
MTS, Security
Fireworks AI7 months ago
San Mateo, CA, USAMid Level / Senior
H1B Sponsor
Base Salary
$180k - $220k/yr
Responsibilities
- Design and build security-focused software and platform capabilities covering encryption, identity and access management, secure API gateways, model execution, and sandboxing across multi-cloud infrastructure.
- Review Kubernetes, multi-cloud, and distributed-data-store architectures and build continuous monitoring, anomaly detection, and automated response systems.
- Embed security into CI/CD pipelines through automated scanning, policy enforcement, and secure-by-default build and deployment workflows.
- Develop in-house security tooling and automation when it provides better control, scalability, or integration than third-party tools.
- Build and operate vulnerability management across applications, containers, cloud infrastructure, and dependencies.
- Operate and improve detection engineering, alert triage, incident response, and post-incident review processes.
- Participate in red/blue team exercises, tabletop simulations, and root-cause analysis.
- Embed SOC 2, ISO 27001, ISO 42001, HIPAA, PCI-DSS, and GDPR controls into infrastructure and product layers.
Requirements
- 3–7 years of experience in software engineering or security engineering focused on security, infrastructure, or cloud-native systems.
- Proficiency in Python and/or Go and experience designing production-grade systems.
- Strong understanding of GCP cloud-native architectures, including network segregation, authentication, authorization, encryption, data protection, intrusion detection, and cloud security benchmarks.
- Hands-on experience with Kubernetes, Docker, and containerized production environments; deep Kubernetes internals and native security controls are preferred.
- Familiarity with managed CI/CD security tooling such as GitHub Actions, Harness, or CircleCI.
- Solid Linux experience, including system administration, debugging, and command-line automation.
- Familiarity with SAML, OAuth, OIDC, SSO, RBAC, and ABAC.
- Preferred experience with secure multi-cloud and zero-trust architectures; large-scale Kubernetes platform security; AWS, GCP, Azure, Oracle Cloud, and GPU-as-a-service providers.
- Preferred proficiency with Terraform and Python for infrastructure-as-code and policy-as-code frameworks.
- Preferred experience with data protection, encryption, tokenization, key management, confidential computing, microservices, service meshes, distributed systems, and LLM/ML platforms.
- Preferred experience with detection engineering, IAM/PAM platforms, container image vulnerability remediation, SBOM generation, software supply-chain security, security automation, incident response, and compliance tooling.
Benefits
- Work on enterprise AI infrastructure and model-serving technology.
- Collaborate with engineers and AI researchers on high-impact security challenges.
- Fast-growing environment with substantial ownership and direct impact.
- Inclusive, equal-opportunity workplace.