OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. They are seeking a Security Engineer to join their Infrastructure Security team, responsible for protecting the foundational aspects of OpenAI's research and production environments. The role involves designing and implementing security controls, collaborating with engineering teams, and tackling high-impact security projects.
Responsibilities:
- Design and build security controls across diverse layers (e.g., physical hardware, firmware/BMC, OS, Kubernetes, networks, and CI/CD) to defend against sophisticated adversaries and insider threats
- Collaborate with engineering and security teams to drive deployment of security enhancements and control changes across broad-scale infrastructure
- Tackle high-impact projects such as checkpoint encryption, network isolation, secret management, and machine identity, while continuously raising the security bar for emerging AI workloads
- Take a generalist approach to building security controls, balancing a mix of security expertise and broad technical skillsets to adapt to evolving challenges
Requirements:
- Deep understanding of security principles, best practices, and common vulnerabilities
- A proactive mindset, with the ability to identify and address security gaps or inefficiencies through automation and tooling
- A track record of delivering scalable solutions and driving impactful changes across infrastructure in real-world projects
- Expertise in the security of cloud platforms (e.g., Amazon AWS, Microsoft Azure), especially securing multi-cloud networks and infrastructure, and designing cloud agnostic systems
- Experience securing on-prem deployments and datacenters from construction to multi-tenant use
- Familiarity with container security, orchestration security, and authentication/authorization
- Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks
- Excellent communication skills, with the ability to convey complex security concepts to technical and non-technical stakeholders
- Excitement about collaborating with cross-functional teams to build secure, reliable systems that scale globally