基础设施安全工程主管 - EDA 集群
Head of Infrastructure Security Engineering - EDA Clusters
保障NVIDIA的EDA集群安全不是部署标准安全套件的问题。这些工作负载规模太大、运行时间太长、对性能又过于敏感,无法直接应用现成的解决方案。这种限制就是工作的重点。我们正在招聘一位工程负责人,负责构建和运营EDA集群的基础设施安全工程:这个团队负责在NVIDIA硬件工程师设计芯片所使用的计算、存储和网络上实施安全控制措施,覆盖本地数据中心和多云环境。你将作为NVIDIA公司级安全组织和硬件基础设施工程团队的同行合作伙伴,将企业安全意图转化为能够在EDA规模下有效运作且不会拖慢芯片设计的安全控制措施。
这大部分是建设性的工作,而非维护性的工作。你将有权决定哪些标准工具适用,哪些不能使用,并指导NVIDIA工程师带领团队完成替代方案。如果你在超大规模网络和计算基础设施领域有深厚经验,曾在安全产品公司或任何以舰队和网络为日常工作的环境中,对这些系统的安全属性承担过实际责任,那么你正是我们需要交谈的人。我们不要求你对每个安全产品类别都精通;但我们期望你从第一天起就负责安全结果,并快速掌握其余领域的知识。强大的基础设施能力加上敏锐的安全直觉在这里胜过广泛的产品简历。这是一个属于那些相信安全工程就是工程的人的职位:自动化、仪器化和默认安全的基础设施,而不是工单、例外情况和电子表格。
你将负责:
- 建设并领导团队。组建并指导一支以实用、生产验证结果为导向的工程师团队,培养其中的领导者。负责技术路线图。与其他安全团队和基础设施工程团队合作,设计EDA特定的安全控制路线图并将其部署到生产环境。
- 将网络和平台作为控制平面。保护不仅仅依赖于节点内部运行的内容。
- 在硬性约束下进行工程设计。确定传统端点和工作负载安全工具适用的地方,不适用的地方,并设计替代方案:在不影响计算任务的情况下保护多日运行的计算作业。
- 实现统一的执行。推动一致的安全策略。
查看英文原文
Securing NVIDIA’s EDA clusters is not a matter of deploying the standard security stack. These workloads are too large, too long-running, and too performance-sensitive for the off-the-shelf playbook to simply apply. That constraint is the job. We’re hiring an engineering leader to build and runInfrastructure Security Engineering for EDA Clusters: the team responsible for implementing security controls across the compute, storage, and networking that NVIDIA’s hardware engineers design silicon on, spanning on-prem data centers and multi-cloud environments. You’ll operate as the peer counterpart to NVIDIA’s company-wide security organization and to hardware infrastructure engineering, translating enterprise security intent into controls that hold up at EDA scale without slowing chip design down.
Much of this is a build, not a maintain. You’ll have the authority to decide where standard tooling applies, where it actively cannot, and what NVIDIA engineers instead then lead a team to do it.If your depth is in large-scale networking and compute infrastructure at a hyperscaler, a security product company, or anywhere fleets and fabrics are the day job and you’ve carried real accountability for the security properties of those systems, you are exactly who we want to talk to.We don’t expect you to arrive fluent in every security product category; we do expect you to own security outcomes from day one and to acquire the remaining domain breadth fast. Strong infrastructure mastery plus sharp security instincts beats a broad product résumé here. This is a role for someone who believes security engineeringisengineering: automation, instrumentation, and secure-by-default infrastructure not tickets, exceptions, and spreadsheets.
What You’ll Be Doing:
- Build and lead the team.Grow and direct a team of engineers with a bias toward practical, production-proven results, and develop the leaders within it. Own the technical roadmap.Partner with various other security teams and infrastructure engineering to architect the roadmap for EDA-specific security controls and ship them into production.
- Make the network and platform your control plane.Protection doesn’t depend just on what’s running inside the node.
- Engineer around hard constraints.Determine where conventional endpoint and workload security tooling fits, where it doesn’t, and design the alternative: security that protects multi-day compute jobs without degrading them.
- Make enforcement uniform.Drive consistent application of security frameworks across on-prem data centers and multi-cloud platforms where “consistent” means enforced, not documented.
- Run the full lifecycleof core infrastructure security technologies: selection, deployment, operation, and eventual replacement.
- Automate the evidence.Build the KPIs, instrumentation, and audit workflows that make security posture across EDA systems continuously visible treating compliance evidence as an engineering output, not a manual exercise.
- Think like an adversary.Mitigation planning across network, storage, and compute.
- Champion security by design, embedding automation and secure defaults into the infrastructure lifecycle instead of bolting them on afterward.
What We Need To See:
- 12+ overall years building and operating production infrastructure at scale - network, compute clusters, and storage including 5+ years leading and managing engineering teams. A Bachelor’s degree in a relevant engineering field or equivalent experience.
- Deep networking expertise applied to large compute environments.
- Hands-on depth operating compute fleets at scale- provisioning, lifecycle, and the operational realities of long-running, high-value jobs.
- Deep understanding of hyperscaler methodologies for operating large-scale systems with security and reliability as co-equal goals.
- Experience securing performance-sensitive or high-throughput environments where standard agent-based tooling was constrained and you engineered a workable answer.
- Extensive history of building and guiding engineering teams responsible for complex distributed or multi-cloud architectures.
- Demonstrated ability to drive unified outcomes across organizational boundaries, with partners who do not report to you.
- Exceptional communication skills credible with individual engineers and executive leadership in the same day.
Ways To Stand Out from the Crowd:
- Built or operated infrastructure security capabilities at ahyperscaler or a security product company— you’ve engineered detection and enforcement systems, not just deployed someone else’s.
- Experience withkernel- and fabric-level observability and enforcement- eBPF, in-line and out-of-band inspection, DPU/SmartNIC offload - as an alternative to heavyweight in-node agents.
- Track record leading security or platform engineering insideEDA, HPC, or large research-cluster environments.Breadth across security domains -IAM, EDR/XDR, CNAPP, CSPM, vulnerability lifecycle, zero-trust architectures- or a demonstrated pattern of picking up new domains fast.
- Experience drivinginfrastructure-as-code and policy-as-codeso secure configuration is the default state rather than an audited one, plus familiarity translatingSOC2 / ISO27001into real technical controls.
NVIDIA is leading the way in groundbreaking developments in Artificial Intelligence, High-Performance Computing, and Visualization. Our invention serves as the visual cortex of modern computers and is at the heart of our products and services. Our work opens up new universes to explore, enables amazing creativity and discovery, and powers what were once science fiction inventions from artificial intelligence to autonomous cars. NVIDIA is seeking exceptional individuals like you to help us drive the next wave of artificial intelligence.
Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 272,000 USD - 431,250 USD for Level 4, and 320,000 USD - 488,750 USD for Level 5.You will also be eligible for equity and benefits.
Applications for this job will be accepted at least until September 19, 2026.This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.Originally posted on Himalayas