Director, Infrastructure Security

Crusoe
  • San Francisco, California
    2 days ago

    Job Description

    Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens — to power the world's most ambitious AI workloads. When you join Crusoe, you join a team that is building the future, faster.

    We're in the midst of the greatest industrial revolution of our time. The demand for AI compute is boundless, and power is a bottleneck. We're solving that — with an energy-first approach that makes AI infrastructure better for the world and faster for the people innovating with AI.

    We're looking for problem-solving, opportunity-finding teammates with a sense of urgency, who believe in the scale of our ambition and thrive on a path not fully paved — people who want to grow their careers alongside a team of experts across energy, manufacturing, data center construction, and cloud services.

    If you want to do the most meaningful work of your career, help our customers and partners advance their AI strategies, and be part of a high-performing team that believes in each other, come build with us at Crusoe.

    About the Role:

    As a GPU-cloud provider, Crusoe’s infrastructure is our product. Infrastructure Security

    Engineering is arguably the most critical domain in our security engineering

    organization.

     

    Unlike traditional enterprise cloud security functions that act as passive auditors asking other

    teams to fix bugs, this is an elite engineering and software development organization. You

    will lead a dedicated team of 5–6 infrastructure security engineers who design, build, and

    operate foundational security layers across our hyper-scale fleet.

    This role offers a high-impact organizational leadership opportunity: inheriting an established

    team of talented engineers, sharpening technical focus, resolving execution friction, and

    instilling a high-velocity software delivery culture to turn this core group into an elite, world-class

    engineering unit.

     

    Reporting directly to the Senior Director of Security Engineering, you will own two core

    pillars: Platform Security Engineering and Infrastructure Security Access and Posture

    Management.

    A Note From the Hiring Manager

    "Infrastructure Security Engineering at Crusoe is an active software engineering

    discipline, not a pure ‘cloud security’ function. We don't throw tickets over the fence

    - we build the foundational cryptographic, identity, access, and runtime layers that

    make our GPU-cloud VM and baremetal offerings secure by default.

    I come from a deep product and infrastructure security background, and I hold

    strong, battle-tested opinions on how infrastructure security should be engineered and operated. I am looking for a Director who can dive into the technical details,

    establish clear architectural direction, and transform an existing team into a

    high-performance engineering engine. Once aligned, you will have my full support,

    dedicated headcount, and total executive backing to build and scale one of the

    premier infrastructure security teams in the AI industry."

     

    What You'll Be Working On:

    1. Team Leadership, Turnaround & Talent Elevation

    Organizational Transformation: Inherit, lead, and mentor an existing team of 5–6

    infrastructure security engineers. Diagnose execution bottlenecks, resolve cultural

    alignment issues, and elevate the team into a high-throughput engineering org.

    Engineering Rigor & Velocity: Transition the team from reactive operational task

    handling to a proactive platform engineering model with clear shipping cadences, code

    quality standards, and architectural roadmaps.

    Strategic Growth & Hiring: Establish clear accountability, strategically hire additional

    junior talent to complement existing strengths, systems security, and automation

     

    2. Platform Core Security Services (Foundational Engineering)

    Identity, Secrets & PKI: Build, operate, and scale core identity and crypto primitives,

    including workload identity (SPIFFE/SPIRE), enterprise secrets-as-a-service (HashiCorp

    Vault), and public key infrastructure (PKI) across multi-tenant GPU environments.

    Fleet Telemetry & eBPF: Deploy and manage eBPF-based security sensors at scale

    across bare-metal and virtualized fleets to deliver high-fidelity observability and

    kernel-level runtime protection.

    Fleet Access & Just-In-Time (JIT): Architect and enforce zero-trust, JIT access

    mechanisms for engineers and operators accessing fleet nodes, hypervisors, and core

    switches.

    Firmware & Supply Chain Security: Build mechanisms for secure boot, hardware roots

    of trust, firmware update delivery, and software supply chain verification across GPU

    nodes, CPUs, and network fabrics.

    Infrastructure Vulnerability Management: Build platforms to continuously track,

    prioritize, and remediate vulnerability states across millions of bare-metal, containerized,

    and hypervisor assets.

    3. Infrastructure Security Posture & IAM (Architecture & De-risking)

    Control Plane & Cloud Security: Secure Crusoe’s multi-layer control plane across

    public cloud environments (GCP) and multi-gigawatt on-premise AI data center

    infrastructure.

    IAM & Elimination of Standing Secrets: Eliminate standing admin privileges and

    long-lived secrets. Architect least-privilege RBAC/ABAC models across cloud projects

    and physical infrastructure.

    Architectural Isolation & Risk Reduction: Identify and eliminate systemic architectural

    risks (e.g., decoupling co-mingled Terraform execution environments, isolating tenant

    control planes, and establishing hard boundary enforcement across GCP projects and

    GPU clusters).

    Security Architecture & Governance-by-Code: Perform continuous security architecture reviews, enforcing change management, isolation, and baseline posture natively through IaC (Terraform, OpenTofu, Kubernetes operators).

     

    What You'll Bring to the Team:

    Platform & Security Engineering Leadership: 8+ years leading and scaling software

    engineering, or security engineering teams at hyper-scale cloud providers (AWS, GCP,

    Azure, OCI) or infrastructure-intensive platforms. Candidates must have led

    builder-focused teams that delivered core platform security functionality and software

    systems at scale, rather than solely managing dedicated security operations functions.

    Team Turnaround & Coaching Ability: Demonstrated success inheriting existing

    engineering teams, fixing execution friction, building high-trust team cultures, and raising

    the technical bar.

    Hands-on Builder Experience (at prior IC and Manager level): Proven track record of

    shipping core security platforms (Vault, SPIFFE/SPIRE, eBPF sensors, JIT access

    engines) rather than just managing third-party posture management tools (CSPM).

    Deep Architectural De-risking: Demonstrated ability to dissect complex cloud/on-prem

    deployment architectures, isolate blast radiuses, and eliminate co-mingled execution

    risks.

    Technical Depth: Deep comprehension of Linux kernel security, container runtimes

    (Kubernetes), IAM frameworks, PKI, and lower-level hardware/network primitives (GPUs,

    switches, bare-metal orchestrators).

    Location: In-person / Hybrid presence in the San Francisco Bay Area to build deep

    technical partnerships across engineering leadership.

     

    Benefits:

    • Competitive compensation and equity packages

    • Restricted Stock Units

    • Paid time off, paid holidays & leave of absence programs

    • Comprehensive health, dental & vision insurance

    • Employer contributions to HSA account

    • Paid parental leave

    • Paid life insurance, short-term and long-term disability

    • Professional development & tuition reimbursement

    • Mental health & wellness support

    • Commuter benefits (parking & transit)

    • Cell phone stipend

    • 401(k) Retirement plan with company match up to 4% of salary

    • Volunteer time off

    • Global travel insurance & emergency assistance

    • Daily meals allowance

    • Additional perks & programs specific to location

     

    Compensation Range

    Compensation will be paid in the range of up to $285,000 - $335,000 + Bonus. Restricted Stock Units are included in all offers. Compensation to be determined by the applicant's knowledge, education, and abilities, as well as internal equity and alignment with market data.

    Crusoe is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, disability, genetic information, pregnancy, citizenship, marital status, sex/gender, sexual preference/ orientation, gender identity, age, veteran status, national origin, or any other status protected by law or regulation.

    Numbers & Facts

    LocationSan Francisco, California
    Websitehttps://crusoe.ai

    Skills

    • Amazon Web Services (AWS)unmatched
    • Architectural Servicesunmatched
    • Artificial Intelligence (AI)unmatched
    • Change Managementunmatched
    • Cloud Computingunmatched
    • Coachingunmatched
    • Computer Securityunmatched
    • Constructionunmatched
    • Cryptographyunmatched
    • Customer Support/Serviceunmatched
    • Enterprise Protectionunmatched
    • GCP (Good Clinical Practices)unmatched
    • GPU (Graphics Processing Unit)unmatched
    • High Throughputunmatched
    • Identify Issuesunmatched
    • Integrated Circuits (ICs)unmatched
    • Leadershipunmatched
    • Manufacturingunmatched
    • Mentoringunmatched
    • Network Operations Centerunmatched
    • Operations Managementunmatched
    • Performance Engineeringunmatched
    • Problem Solving Skillsunmatched
    • Psychiatry and Mental Healthunmatched
    • Public Cloudunmatched
    • Public Key Infrastructure (PKI)unmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Designunmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Security Softwareunmatched
    • Software Developmentunmatched
    • Software Engineeringunmatched
    • Team Lead/Managerunmatched
    • Telemetryunmatched
    • Vehicle Fleetsunmatched
    • Virtual Machine (VM)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder