Network Engineer, AI Security Datacenter
Overview
You will own the network fabric and identity layer for the first SL5 datacenter, defending frontier AI models from nation-state threats. The stack includes switch configuration, segmentation, and PKI services, built from the ground up. You will work alongside a lean team of security engineers in San Francisco, with direct input from AI labs and US intelligence agencies. This role ships in 2-3 years, and every decision counts.
What You'll Do8
- 1Design and operate the network fabric: configure switches, enforce segmentation, and manage controlled links between the SL5 network and the Weight Enclave.
- 2Build an egress bandwidth limiter to enforce data exfiltration controls.
- 3Implement gateways and tunnels for remote media stations and remote users, maintaining strict access controls.
- 4Own the identity and trust layer: run the PKI service or its baked-key alternative, manage domain services, and audit logging.
- 5Translate trust boundaries from design documents into enforced reality, verifying through counters, logs, or penetration testing.
- 6Collaborate with the security team to harden the network against advanced persistent threats, including state-sponsored actors.
- 7Establish monitoring and alerting for network anomalies, ensuring the integrity of the SL5 environment.
- 8Document network architectures and operational procedures for the reference tech stack.
Requirements8
- 15+ years in network engineering, with a focus on security-critical environments.
- 2Proven experience turning a trust boundary into an enforced one: configuring VLANs, ACLs, or firewalls and verifying via metrics.
- 3Hands-on experience running PKI, code signing, or similar identity services in on-prem or disconnected environments.
- 4Deep knowledge of BGP, OSPF, and MPLS for datacenter routing and switching.
- 5Familiarity with TLS, IPsec, and Zero Trust architectures.
- 6Experience with Linux system administration and scripting (e.g., Python or Bash).
- 7Ability to apply a security mindset to ensure design properties translate to real-world enforcement.
- 8Experience in high-security environments, such as air-gapped networks or regulated industries.
Salary Insight
Salary not disclosed in listing
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.
Security-Level-5
VerifiedMachine Learning Engineer, AI Security Datacenter
Design experiments that measure the impact of Security Level 5 controls on real ML workflows at a Bay Area AI security nonprofit. Work with AI labs and US intelligence agencies to defend frontier models against nation-state threats. Build the reference tech stack for the first SL5 datacenter, shipping in 2-3 years. Forecast 2028 workloads and run experiments at tractable scales, interpreting results for frontier-scale audiences.
Security-Level-5
VerifiedSenior Director for National Security, AI Datacenter
Own federal and intelligence community partnerships for the first AI datacenter built to Security Level 5, the frontier defense standard for nation-state threats. You'll grow a network of trusted relationships in DC, shape custom whitepapers, and run workshops connecting Bay Area engineers with USG specialists. You'll advise on strategy and accompany the CEO on technical briefings. This role demands deep USG process knowledge and a nonpartisan stance, with an active TS clearance as a bonus. The mission is urgent and the scale is unprecedented: tripling headcount and shipping an at-scale build by 2027.
Palo Alto Networks
VerifiedPrincipal Network Security Architect | Palo Alto Networks
You will own the architectural blueprint and governance for a global network security footprint spanning hybrid cloud and on-prem. As Principal Enterprise Network Security Architect, you will drive Zero Trust adoption, security automation, and AI/ML integration. You will collaborate with security, infrastructure, and IT teams to embed security into every layer. This role stands out for its automation-first approach and ultimate escalation authority during critical events.
Security-Level-5
VerifiedData Center Scaling Lead, SL5 Security
You will own the roadmap for the first SL5 datacenter, scaling from prototype to at-scale build by 2027. You will work with a compact team of engineers and security architects, reporting to the CTO. This role defines the physical and logical constraints that frontier AI labs will build against, with direct input from US intelligence agencies.
David Joseph & Company
VerifiedSenior Staff Security Engineer
Lead the end-to-end security posture of an AI coworker product for enterprise IT teams. Own application cloud network and agent security while defining a novel category. Drive secure design reviews build security primitives and manage incident response. This is a full-time role in San Francisco with equity compensation.
Security-Level-5
VerifiedAI Security Fellowship Program Lead
You will own the SL5 fellowship, conferences, and community events, building a global network of senior security experts. You report to the CEO and work with the SL5 ops team to transform the SF office into a security-conscious community hub. This role offers the chance to shape the first SL5 datacenter standards and transition top talent into frontier AI security.