About the job
Join Our Dynamic Security Team
At OpenAI, security is integral to our mission of ensuring that artificial general intelligence serves the greater good of humanity. Our dedicated Security team safeguards our technology, personnel, and products. We pride ourselves on our technical expertise in building robust security measures while operating with a commitment to supporting all research and product initiatives at OpenAI.
Our core tenets emphasize impactful prioritization, empowering researchers, preparing for transformative technologies, and fostering a vibrant security culture.
Your Role as a Security Engineer
We are on the lookout for a skilled Security Engineer to bolster our Infrastructure Security (InfraSec) team. The InfraSec team is tasked with safeguarding the backbone of OpenAI’s research and production platforms, which include GPU supercomputing clusters, multi-cloud environments, data centers, networking, storage solutions, and the critical services that fuel our advanced AI models. This role encompasses a wide array of responsibilities, from hardware and firmware security to Kubernetes clusters and data access controls for sensitive model weights and user data.
Key Responsibilities:
Design and implement security controls across multiple layers—ranging from physical hardware and firmware to networks and CI/CD pipelines—to safeguard against sophisticated threats and insider risks.
Collaborate with cross-functional engineering and security teams to deploy security enhancements and control modifications across extensive infrastructure.
Lead high-impact initiatives such as checkpoint encryption, network isolation, secret management, and machine identity, while continuously elevating security standards for emerging AI workloads.
Adopt a generalist mindset in building security measures, blending deep security knowledge with a broad range of technical skills to meet evolving challenges.
Ideal Candidate Profile:
Thorough understanding of security principles, best practices, and prevalent vulnerabilities.
Proactive in identifying and mitigating security gaps or inefficiencies through automation and innovative tooling.
Proven success in delivering scalable security solutions and driving impactful changes across real-world infrastructure projects.
In-depth knowledge of cloud platform security (e.g., Amazon AWS, Microsoft Azure, Google Cloud).

