Security Software Engineer, Principal (Platform Trust Intelligence & Security Platform)
Core
Design and build the secure runtime, telemetry, detection, and containment layers for AI agents operating in an enterprise environment, ensuring isolation and safe execution.
Role type
Principal Software Engineer (Platform Trust Intelligence & Security)
Builds
Secure runtime substrate, microVM-based isolation, behavioral detection systems, and policy enforcement orchestration for autonomous AI agents.
Domain
AI Security, Platform Engineering, Cloud Infrastructure
Deliverable
production ML models | infrastructure
Required skills
microVM and container isolation (Firecracker, Kata Containers), sandboxed code execution, streaming systems (Kafka, Flink), ML serving, Python, JVM, AWS/GCP/Azure, CI/CD, Infrastructure-as-Code (Terraform), threat modeling, IAM, audit logging.
Preferred skills
agent harnesses and AgentOps, agent evaluation frameworks, advanced prompt engineering, offensive security/red-teaming.
Technologies
Firecracker, Kata Containers, gVisor, E2B, Firecracker, Kafka, Flink, Prometheus, OpenTelemetry, Grafana, GitHub Actions, ArgoCD, Terraform, Docker, Kubernetes, OPA, Gatekeeper.
Responsibilities
Design and operate microVM-based isolation for high-density agent sandboxes; build runtime detection layers scoring agent behavior against learned baselines; implement policy enforcement and response orchestration with reversible actions; build schema-governed telemetry pipelines capturing agent traces; establish evaluation and replay infrastructure for detection models and policies; lead cross-team architecture across applied ML, platform engineering, and security.
Seniority
Principal, hands-on IC with strategy & mentorship