OpenAI logo
OpenAI

Creating safe AGI that benefits all of humanity.

Principal Security Engineer, Infrastructure Security

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 201-500Since 2015H1B SponsorCompany SiteLinkedIn

Location

California + 2 moreAll locations: California | New York | Washington

Posted

82 days ago

Salary

$277.6K - $490K / year

Seniority

Lead

Bachelor DegreeEnglishAWSAzureKubernetes

Job Description

Principal Security Engineer, Infrastructure Security

OpenAI

• Own end-to-end security outcomes for one or more critical infrastructure areas, including multi-quarter strategy, roadmap, and delivery. • Design and build security controls across diverse layers (e.g., physical hardware, firmware/BMC, OS, Kubernetes, networks, and CI/CD) to defend against sophisticated adversaries and insider threats. • Lead cross-functional programs to deploy security enhancements and control changes across broad-scale infrastructure, balancing security guarantees with reliability and velocity. • Take a generalist approach to building security controls, balancing a mix of security expertise and broad technical skillsets to adapt to evolving challenges. • Lead and/or drive threat modeling and design reviews for major infrastructure changes, ensuring strong security foundations and operational excellence. • Mentor and level up engineers across InfraSec and partner teams, contributing to a strong security culture through guidance, reviews, and technical leadership.

Job Requirements

  • Deep understanding of security principles, best practices, and common vulnerabilities, including strong security judgment under ambiguity
  • A proactive mindset, with the ability to identify and address security gaps or inefficiencies through automation and tooling.
  • Expertise and curiosity about using frontier models and agents to effectively solve security challenges.
  • A track record of leading large, cross-org initiatives from concept to rollout, including navigating tradeoffs, driving alignment, and delivering measurable risk reduction.
  • Deep expertise in the security of cloud platforms (e.g., Amazon AWS, Microsoft Azure), especially securing multi-cloud networks and infrastructure, and designing cloud-agnostic systems.
  • Experience securing on-prem deployments and datacenters from construction to multi-tenant use.
  • Familiarity with container security, orchestration security, and authentication/authorization.
  • Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks.
  • Excellent communication skills, with the ability to convey complex security concepts to executive, technical, and non-technical stakeholders.
  • Excitement about collaborating with cross-functional teams to build secure, reliable systems that scale globally.

Benefits

  • Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts
  • Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)
  • 401(k) retirement plan with employer match
  • Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)
  • Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees
  • 13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)
  • Mental health and wellness support
  • Employer-paid basic life and disability coverage
  • Annual learning and development stipend to fuel your professional growth
  • Daily meals in our offices, and meal delivery credits as eligible
  • Relocation support for eligible employees
  • Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.

Related Categories

Related Job Pages

More Security Engineer Jobs

Commvault logo

Security Architect – AI Technologies

Commvault

Commvault provides award-winning, intelligent data solutions and information management services that deliver backup and recovery for businesses and organizations. The company was

Recruitment Fraud Alert We’ve learned that scammers are impersonating Commvault team members—including HR and leadership—via email or text. These bad actors may conduct fake interviews and ask for personal information, such as your social security number. What to know: - Commvault does not conduct interviews by email or text. - We will never ask you to submit sensitive documents (including banking information, SSN, etc) before your first day. If you suspect a recruiting scam, please contact us at wwrecruitingteam@commvault.com About Commvault Commvault (NASDAQ: CVLT) is the gold standard in cyber resilience. The company empowers customers to uncover, take action, and rapidly recover from cyberattacks – keeping data safe and businesses resilient. The company’s unique AI-powered platform combines best-in-class data protection, exceptional data security, advanced data intelligence, and lightning-fast recovery across any workload or cloud at the lowest TCO. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks, improve governance, and do more with data. Security Architect – AI Technologies The Opportunity As a Security Architect focused on AI at Commvault, you will help secure the design and deployment of vendor developed AI- and ML-enabled systems across our internal environment and internal platforms. This role is hands-on and forward-looking, centered on identifying and mitigating security risks unique to AI systems while enabling innovation at scale. As a member of the Security Architecture team you will partner closely with Enterprise Architecture, Security Engineering, and Cloud Security teams to conduct security reviews of AI enabled products and workflows. What You’ll Do - Identify and assess security risks associated with AI/ML systems, models, data pipelines, and integrations - Define and implement security controls for AI development, training, deployment, and inference environments. - Partner with engineering teams to embed security into AI design reviews, threat modeling, and SDLC processes. - Assess and mitigate risks such as data leakage, model abuse, prompt injection, and unauthorized access. - Secure AI-related data sources, training datasets, and model artifacts. - Evaluate third-party AI services and integrations for security and compliance risk. - Develop guidance, standards, and guardrails for secure and responsible AI usage. - Support incident response involving AI systems or AI-related attack vectors. - Monitor emerging AI threats and vulnerabilities and translate them into actionable controls. - Support compliance, privacy, and customer trust requirements related to AI usage. Who You Are - 5+ years of experience in information security, product security, or security engineering roles - Strong communication ability to work with both technical stakeholders and leadership - Strong, structured writing ability needed to conduct security reviews - Strong understanding of application security fundamentals and secure SDLC practices. - Strong understanding of securing AI-related authentication and authorization mechanisms (OAuth 2.0, OIDC, general token management) - Familiarity with AI/ML concepts, workflows, and common architectures. - Familiarity with MCP, tools and AI policy guardrails - Familiarity with LLM security risks (e.g., prompt injection, data poisoning, model extraction). - Experience securing cloud-based services and data pipelines. - Knowledge of modern threat modeling and risk assessment techniques. - Comfortable collaborating with engineering, data science, and product teams. - Able to translate complex security risks into practical guidance. Nice to Have - Knowledge of data protection, privacy, and governance principles. - Experience with cloud-native security tools and platforms. - Security certifications (CISSP, CCSP, GWAPT) or relevant AI/security coursework. - Experience with Agentic workflows and multi-agent architecture concepts including planning loops, tool selection control, state management, policy guardrails/constraint enforcement - Familiarity with platforms like Langgraph, LangChain, CrewAI, AutoGPT or similar solutions You’ll love working here because... - Continuous professional development, product training, and career pathing - An inclusive company culture, opportunity to join our Employee Groups - Generous benefits supporting your health, financial security, and work-life balance - Employee stock purchase plan (ESPP) Ready to #makeyourmark at Commvault? Apply now! #LI-MD #LI-Remote Thank you for your interest in Commvault. Reflected below is the minimum and maximum base salary range for this role. At Commvault we use broad salary ranges in our job postings to reflect the diverse levels of expertise and experience among our candidates and is not reflective of the total compensation and benefits package. The specific salary offered will be determined based on your unique qualifications, including your relevant experience, skills, and the value you bring to the role. While the range provides a general idea of the compensation, it is important to note that placements within the range are not automatic and will be carefully considered to ensure a fair and competitive offer. We are committed to rewarding talent and experience. Pay Range $72,250—$195,500 USD Commvault is an equal opportunity workplace and is an affirmative action employer. We are always committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status and we will not discriminate against on the basis of such characteristics or any other status protected by the laws or regulations in the locations where we work. Commvault’s goal is to make interviewing inclusive and accessible to all candidates and employees. If you have a disability or special need that requires accommodation to participate in the interview process or apply for a position at Commvault, please email accommodations@commvault.com For any inquiries not related to an accommodation please reach out to wwrecruitingteam@commvault.com. Commvault's Privacy Policy

United States
$72.3K - $195K / year
Job Closed
Atlassian logo

Security Engineer Intern

Atlassian

Atlassian is a publicly-traded computer software business specializing in collaboration, development, and issue-tracking software for teams. As an employer, Atlassian maintains a t

InternshipRemoteTeam 11,000Since 2012

• Collaborate with developers to identify, resolve, and prevent vulnerabilities, ensuring our products are robust and secure. • Engage in activities like source code auditing, threat modelling, and security reviews to empower engineering teams to build secure software by default. • Enhance the security of Atlassian’s internal assets and networks, safeguarding our employees and infrastructure. • Work on initiatives that promote security awareness and continuous improvement across the organisation. • Engage in the critical task of monitoring and analysing logs to identify potential threats and anomalies. • Develop your expertise in penetration testing and Red Team activities to evaluate and strengthen Atlassian's security posture. • Conduct comprehensive security assessments to identify vulnerabilities and recommend mitigation strategies. • Contribute to the development and implementation of security governance frameworks and risk management strategies.

Australia
Alex Staff Agency logo

Head of Security Engineering – Malware Research

Alex Staff Agency

We help the best professionals and companies find each other despite borders.

Full TimeRemoteTeam 11-50H1B No Sponsor

• Own the end-to-end pipeline - from ingestion of 10M+ unique daily samples to real-time verdict delivery on global server fleets. • Define the roadmap for malware analysis, automated signature generation, and ML-driven classification. • Guide decisions on massive-scale data processing using Airflow, Kafka, ClickHouse, and modern Python/Rust stacks. • Drive the integration of LLMs and transformers for automated code analysis and malware rule creation. • Mentor and scale a multi-disciplinary department across three global teams, fostering a culture of operational excellence and rapid incident response.

Czechia
Job Closed
Full TimeRemoteTeam 11-50

Role: Practice Lead & Physical Security Architect Duration: Contract to Hire Location: Remote work from home with 20% travel Role Overview Arganteal is seeking a Physical Security Architect & Practice Lead for a client to serve as a trusted strategic advisor and technical authority embedded with a premier global financial services client with a significant consumer banking footprint. This individual will function as the client’s principal technical partner—a right-hand resource to their physical security leadership—providing end-to-end architectural guidance across branch security technologies, surveillance infrastructure, and the underlying physical-layer networks that support them. The ideal candidate brings deep, hands-on expertise in enterprise-grade physical security systems deployed at scale across a geographically dispersed branch banking environment. This is a high-visibility, high-trust engagement requiring a practitioner who can operate with autonomy, navigate complex stakeholder landscapes, and drive both tactical execution and long-range technology roadmap development. Key Responsibilities Strategic Advisory & Practice Leadership - Serve as the primary physical security architecture advisor to the client’s security leadership, functioning as a day-to-day strategic and technical partner across all branch security technology initiatives. - Develop and maintain a comprehensive physical security technology roadmap aligned with the client’s enterprise security strategy, regulatory obligations, and branch expansion or consolidation plans. - Lead practice-level activities including standards development, reference architecture creation, technology evaluation, and vendor assessment for physical security platforms and components. - Provide executive-level briefings, technical recommendations, and decision-support documentation to senior client stakeholders, including CISO and corporate security leadership. Branch Security Technology Architecture - Architect, design, and provide technical oversight for branch surveillance systems including IP and analog camera systems, Digital Video Recorders (DVR), and Mobile Video Recorders (MVR). - Define standards for camera placement, coverage mapping, resolution requirements, retention policies, and recording schedules across diverse branch typologies (full-service, drive-through, in-store, and standalone). - Evaluate, recommend, and architect Video Management System (VMS) platforms, ensuring interoperability with existing enterprise security operations center (SOC) workflows and incident management processes. - Provide technical direction on emerging branch security technologies including video analytics, AI-driven threat detection, access control integration, and cloud-based surveillance platforms. Layer 1 Physical Network Infrastructure - Provide expert-level guidance on Layer 1 wiring infrastructure supporting physical security networks, including specification, design, and modification of coaxial cable runs (RG-59, RG-6, and Siamese configurations). - Define and enforce standards for proper electrical grounding and bonding of physical security systems in compliance with NEC, TIA/EIA, and client-specific requirements. - Spec, review, and approve cable pathway designs, termination standards, and signal integrity requirements for both new branch buildouts and retrofit/upgrade projects. - Collaborate with low-voltage contractors, general contractors, and client facilities teams to ensure Layer 1 installations meet architectural specifications and pass quality assurance inspections. - Troubleshoot and resolve signal degradation, grounding faults, and cable plant issues impacting surveillance system performance. - Provide supplemental Layer 2/Layer 3 network support for physical security systems as needed, including familiarity with VLANs, Power over Ethernet (PoE), and TCP/IP fundamentals as they relate to IP-based surveillance infrastructure. Team Leadership & Talent Development - Manage, develop, and mentor a team of field service technicians, engineers, and supervisors supporting physical security operations across the client’s branch environment. - Conduct performance reviews, establish individual development plans, and deliver ongoing training programs to ensure technical staff maintain required certifications and competencies. - Lead recruiting, hiring, and onboarding efforts for technical staff as the practice scales to meet evolving client demand. - Foster a culture of accountability, continuous improvement, and technical excellence within the physical security practice. Operational Support - May periodically oversee day-to-day operational activities including troubleshooting, maintenance coordination, and repair workflows for physical security systems as business needs require. - May support dispatching and scheduling of service technicians from time to time, particularly during peak deployment periods, system upgrades, or incident response scenarios. - Ensure compliance with company safety standards and established service procedures when engaged in operational oversight activities. Client Escalation & Relationship Management - Serve as the primary escalation point for physical security–related service issues, ensuring timely resolution and clear communication with client stakeholders. - Monitor and ensure adherence to service level agreements (SLAs) specific to physical security system uptime, maintenance response, and incident resolution. - Maintain strong, trust-based relationships with key client contacts across corporate security, facilities, and branch operations leadership. Engagement Delivery & Collaboration - Coordinate with internal teams including account leadership, project management, engineering, and supply chain to ensure seamless delivery of physical security solutions. - Produce and maintain detailed technical documentation including as-built diagrams, system architecture drawings, bill of materials, and standards guides. - Participate in site surveys, branch assessments, and periodic on-site reviews as part of the travel expectation (up to 20%). Qualifications Required - Minimum of 10 years of progressive experience in physical security technology architecture, design, and implementation within large-scale enterprise environments. - Demonstrated experience with enterprise surveillance systems including IP and analog cameras, DVR, NVR, and MVR technologies. - Hands-on expertise with Layer 1 wiring for physical security networks, including coaxial cable specification (RG-59, RG-6, Siamese), termination, testing, and modification of cable runs. - Strong working knowledge of proper electrical grounding and bonding practices for security infrastructure per NEC and TIA/EIA standards. - Experience with Video Management System (VMS) and integrated security platforms such as Genetec, Milestone, Avigilon, Honeywell, LenelS2, or Bosch. - Hands-on experience with access control systems, intrusion detection systems, and alarm monitoring platforms within enterprise environments. - Demonstrated ability to serve as a trusted advisor to senior client stakeholders in a consulting or staff augmentation capacity. - Bachelor’s degree in business, electronics, engineering, or a related field, or equivalent professional experience. - Must be a United States citizen currently residing on U.S. soil. - Ability to travel up to 20% domestically. Preferred - Experience in the financial services or consumer banking industry, with specific knowledge of branch security requirements, regulatory considerations, and compliance frameworks (e.g., FFIEC, OCC guidance). - Professional certifications such as PSP (Physical Security Professional), CPP (Certified Protection Professional), BICSI RCDD, or equivalent industry credentials. - Experience with structured cabling design and low-voltage systems beyond coaxial, including Cat6/6A for IP-based surveillance convergence. - Prior practice leadership or team lead experience in a professional services, consulting, or managed services context. - Knowledge of cloud-based and hybrid surveillance architectures, edge computing for video analytics, and bandwidth optimization strategies for distributed branch environments. Work Environment & Requirements - This position is fully remote, open to candidates located anywhere within the United States. - Candidate must be a U.S. citizen physically located on U.S. soil at all times during employment. - Travel of up to 20% is expected, primarily for client site visits, branch assessments, and periodic in-person stakeholder engagements. - Standard working hours with flexibility to accommodate client time zones and periodic after-hours coordination as needed. Compensation & Benefits Certain states and localities require employers to post a reasonable estimate of salary range. Actual salary will be based on a variety of factors, including location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay. The well-being of our employees is essential. So, when it comes to our benefits package, and we have one of the best. We offer the following benefits to all full-time employees: - Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness Program - Financial Benefits: Competitive Pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement - Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement - Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program

United States