Graphcore

Distinguished Engineer, End-to-End Security Architect

Graphcore
Apply
3 months ago
Austin, TX, USA or Milpitas, CA, USAStaff+
H1B sponsor

Responsibilities

  • Own the end-to-end security architecture for the inference service platform, including infrastructure, networking, APIs, operational controls, monitoring, and customer assurance.
  • Define security principles, threat models, trust boundaries, tenant isolation requirements, and architectural standards.
  • Establish deployment-environment security requirements covering physical security, operational controls, access management, and asset protection.
  • Define platform security requirements across hardware, firmware, secure boot, attestation, software integrity, and lifecycle management.
  • Lead network and service isolation, secure communications, segmentation, and administrative access protection design.
  • Own architecture for authentication, authorization, secrets management, encryption, key management, and data protection.
  • Define privileged access management, auditing, access reviews, and emergency access procedures.
  • Establish logging, monitoring, telemetry, incident response, and security assurance requirements across the service lifecycle.
  • Partner with engineering and operations teams to implement, maintain, and validate security requirements.
  • Assess security posture against customer, contractual, regulatory, and internal requirements and manage risk-based decisions.
  • Support customer security reviews, audits, penetration testing, security questionnaires, and technical assurance discussions.
  • Provide technical leadership, mentoring, architectural guidance, and design review expertise across multiple teams and disciplines.

Requirements

  • Advanced degree in Computer Science, Computer Engineering, Cybersecurity, Electrical Engineering, or a related technical discipline, or equivalent practical experience.
  • Significant experience in security architecture, platform security, cloud security, infrastructure security, or large-scale service security.
  • Experience owning security architecture for customer-facing platforms, infrastructure services, or large-scale production environments.
  • Deep understanding of threat modeling, zero-trust principles, tenant isolation, privileged access management, cryptographic controls, and secure operations.
  • Strong knowledge of trusted execution mechanisms, secure boot, attestation, firmware integrity, and supply-chain security concepts.
  • Experience defining security requirements for data center deployments, operational environments, and physical security controls.
  • Expertise in network security architecture, segmentation, management-plane protection, secure communications, monitoring, and access control.
  • Experience with key management, secrets management, certificate lifecycle management, and encryption technologies.
  • Experience securing APIs, deployment pipelines, service control planes, and operational tooling.
  • Strong understanding of logging, monitoring, incident response, security operations, and evidence management practices.
  • Experience supporting customer security reviews, audits, penetration testing activities, and executive-level security discussions.
  • Excellent communication and stakeholder management skills, with the ability to influence technical and non-technical audiences.
  • Proven ability to lead through influence across engineering, security, operations, compliance, and customer-facing teams.
  • Desirable experience includes securing AI/ML inference platforms, model-serving infrastructure, accelerator-based systems, or confidential AI workloads.
  • Desirable experience includes trusted execution environments, platform attestation, secure firmware development, workload identity, confidential computing, secure enclaves, measured boot, and remote attestation.
  • Familiarity with SOC 2, ISO 27001, ISO 27017, ISO 27018, PCI DSS, FedRAMP, or NIST standards is desirable.
  • Additional desirable experience includes regulated environments, critical infrastructure, hardware platform security, high-performance networking, storage security, accelerator ecosystems, supply-chain risk management, secure manufacturing, and asset lifecycle controls.

Benefits

  • Flexible working arrangements
  • Medical, dental, and vision coverage
  • Flexible Spending Accounts (FSAs) and Health Savings Accounts (HSAs)
  • Disability and life insurance
  • 401(k) retirement plan
  • Commuter benefits
  • Wellness services
  • Employee Assistance Programme (EAP)

Categories

Graphcore

About Graphcore

501-1,000 employees

Graphcore designs and sells Intelligence Processing Units (IPUs), systems, and a full software stack for training and inference of AI models in data centers and research labs. Revenue comes from hardware systems and associated software tools and services, used for workloads across NLP, computer vision, and graph neural networks. Founded in 2016 and headquartered in Bristol, the company is part of SoftBank Group and focuses on on‑prem and cloud deployments.

Contact me