Security Engineer, Host Assurance
Core
Design, build, and operate core security infrastructure to establish trust in bare-metal hosts before they are eligible for production use at massive scale.
Role type
Senior IC security engineer (host assurance & hardware trust)
Builds
Host attestation, measurement, baseline verification tooling, machine identity, certificate issuance/enrollment, and HSM-backed trust services
Domain
Cloud infrastructure security, hardware/firmware validation, PKI, and secure boot
Deliverable
production ML models | infrastructure
Required skills
software engineering at scale, PKI, HSMs, machine identity, applied cryptography, secure boot, firmware/hardware security, host attestation, low-level platform security
Preferred skills
replacing manual security mechanisms with paved-path infrastructure, debugging security-critical infrastructure, defining observable security properties
Technologies
HSMs, PKI, secure boot, firmware, host attestation
Responsibilities
Design and operate components establishing trust in bare-metal hosts; validate hardware/firmware against vendor claims and manage drift; eliminate insecure bootstrap patterns; contribute code and design for foundational trust services; participate in incident response for security-critical infrastructure
Seniority
Senior, hands-on IC