
Senior Solutions Architect – AI Infrastructure Security
Posted 6 hours ago

Posted 6 hours ago
This is a fully remote position, open to applicants in Massachusetts.
• Take charge of the security solution development for k0rdent AI, Mirantis's platform dedicated to building and managing GPU clouds and AI factories.
• Establish comprehensive security measures for hardware, firmware, hosts, virtual machines, Kubernetes clusters, networks, storage, secrets, certificates, models, and applications.
• Create and publish security reference architectures and solution designs for private, multi-tenant, and hybrid AI cloud deployments.
• Define defense-in-depth strategies and tenant isolation boundaries throughout the stack.
• Align designs with customer controls and frameworks, documenting risks, costs, performance, and operability trade-offs.
• Architect security for bare-metal hosts, virtual machines, Kubernetes, secrets, PKI, networks, storage, and public cloud deployments.
• Establish lifecycle protection for Transformer-based models, training data, model registries, inference services, and AI applications.
• Tackle issues such as prompt injection, data and model exfiltration, model theft, and abusive access to agentic tools.
• Ensure the security of software supply chains for platforms, containers, and models.
• Investigate emerging security technologies, standards, and threats, and develop alternative designs in a lab environment.
• Disseminate internal research notes, design proposals, and relevant external papers, blog posts, or presentations.
• Construct and execute proofs of concept alongside customers, partners, Mirantis labs, and client sites.
• Develop automation, policies, and tooling using Python, Go, Bash, Ansible, Helm, Kubernetes manifests, Terraform, and policy-as-code.
• Evaluate designs and deployments via threat modeling, configuration reviews, and hands-on testing.
• Serve as a security subject matter expert during customer discovery sessions, design reviews, and architecture workshops.
• Collaborate with customer security, risk, and compliance teams, aiding in the completion of security questionnaires and architecture assessments.
• Partner with hardware, software, and security collaborators on joint designs and validations.
• Share research findings with Product, Engineering, and the Mirantis security team to influence the k0rdent AI roadmap.
• Present at industry events, webinars, and partner summits, while conducting technical workshops.
• Produce reference architectures, solution briefs, blog posts, and internal training materials.
• Bachelor’s degree in Computer Science, Computer Engineering, Cybersecurity, or a related field, or equivalent practical experience.
• Over 8 years of experience in security engineering or security architecture.
• Minimum of 3 years securing cloud, Kubernetes, or large-scale infrastructure platforms.
• Experience in customer-facing roles as a solutions architect, pre-sales engineer, consultant, or technical lead.
• Proven track record in designing and managing secure deployments on at least one major public cloud (AWS, Azure, or GCP) as well as on private cloud or bare-metal infrastructure.
• Expertise in Linux hardening, secure boot, TPM, hypervisor and VM isolation, including KubeVirt.
• Knowledge of Kubernetes security including RBAC, Pod Security Standards, admission controllers, policy engines, runtime security, and multi-tenancy patterns.
• Familiarity with secrets and key management tools such as HashiCorp Vault, OpenBao, External Secrets Operator, cloud KMS, and HSMs.
• Understanding of PKI and identity concepts: cert-manager, mTLS, OIDC, SSO, and workload identity.
• Network security experience including segmentation, firewalls, zero-trust architectures, and Kubernetes network policies.
• Proficiency in storage and data security practices such as encryption at rest and in transit, key hierarchy design, and access control on shared storage.
• Working knowledge of Transformer-based models, their training, packaging, serving, and associated threats.
• Understanding of software supply chain security including image signing, SBOMs, vulnerability scanning, and SLSA concepts.
• Programming or scripting experience in at least one language; Python or Go preferred.
• Comfortable working with Git, CI, and infrastructure-as-code.
• Exceptional written and verbal communication skills in English.
• Confidence in presenting to large audiences and conducting hands-on workshops.
• Experience in an international and distributed work environment across different time zones and cultures.
• Willingness to travel up to 25%.
• Equivalent practical experience may be considered in lieu of a bachelor's degree.
• Preferred qualifications include familiarity with compliance frameworks, confidential computing, GPU cloud or HPC security, DPU security, offensive security, Mirantis products, security certifications, open-source contributions, public speaking, standards participation, research, CVEs, patents, white papers, and additional languages.
• Flexible remote work options.
• Up to 25% travel for customer engagements, partner meetings, lab work, and industry events.
• Opportunity to work with a diverse, international team.
• Chance to establish the observability foundation for the AI cloud era.
• Collaborate with leading GPU cloud operators, NeoClouds, sovereign clouds, and AI-first enterprises.
• Influence the product narrative and contribute to go-to-market success.
Abnormal Security
Darede
Everbridge
Centene Corporation
Get handpicked remote jobs straight to your inbox weekly.