Infrastructure Security Engineer (Bare Metal & Platform)
xAI · Palo Alto, CA; Austin, TX; New York, NY; Seattle, WA
About this role
<div class="content-intro"><p><span style="font-family: arial, helvetica, sans-serif;">SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge.&nbsp;</span><span style="font-family: arial, helvetica, sans-serif;">Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. </span><span style="font-family: arial, helvetica, sans-serif;">We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. </span><span style="font-family: arial, helvetica, sans-serif;">All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.</span></p></div><h3 data-pm-slice="1 1 []"><span style="font-family: arial, helvetica, sans-serif;">ABOUT THE ROLE:</span></h3> <p>We are seeking a hands-on Infrastructure Security Engineer to build and secure SpaceXAI’s infrastructure from the bare-metal layer up through the platform and application stack. In this role, you will design, implement, and harden physical and private-cloud foundations-servers, networks, identity, and orchestration-and carry that security posture into containers, automation, and hybrid connectivity with public cloud.</p> <p>This role focuses on securing critical infrastructure spanning data centers, colo, and hybrid environments, with work that may span platforms such as SpaceXAI, X Social, X Money, and related systems. You’ll operate with an automation-first mindset: building secure foundations at the metal and OS layer, hardening platforms at scale, and partnering closely with engineering so security is embedded in how we build and run systems-not bolted on after the fact.</p> <h3><span style="font-family: arial, helvetica, sans-serif;">RESPONSIBILITIES:</span></h3> <h4>Bare metal, data center &amp; network security</h4> <ul> <li>Design and implement secure bare-metal and private-cloud architectures (servers, storage, out-of-band management, BIOS/UEFI/BMC firmware posture)</li> <li>Harden physical and virtual fleets: OS baselines (Linux/Windows), CIS benchmarks, patch and vulnerability management, and secure boot / measured boot where applicable</li> <li>Hands-on firmware, BMC/iDRAC/iLO, PXE/Kickstart provisioning, and hardware lifecycle security</li> <li>Build and secure network foundations: segmentation, load balancers, DNS, PKI, NAC, and IDS/IPS on real hardware</li> <li>Own hybrid connectivity between on-premises and cloud (site-to-site VPN, Direct Connect / Interconnect / ExpressRoute, SD-WAN, zero-trust access)</li> <li>Manage identities and privileged access across Active Directory / LDAP / Kerberos and cloud IAM (federation, SAML/OIDC, PAM)</li> <li>Assist with security assessments and audits of physical, on-premises, and hybrid infrastructure</li>...
Listing freshness
CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.