evidence workflows. Requires 7+ years of GRC or audit experience, end-to-end SOC 2 and ISO 27001 ownership, and strong security tooling expertise.

Anthropic

Anthropic

Washington, DC
Safeguards Enforcement Lead, Cyber Harms
$285k+/yrHybridSecurity Engineering

Leads cyber-focused AI misuse enforcement, managing analysts and contractors while developing detection and mitigation strategies for attacks, malware, and exploitation. Requires people management, cybersecurity expertise, high-volume abuse enforcement, data analysis with SQL or Python, and cross-functional risk communication.

OpenAI

OpenAI

San Francisco, CA

Software Security Architect, Operating Systems | Consumer Devices
$268k+/yrOn-site7+ YOESecurity Engineering

Defines the security architecture for a next-generation operating system, spanning trust boundaries, hardware-backed protections, isolation, secure updates, and AI-agent guardrails. The role requires deep privileged-systems expertise, systems programming ability, and experience securing platforms across hardware, firmware, and software.

OpenAI

OpenAI

San Francisco, CA

Cyber Operations Lead, Critical Harm Operations
$252k+/yrHybrid8+ YOESecurity Engineering

Leads cybersecurity and cyber intelligence operations for high-risk user-safety decisions, combining strategic planning, operational systems, automation, and direct people management. Requires 8+ years in cybersecurity-related work and 4+ years leading teams.