[All remote jobs](https://jobicy.com/jobs.md)Open role[![OpenAI logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2023/03/0523b13262b12c215d8009938f5c14f1.jpeg)](https://jobicy.com/company/openai.md)Remote opportunity at[OpenAI](https://jobicy.com/company/openai.md)

# Software Engineer, Infrastructure Security

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/openai.md)Share30 Aug 2026Published30Listing views2Application actions29 Sep 2026Apply before  Opportunity details

## About this role.

AI SummaryThis is a senior-level infrastructure security engineering role focused on building foundational security services for large-scale AI research and production environments. The engineer will develop authentication, access-broker, proxy, key-management, encryption, identity, and network-isolation capabilities across bare metal, cloud, Kubernetes, and CI/CD systems. The role requires strong distributed-systems engineering ability as well as deep practical expertise in cloud, network, and platform security. It involves close partnership with infrastructure and research teams while operating systems that protect sensitive model weights, user data, and high-performance compute clusters.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

5/5RelaxedFast-paced

### Autonomy Level

5/5GuidedFull ownership

### Communication Load

5/5IndependentCollaborative

AI insightThe position combines advanced software engineering with high-stakes infrastructure security across multi-cloud, on-premises, Kubernetes, networking, and hardware-adjacent environments. Reliability and security requirements are exceptionally high because the systems support frontier AI workloads and must withstand adversarial pressure at significant scale.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianHighly competitive$307,500US market range$200k–$350k0$385k

AI insightThe disclosed yearly base compensation range is USD 230,000 to USD 385,000, with a midpoint of USD 307,500. This is above the typical US market range for many infrastructure security engineers, but is consistent with a highly senior, high-impact security engineering role at a leading AI company in major US technology markets.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Infrastructure Security](https://jobicy.com/jobs?search_keywords=Infrastructure%20Security.md)[Distributed Systems](https://jobicy.com/jobs?search_keywords=Distributed%20Systems.md)[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[Kubernetes Security](https://jobicy.com/jobs?search_keywords=Kubernetes%20Security.md)[Authentication](https://jobicy.com/jobs?search_keywords=Authentication.md)[Authorization](https://jobicy.com/jobs?search_keywords=Authorization.md)[Key Management](https://jobicy.com/jobs?search_keywords=Key%20Management.md)[Network Security](https://jobicy.com/jobs?search_keywords=Network%20Security.md)[Python](https://jobicy.com/jobs?search_keywords=Python.md)[Go](https://jobicy.com/jobs?search_keywords=Go.md)

Sample interview questionsHow would you design a machine-identity platform for services running across Kubernetes clusters and cloud environments?I would establish a workload identity model rooted in short-lived, cryptographically verifiable credentials, such as SPIFFE identities delivered through SPIRE or an equivalent control plane. The design would include automated certificate issuance and rotation, strong workload attestation, policy-based authorization, audit logging, and resilience across clusters and clouds. I would also define migration paths so legacy services can adopt identity incrementally without disrupting production workloads.

Describe how you would threat-model an egress proxy used by sensitive AI training infrastructure.

I would first identify the assets, trust boundaries, users, upstream and downstream dependencies, and allowed data flows. Key threats would include credential exfiltration, bypass of egress controls, malicious DNS resolution, SSRF, policy misconfiguration, denial of service, and inadequate logging. Controls would include default-deny policies, authenticated workloads, TLS inspection only where appropriate, destination allowlisting, tamper-resistant audit trails, rate limiting, and continuous policy validation.

What approaches would you use to secure Kubernetes-based workloads handling highly sensitive data?

I would apply layered controls: workload identity and mTLS, least-privilege RBAC, admission controls, image provenance and signing, secret-management integration, network policies, runtime detection, and hardened node configurations. I would separate sensitive workloads through strong tenancy and network boundaries, continuously assess cluster configuration drift, and ensure that incident telemetry is available without exposing sensitive payload data.

Tell us about a time you improved the reliability of a critical security or infrastructure service.

A strong example would explain the service's availability or operational risk, the metrics used to quantify the problem, and the engineering changes made. For instance, I would describe introducing redundancy, safe rollouts, automated credential rotation, better observability, and tested recovery procedures for a security-critical control plane. I would conclude with measurable improvements such as reduced incident frequency, lower recovery time, or improved service-level performance.

How do you communicate a significant security risk to engineering and non-technical stakeholders when rapid delivery is also a priority?

I communicate the risk in terms of affected assets, likely attack paths, business or operational impact, and confidence level rather than relying on abstract severity labels alone. I present practical options, including immediate mitigations, longer-term fixes, ownership, and delivery tradeoffs. This helps stakeholders make an informed decision while keeping the conversation focused on reducing risk without unnecessarily blocking critical work.

About the Team

Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.

The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but operational in how we execute, and we support every product and research effort at OpenAI. Our tenets include prioritizing for impact, enabling researchers and developers, preparing for future transformative technologies, and fostering a strong, collaborative security culture.

About the Role

OpenAI is seeking a Security Software Engineer to join the Infrastructure Security (InfraSec) team.

InfraSec safeguards the core of OpenAI’s research and production environments—GPU supercomputing clusters, multi-cloud infrastructure, datacenters, networking, storage, and the critical services that power our frontier AI models. Our charter spans everything from bare-metal hardware and firmware to Kubernetes clusters, service meshes, and the data pathways that carry highly sensitive model weights and user data.

As a Security Software Engineer, you will design and build critical foundational services, such as authentication systems, egress/ingress proxies, access brokers, and key management platforms, that demand high standards of reliability, scalability, and software craftsmanship. These systems form the security backbone of OpenAI’s supercomputing environment and must remain robust under intense scale and adversarial pressure.

In this role, you will:

*

Architect and implement production-grade security services (e.g., auth services, access brokers, secure proxies, key-management infrastructure) that provide strong guarantees across hardware, operating systems, Kubernetes, networks, and CI/CD.

*

Partner with infrastructure and research engineers to embed security into high-performance compute clusters, enabling rapid model training and deployment without compromising protection.

*

Develop automation and detection tooling to continuously identify and mitigate risks in large-scale cloud and on-prem environments.

*

Drive high-impact initiatives such as line-speed encryption, machine identity, and network isolation, continuously raising the security bar for emerging AI workloads.

*

Lead or participate in design reviews and threat models to ensure new systems launch with strong security foundations and operational excellence.

You will thrive in this role if you have:

*

Strong software engineering skills in languages such as Python, Go, Rust, or C/C++, with a track record of shipping and operating high-reliability distributed services.

*

Experience building or operating critical security infrastructure (e.g., auth services, service-to-service proxies, certificate or key-management systems).

*

Deep understanding of security principles, best practices, and common vulnerabilities.

*

Expertise in securing large-scale cloud platforms (e.g., Azure, AWS, GCP), including multi-cloud networks and cloud-agnostic system design.

*

Familiarity with container and orchestration security (Kubernetes, service meshes) and modern authentication/authorization standards (OIDC, mTLS, SPIFFE/SPIRE).

*

A proactive mindset, with the ability to identify and address security gaps or inefficiencies through automation and tooling.

*

A track record of delivering scalable solutions and driving impactful changes across infrastructure in real-world projects.

*

Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks.

*

Excellent communication skills, with the ability to convey complex security concepts to technical and non-technical stakeholders.

*

Excitement about collaborating with cross-functional teams to build secure, reliable systems that scale globally.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see [OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement](https://cdn.openai.com/policies/eeo-policy-statement.pdf).

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through [this form](https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA). No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this [link](https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241).

[OpenAI Global Applicant Privacy Policy](https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf)

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Show more

[Apply now >](https://jobicy.com/jobs/152102-software-engineer-infrastructure-security.md)

*

![Upload CV](data:image/svg+xml;base64,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)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![Quora logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/09/WRILS-200916172339-629302.jpg)
Quora  Aug 29

### [Senior Infrastructure Security Software Engineer](https://jobicy.com/jobs/151970-senior-infrastructure-security-software-engineer.md)

[Quora is a privately held, “remote-first” company. This position can be performed remotely from anywhere in Canada or the United States. Please visit careers.quora.com/eligible-countries for details regarding employment eligibility by…

*
![Quora logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/09/WRILS-200916172339-629302.jpg)
Quora  Aug 29

### [Detection & CorpSec Engineer](https://jobicy.com/jobs/151966-detection-corpsec-engineer.md)

[Quora is a privately held, “remote-first” company. This position can be performed remotely from anywhere in Canada or the United States. Please visit careers.quora.com/eligible-countries for details regarding employment eligibility by…

*
![Veeam Software logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/f7716b71-221.jpg)
Veeam Software  Aug 28

### [Cyber-Security Operations Analyst III, Product AppSec](https://jobicy.com/jobs/151951-cyber-security-operations-analyst-iii-product-appsec.md)

Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI…

*
![Cision logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/e9661342-221.jpeg)
Cision  Aug 27

### [Security Engineer I, Information Technology](https://jobicy.com/jobs/151867-security-engineer-i-information-technology.md)

At Cision, we believe in empowering every individual to make an impact. Here, your voice is heard, your ideas are valued, and your unique perspective fuels our collective success. As…

*
![Cision logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/e9661342-221.jpeg)
Cision  Aug 27

### [Security Analyst I, Information Technology](https://jobicy.com/jobs/151862-security-analyst-i-information-technology.md)

At Cision, we believe in empowering every individual to make an impact. Here, your voice is heard, your ideas are valued, and your unique perspective fuels our collective success. As…

*
![LastPass logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/13842160-221.png)
LastPass  Aug 27

### [Principal Cloud Security Engineer](https://jobicy.com/jobs/151831-principal-cloud-security-engineer.md)

About LastPassLastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and…

*
![Pleo logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b27fbed2-221.jpg)
Pleo  Aug 27

### [Lead Security Operations Engineer](https://jobicy.com/jobs/151792-lead-security-operations-engineer.md)

About Pleo Messy spend management is tricky business. And tedious processes are a lose-lose situation for all involved, not just finance. At Pleo, we’re changing that. We build spend solutions…

*
![Ada logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/666ef11e-221.png)
Ada  Aug 27

### [Compliance and Security Lead](https://jobicy.com/jobs/151791-compliance-and-security-lead.md)

About Us Ada is an AI customer service company whose mission is to make customer service extraordinary for everyone. We’re driven to raise a new standard of quality customer service…

*
![Pleo logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b27fbed2-221.jpg)
Pleo  Aug 27

### [Senior Application Security Manager](https://jobicy.com/jobs/151788-senior-application-security-manager.md)

About Pleo Messy spend management is tricky business. And tedious processes are a lose-lose situation for all involved, not just finance. At Pleo, we’re changing that. We build spend solutions…

*
![GitLab logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/12/WRILS-201207055737-109952.jpg)
GitLab  Aug 27

### [Senior Security Engineer, Security Incident Response Team (SIRT) – EMEA](https://jobicy.com/jobs/149309-senior-security-engineer-security-incident-response-team-sirt-emea.md)

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50…