Security Engineer
Security Engineer safeguards multitenant GPU cloud platform by designing secure architectures, conducting assessments, penetration testing, and implementing fixes. Requires 5+ years in cloud security, Linux/containerization expertise, and programming in Python/Go/C.
Responsibilities
- Design and implement secure architectures for Runpod's multitenant GPU cloud platform, ensuring strong isolation between customer workloads
- Conduct thorough security assessments, including threat modeling, code reviews, and penetration testing of our cloud infrastructure and services
- Develop and implement security fixes and improvements in collaboration with software engineering teams
- Implement and manage security tools and systems (e.g., SIEM, WAF, EDR)
- Create and maintain security documentation, including policies, procedures, and technical guidelines specific to GPU cloud security
- Provide security guidance and training to development teams to foster a security-first culture in cloud development
- Participate in incident response activities and contribute to post-incident analysis and improvements
- Collaborate with operations team to ensure adherence to relevant standards (e.g., SOC 2, ISO 27001, GDPR)
Requirements
- Bachelor's degree in Computer Science, Cybersecurity, or a related field
- 5+ years of experience in information security roles, with a focus on cloud security
- Strong programming skills in at least one language (Python, Go, or C)
- Extensive knowledge of Linux kernel internals, containerization technologies, and virtualization
- Deep understanding of workload/network isolation techniques in multitenant cloud environments
- Experience securing and hardening cloud infrastructure, particularly in environments with untrusted workloads
- Familiarity with GPU architecture and security considerations in GPU cloud computing
- Strong background in network security, application security, and cloud-native security practices
- Experience with security testing tools and methodologies (e.g., OWASP, Burp Suite, static/dynamic analysis tools)
- Familiarity with common cybersecurity frameworks (e.g., NIST, CIS Controls) and their application to cloud environments
Preferred
- Relevant security certifications (e.g., CISSP, CCSP, OSCP)
- Experience with DevSecOps practices and tools in cloud environments
- Deep knowledge of containerization and orchestration technologies (e.g., Docker, Kubernetes) and their security implications
- Familiarity with regulatory compliance requirements for operating cloud services
- Contributions to open-source security projects or security research publications related to cloud or GPU computing
- Experience with GPU programming and understanding of GPU-specific security concerns
Compensation
- Competitive base pay: $152,000 - $175,000
- Meaningful equity (stock options)
- Generous medical, dental & vision plans (100% coverage for employees)
- Flexible PTO
- $1,200 Home Office & Equipment Stipend
Product Security Engineer
Product Security Engineer embedding into engineering workflows to conduct architecture reviews, threat modeling, and penetration testing coordination while serving as GCP security SME. Requires 5-7 years experience and strong GCP and Python skills.
Senior Security Engineer, GRC
Senior GRC engineer owning customer security questionnaires, compliance automation, risk assessments, and policy management across SOC 2, ISO 27001, and HIPAA. Requires 8+ years experience, scripting skills, and strong customer-facing communication.
Director, Product Security Engineering
Lead product security initiatives by embedding security into the SDLC, performing threat modeling, building security tooling, and mentoring teams. Requires 8-10+ years of product security experience and deep expertise in cloud, application, and mobile security.
Senior Security Engineer
Senior Security Engineer building and scaling security platforms, AI/LLM security controls, detections-as-code, and automation across cloud and SaaS environments. Requires 5+ years hands-on security engineering experience and strong Python/cloud skills.