AI Infrastructure Security Engineer
Brainco · San Francisco Bay Area
About this role
**AI Infrastructure Security Engineer** **About Brain Co.** Brain Co. builds AI-native operating systems for large, regulated institutions. Each system is built for a specific industry, powered by agents that push real workflows forward. Underneath it all is **Atlas**, our proprietary platform that keeps customers in control, secure by design, and never locked into one model. **Why now** Brain Co. is entering its next phase of production deployments on a national scale, with an elite team and a growing footprint across government, insurance, health, and financial services. Every project ships to production and is expected to create measurable customer value and impact. --- ## About the role As our **Security Engineer, Infrastructure**, you’ll secure the platform layer end-to-end, including: - Cloud infrastructure - Kubernetes - Identity - Networking - The systems that AI runs on This is a **hands-on builder** role: you’ll write code, ship infrastructure, and work shoulder-to-shoulder with the infra team as a true engineering partner. You’ll also think ahead about security in an **AI-native environment**, where agents write code and operate inside developer and production workflows—while staying grounded in cloud, Kubernetes, identity, and networking fundamentals. --- ## What you’ll work on - Build security foundations for the AI platform: **identity, isolation, secrets management, and access control** across cloud and Kubernetes. - Harden infrastructure end-to-end: cloud networking and service meshes, **CI/CD pipelines**, and the **data/model pipelines** powering Brain Co’s AI capabilities. - Implement **Zero Trust** and **machine identity**: short-lived credentials, least-privilege access, and encrypted service communication. - Protect customer data and agent workloads: design secure execution environments and data access pathways for agent code/actions. - Build security guardrails into infrastructure and deployment workflows using **Infrastructure-as-Code (Terraform)**. - Own threat modeling across infrastructure layers—identify and remediate risks before they become incidents. - Own security for forward-deployed infrastructure, including designing and hardening bespoke **VPCs** and customer-environment deployments. - Partner with platform, infra, product, and ML teams to ship code and infrastructure together as a secure-by-default engineering partner. --- ## You might be a great fit if you have - **5+ years** of experience in security engineering, infrastructure, or SRE with hands-on experience securing production systems at scale. - Strong cloud security fundamentals (**IAM, networking, KMS, secrets, isolation**) across **AWS, GCP, or Azure**. - Experience designing and implementing secure systems end-to-end (not just reviewing). - Hands-on experience with **Kubernetes**, container security, and **Linux** systems. - Ability to think in **threat models, trust boundaries, and failure modes** and translate them into concrete controls. - Enjoy building paved roads and guardrails with **Infrastructure-as-Code (Terraform preferred)**. - Experience with authentication/authorization, secrets management, and cryptography basics. - A hands-on builder mindset—energized by writing code and partnering directly with infra/platform engineers. - Comfort in ambiguous, high-agency environments with a desire to own the infrastructure security function as it grows. --- ## Bonus points - Experience with ML systems or multi-tenant platform is
Listing freshness
CronJobs last confirmed this listing 51m ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.