Senior Cloud Security Engineer

Anyscale

2h ago 0 views 0 applications
Full-time Hybrid
San Francisco
$200,000 - $240,000
Full-time
Security Engineer Cloud Security

Job Description

Senior Cloud Security Enginee

At Anyscale, we're at the forefront of democratizing distributed computing, making complex machine learning accessible to every developer. We are the commercial force behind Ray, the open-source project that's rapidly becoming the foundational ecosystem for scalable AI. Leaders like OpenAI, Uber, Spotify, Instacart, and Cruise leverage Ray to accelerate the real-world impact of AI applications.

With Anyscale, we're building the ultimate platform for running Ray, enabling developers and data scientists to seamlessly scale ML applications from a laptop to a massive cluster without becoming distributed systems experts. Our mission is critical, and our ambition is backed by over $250 million in funding from visionary investors like Andreessen Horowitz, NEA, and Addition.

About the Opportunity

As Anyscale scales to meet the demands of larger, more complex customers, the security of our production and cloud infrastructure becomes paramount. We are seeking a highly driven and hands-on Senior Cloud Security Engineer to take complete ownership of securing these critical environments. This is not just a role; it's a mandate to define, implement, and lead our infrastructure and production security strategy.

Reporting directly to the Head of Security and collaborating closely with our engineering organization, you will set the benchmark for hardening, isolation, and monitoring across our cloud footprint. This role is based in the vibrant San Francisco Bay Area.

Your Impact in the First Year: You will establish robust and well-segmented production environments, ensure comprehensive runtime security coverage across our containerized systems, and craft a clear, defensible narrative around the security posture of the infrastructure our customers rely on.

What You'll Do

Architect and implement the security posture for Anyscale's production and cloud infrastructure across AWS and Azure, focusing on hardening, network segmentation, and tenant isolation.
Lead runtime security initiatives for our Kubernetes environments, from secure deployment practices to advanced detection of anomalous activity.
Collaborate strategically with engineering teams to integrate secure infrastructure architecture and design principles into our production environments from conception.
Drive end-to-end cloud security posture management (CSPM), including triage, prioritization, and orchestration of remediation efforts with resource owners.
Define and enforce cutting-edge cloud infrastructure security standards, encompassing baseline configurations, infrastructure-as-code security, and robust key and secrets management.
Implement and govern fine-grained, role-based access controls for production environments, partnering with engineering and IT.
Integrate infrastructure security findings into our vulnerability management program and contribute to comprehensive risk reporting.

What You'll Bring

8+ years of progressive experience in security engineering, with a profound specialization in cloud and infrastructure security, ideally within a high-growth startup environment.
Demonstrated hands-on expertise securing multi-cloud environments (AWS and Azure) and container platforms (Kubernetes).
A strong foundation in infrastructure-as-code principles, advanced cloud networking, and identity and access management (IAM) within cloud ecosystems.
Practical experience with CSPM and runtime security tooling, coupled with the critical judgment to translate findings into prioritized, actionable work.
The ability to independently own, set the direction for, and make sound architectural and security tradeoffs for cloud infrastructure security across diverse teams.
Proven fluency in direct collaboration with engineers on architectural design and remediation efforts, extending beyond merely producing findings.

Bonus Points

Experience securing complex multi-tenant production systems or environments that host customer workloads.
Familiarity with Upwind or similar cutting-edge CSPM and runtime security platforms.
Hands-on experience contributing to SOC 2 or ISO 27001 compliance evidence collection from an infrastructure perspective.
A background in AI/ML platforms or distributed systems.