[![Image]() Meet Jobicy Copilot — free AI autofill for job applications + remote job alerts ›](#)   [All remote jobs](https://jobicy.com/jobs.md)Open role[![OpenAI logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2023/03/0523b13262b12c215d8009938f5c14f1.jpeg)](https://jobicy.com/company/openai.md)Remote opportunity at[OpenAI](https://jobicy.com/company/openai.md)

# Principal Security Engineer, Infrastructure Security

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/openai.md)Share21 Sep 2026Published180Listing views15Application actions21 Oct 2026Apply before  Opportunity details

## About this role.

AI SummaryOpenAI is hiring a Principal Security Engineer to set strategy and deliver high-impact infrastructure security controls across research and production environments. The role covers security from hardware, firmware, and datacenters through cloud platforms, Kubernetes, networks, storage, and CI/CD. This principal-level engineer will lead cross-functional security programs, conduct threat modeling and design reviews, and balance robust controls with reliability and engineering velocity. Success requires deep cloud and on-premises security expertise, strong judgment under ambiguity, and the ability to mentor engineers and communicate with varied stakeholders.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

5/5RelaxedFast-paced

### Autonomy Level

5/5GuidedFull ownership

### Communication Load

5/5IndependentCollaborative

AI insightThis is a principal-level role securing highly sensitive, globally scaled AI infrastructure across many technical layers and organizational boundaries. It requires independent strategic ownership, sophisticated threat judgment, and delivery of durable controls while managing significant reliability and operational tradeoffs.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianHighly competitive$455,500US market range$300k–$500k0$550k

AI insightThe disclosed yearly salary range is USD 401,000 to USD 510,000, producing a midpoint of USD 455,500. For a U.S.-based principal infrastructure security engineer, a typical estimated base-salary market range is approximately USD 300,000 to USD 500,000; total compensation may be higher depending on equity and incentives.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Infrastructure Security](https://jobicy.com/jobs?search_keywords=Infrastructure%20Security.md)[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[AWS](https://jobicy.com/jobs?search_keywords=AWS.md)[Microsoft Azure](https://jobicy.com/jobs?search_keywords=Microsoft%20Azure.md)[Kubernetes Security](https://jobicy.com/jobs?search_keywords=Kubernetes%20Security.md)[Container Security](https://jobicy.com/jobs?search_keywords=Container%20Security.md)[Network Security](https://jobicy.com/jobs?search_keywords=Network%20Security.md)[Threat Modeling](https://jobicy.com/jobs?search_keywords=Threat%20Modeling.md)[CI/CD Security](https://jobicy.com/jobs?search_keywords=CICD%20Security.md)[Security Architecture](https://jobicy.com/jobs?search_keywords=Security%20Architecture.md)

Sample interview questionsHow would you create a security strategy for a multi-cloud AI infrastructure that includes GPU clusters, Kubernetes, and sensitive model data?I would begin with an asset inventory and threat model that identifies trust boundaries, critical data flows, privileged identities, and likely adversaries. I would define a prioritized roadmap around strong identity controls, segmentation, secure hardware and workload baselines, centralized telemetry, and tested incident response, then establish measurable risk-reduction outcomes and rollout milestones with infrastructure partners.

Describe how you would balance a security control rollout with platform reliability and developer velocity.

I would engage platform owners early, document the security objective and operational constraints, and test the control in a representative environment before broad deployment. I would use phased rollouts, automation, clear exception processes, observability, and rollback plans, measuring both security coverage and reliability impact so the final control is durable rather than merely restrictive.

What security risks are particularly important for Kubernetes environments supporting critical workloads?

Key risks include excessive RBAC privileges, compromised service accounts, weak admission controls, vulnerable images, insecure secrets handling, insufficient network isolation, and poor audit visibility. I would address these through least-privilege identity design, workload policy enforcement, image provenance and scanning, secrets management, network policies, runtime detection, and comprehensive logging.

How would you approach securing on-premises datacenter hardware from construction through multi-tenant operation?

I would establish physical-security and supply-chain requirements first, including asset provenance, secure receiving, tamper controls, and lifecycle tracking. Technical controls would include firmware and BMC hardening, secure boot and attestation where available, segmented management networks, tightly controlled break-glass access, continuous inventory, and monitoring for configuration drift and anomalous activity.

Tell us about a time you would need to influence senior stakeholders to accept a significant infrastructure security change.

I would frame the discussion in terms of concrete attack paths, business impact, operational tradeoffs, and viable implementation options rather than presenting security as an abstract requirement. By proposing a staged plan with ownership, success metrics, reliability safeguards, and a transparent risk-acceptance path for exceptions, I can help stakeholders make an informed decision and build alignment around the preferred solution.

About the Team

Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.

The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.

About the Role

OpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (InfraSec) team. InfraSec protects the foundations of OpenAI’s research and production environments, spanning GPU supercomputing clusters, multi-cloud infrastructure, datacenters, networking, storage, and the critical services that power our frontier AI models. Our charter includes securing everything from bare-metal hardware and firmware, to Kubernetes clusters and service meshes, to data storage and access pathways for highly sensitive model weights and user data.

As a principal engineer, you will set technical direction and drive execution on high-impact infrastructure security programs, partnering across various orgs at OpenAI to deliver durable controls that raise the security bar at OpenAI scale.

In this role, you will:

*

Own end-to-end security outcomes for one or more critical infrastructure areas, including multi-quarter strategy, roadmap, and delivery.

*

Design and build security controls across diverse layers (e.g., physical hardware, firmware/BMC, OS, Kubernetes, networks, and CI/CD) to defend against sophisticated adversaries and insider threats.

*

Lead cross-functional programs to deploy security enhancements and control changes across broad-scale infrastructure, balancing security guarantees with reliability and velocity.

*

Take a generalist approach to building security controls, balancing a mix of security expertise and broad technical skillsets to adapt to evolving challenges.

*

Lead and/or drive threat modeling and design reviews for major infrastructure changes, ensuring strong security foundations and operational excellence.

*

Mentor and level up engineers across InfraSec and partner teams, contributing to a strong security culture through guidance, reviews, and technical leadership.

You will thrive in this role if you have:

*

Deep understanding of security principles, best practices, and common vulnerabilities, including strong security judgment under ambiguity

*

A proactive mindset, with the ability to identify and address security gaps or inefficiencies through automation and tooling.

*

Expertise and curiosity about using frontier models and agents to effectively solve security challenges.

*

A track record of leading large, cross-org initiatives from concept to rollout, including navigating tradeoffs, driving alignment, and delivering measurable risk reduction.

*

Deep expertise in the security of cloud platforms (e.g., Amazon AWS, Microsoft Azure), especially securing multi-cloud networks and infrastructure, and designing cloud-agnostic systems.

*

Experience securing on-prem deployments and datacenters from construction to multi-tenant use.

*

Familiarity with container security, orchestration security, and authentication/authorization.

*

Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks.

*

Excellent communication skills, with the ability to convey complex security concepts to executive, technical, and non-technical stakeholders.

*

Excitement about collaborating with cross-functional teams to build secure, reliable systems that scale globally.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see [OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement](https://cdn.openai.com/policies/eeo-policy-statement.pdf).

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through [this form](https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA). No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this [link](https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241).

[OpenAI Global Applicant Privacy Policy](https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf)

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Show more

[Apply now >](https://jobicy.com/jobs/153841-principal-security-engineer-infrastructure-security.md)

*

![Upload CV](data:image/svg+xml;base64,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)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![Mozilla logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/10/mozilla.jpg)
Mozilla  Sep 22

### [Senior Security Engineer, Bug Bounty](https://jobicy.com/jobs/153893-senior-security-engineer-bug-bounty.md)

Why Mozilla? Mozilla Corporation is the non-profit-backed technology company that has shaped the internet for the better over the last 25 years. We make pioneering brands like Firefox, the privacy-minded…

*
![Goodleap logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/482c4fb7-221.png)
Goodleap  Sep 22

### [Senior Security Engineer, Product Security](https://jobicy.com/jobs/153887-senior-security-engineer-product-security.md)

About GoodLeap: GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more….

*
![Fastly logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/10/127f9e4bbbdb8767bef358a23bf7f73d.jpeg)
Fastly  Sep 22

### [Threat Detection Analyst (Japanese & English speaking)](https://jobicy.com/jobs/153871-threat-detection-analyst-japanese-english-speaking.md)

Fastly helps people stay better connected with the things they love. Fastly’s edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and…

*
![Phantom logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/3d0a3a49-221.png)
Phantom  Sep 22

### [Staff Product Security Engineer (Security)](https://jobicy.com/jobs/153861-staff-product-security-engineer-security.md)

Phantom is on a mission to connect the world to the freedom of open markets. Tens of millions of people all over the world use Phantom to access global markets…

*
![Ada logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/666ef11e-221.png)
Ada  Sep 22

### [Security and Infrastructure Engineer](https://jobicy.com/jobs/153866-security-and-infrastructure-engineer.md)

About Us Ada is an AI customer service company whose mission is to make customer service extraordinary for everyone. We’re driven to raise a new standard of quality customer service…

*
![OpenAI logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2023/03/0523b13262b12c215d8009938f5c14f1.jpeg)
OpenAI  Sep 21

### [Principal Software Engineer, Infrastructure Security](https://jobicy.com/jobs/153845-principal-software-engineer-infrastructure-security.md)

About the Team Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products….

*
![DeleteMe logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/c26c546a-221.png)
DeleteMe  Sep 21

### [Privacy Advisor](https://jobicy.com/jobs/153793-privacy-advisor.md)

DeleteMe is the leader in proactive privacy protection. We help Individuals, Families, Businesses and Security teams reduce their human attack surface by continuously monitoring and removing exposed personal data (PII)…

*
![Oddball logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2022/02/8c034287ffd7b6474f90645b1c72e60a.jpeg)
Oddball  Sep 21

### [ATO Specialist](https://jobicy.com/jobs/153774-ato-specialist.md)

Oddball believes that the best products are built when companies understand and value the things they are working on. We value learning and growth and the ability to make a…

*
![DuckDuckGo logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/11/ab8415dd5798a360323ce06beaf30c35.png)
DuckDuckGo  Sep 21

### [Senior Web Security Engineer, Browser Platform](https://jobicy.com/jobs/151281-senior-web-security-engineer-browser-platform.md)

Who We Are Hi, we’re DuckDuckGo, the online protection company and remote-first team of 300+ on a mission to raise the standard of trust online. Founded in 2008 and profitable…

*
![Fastly logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/10/127f9e4bbbdb8767bef358a23bf7f73d.jpeg)
Fastly  Sep 20

### [Senior Security Technical Account Manager](https://jobicy.com/jobs/153750-senior-security-technical-account-manager.md)

Fastly helps people stay better connected with the things they love. Fastly’s edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and…