软件工程师,基础设施安全
Software Engineer, Infrastructure Security
关于团队
安全是OpenAI使命的基石,确保通用人工智能造福全人类。
安全团队保护OpenAI的技术、人员和产品。我们在构建时是技术性的,但在执行时是运营性的,并支持OpenAI的每一个产品和研究项目。我们的原则包括优先考虑影响力,赋能研究人员和开发者,为未来变革性技术做好准备,并培养强大、协作的安全文化。
关于职位
OpenAI正在寻找一名安全软件工程师加入基础设施安全(InfraSec)团队。
InfraSec保护OpenAI研究和生产环境的核心部分——GPU超级计算集群、多云基础设施、数据中心、网络、存储以及支撑我们前沿AI模型的关键服务。我们的职责范围涵盖从裸机硬件和固件到Kubernetes集群、服务网格,以及承载高度敏感模型权重和用户数据的数据路径。
作为安全软件工程师,你将设计和构建关键的基础服务,例如认证系统、出站/入站代理、访问代理和密钥管理平台,这些服务需要具备高标准的可靠性、可扩展性和软件工程工艺。这些系统构成了OpenAI超级计算环境的安全支柱,在大规模和对抗性压力下必须保持稳健。
在该职位中,你将:
- 设计和实现生产级安全服务(例如认证服务、访问代理、安全代理、密钥管理基础设施),在硬件、操作系统、Kubernetes、网络和CI/CD上提供强有力的保障。
- 与基础设施和研究工程师合作,将安全嵌入高性能计算集群,实现快速模型训练和部署而不牺牲保护能力。
- 开发自动化和检测工具,持续识别和缓解大规模云环境和本地环境中的风险。
- 推动高影响力的项目,如线速加密、机器身份和网络隔离,持续提升新兴AI工作负载的安全标准。
- 领导或参与设计评审和威胁建模,确保新系统在强大的安全基础和卓越的运营标准下发布。
如果你具备以下条件,将在该职位中表现出色:
- 扎实的软件工程技能
查看英文原文
About the Team
Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.
The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but operational in how we execute, and we support every product and research effort at OpenAI. Our tenets include prioritizing for impact, enabling researchers and developers, preparing for future transformative technologies, and fostering a strong, collaborative security culture.
About the Role
OpenAI is seeking a Security Software Engineer to join the Infrastructure Security (InfraSec) team.
InfraSec safeguards the core of OpenAI’s research and production environments—GPU supercomputing clusters, multi-cloud infrastructure, datacenters, networking, storage, and the critical services that power our frontier AI models. Our charter spans everything from bare-metal hardware and firmware to Kubernetes clusters, service meshes, and the data pathways that carry highly sensitive model weights and user data.
As a Security Software Engineer, you will design and build critical foundational services, such as authentication systems, egress/ingress proxies, access brokers, and key management platforms, that demand high standards of reliability, scalability, and software craftsmanship. These systems form the security backbone of OpenAI’s supercomputing environment and must remain robust under intense scale and adversarial pressure.
In this role, you will:
- Architect and implement production-grade security services (e.g., auth services, access brokers, secure proxies, key-management infrastructure) that provide strong guarantees across hardware, operating systems, Kubernetes, networks, and CI/CD.
- Partner with infrastructure and research engineers to embed security into high-performance compute clusters, enabling rapid model training and deployment without compromising protection.
- Develop automation and detection tooling to continuously identify and mitigate risks in large-scale cloud and on-prem environments.
- Drive high-impact initiatives such as line-speed encryption, machine identity, and network isolation, continuously raising the security bar for emerging AI workloads.
- Lead or participate in design reviews and threat models to ensure new systems launch with strong security foundations and operational excellence.
You will thrive in this role if you have:
- Strong software engineering skills in languages such as Python, Go, Rust, or C/C++, with a track record of shipping and operating high-reliability distributed services.
- Experience building or operating critical security infrastructure (e.g., auth services, service-to-service proxies, certificate or key-management systems).
- Deep understanding of security principles, best practices, and common vulnerabilities.
- Expertise in securing large-scale cloud platforms (e.g., Azure, AWS, GCP), including multi-cloud networks and cloud-agnostic system design.
- Familiarity with container and orchestration security (Kubernetes, service meshes) and modern authentication/authorization standards (OIDC, mTLS, SPIFFE/SPIRE).
- A proactive mindset, with the ability to identify and address security gaps or inefficiencies through automation and tooling.
- A track record of delivering scalable solutions and driving impactful changes across infrastructure in real-world projects.
- Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks.
- Excellent communication skills, with the ability to convey complex security concepts to technical and non-technical stakeholders.
- Excitement about collaborating with cross-functional teams to build secure, reliable systems that scale globally.
About OpenAI
OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.
We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement https://cdn.openai.com/policies/eeo-policy-statement.pdf.
Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.
To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA. No response will be provided to inquiries unrelated to job posting compliance.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241.
OpenAI Global Applicant Privacy Policy https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf
At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.