Design and defend network security architecture for AI compute infrastructure at gigawatt scale across data centers, OT networks, and cloud. Build detection, harden OT/BMS systems, and automate controls using IaC. Requires scaling network security experience, packet analysis, IT/OT segmentation, and real intrusion detection.
242k – 284k/yr
On-site7+ YOESecurity Engineering
About the role
Role Scope
Design and defend the network security architecture across data centers, corp, and cloud: segmentation, firewalls, and east-west controls at gigawatt scale.
Build network detection: telemetry, flow analysis, and alerting across training fabrics, OT networks, and the WAN.
Harden the OT and BMS side, where the network touches physical plant, against threats most security teams never see.
Automate network security controls so new sites inherit the architecture on day one.
Requirements
Secured production networks at scale, and you read a packet capture as comfortably as a dashboard.
Designed segmentation for environments that mix IT, OT, and high-value compute.
Deployed and tuned NDR or flow-based detection that found real intrusions.
Work infrastructure-as-code: your firewall rules live in a repo, not a GUI.
Partnered with network engineering without becoming the department of no.
Nice-to-Haves
OT and ICS security.
Data center or cloud provider environments.
BGP and routing security.
Zeek or Suricata.
Skills
network securityfirewallsnetwork segmentationndrflow analysispacket captureInfrastructure As Codeot securityics securityBGPzeeksuricata
Lead the strategy, roadmap, and team for enterprise security at a healthcare AI company. Own IAM/Zero Trust, endpoint protection, SaaS security, automation, and secure AI adoption while partnering cross-functionally in a 0-to-1 greenfield environment.
240k – 299k/yr
Hybrid8+ YOESecurity Engineering
Sr. Manager, Security Engineering
Material SecuritySan Francisco, CA
Lead the Security Engineering team responsible for defending the organization and product infrastructure. Manage Application, Infrastructure, and Corporate security while staying hands-on with alert triage, detection, and architectural design.
240k – 280k/yr
Remote7+ YOESecurity Engineering
Lead Security Engineer
Hinge HealthSan Francisco, CA
Leads security for AI-assisted development, cloud infrastructure (AWS), and IAM in healthcare platform. Requires 7+ years cybersecurity, 5+ years AWS, coding experience, and AI/ML security expertise.
239k – 263k/yr
Hybrid7+ YOESecurity Engineering
Product Security Architect
ReplitFoster City, CA
Defines and implements secure architecture for multi-tenant SaaS platform, leads threat modeling, mentors engineering teams on security best practices, and conducts code reviews. Requires 8+ years in product security with expertise in auth protocols and SaaS security.
250k – 380k/yr
Hybrid8+ YOESecurity Engineering
Senior Engineer, Agentic Identity
BaselayerSan Francisco, CA
Build and own core components of KYA (Know Your Agent), a cryptographic identity substrate for AI agents using verifiable credentials, JWS, OAuth, and Merkle logs. Requires production experience shipping cryptographically correct identity systems in Python and Go.