资深安全可靠性工程师
Staff Security Reliability Engineer
关于团队
基础设施工程职能位于IT部门,负责可靠地构建、部署和运营支持内部服务和关键研发环境的本地和混合环境。
这是一个早期的、高影响力的技术岗位,专注于将强大的站点可靠性工程(SRE)实践应用于对可用性、安全性、可恢复性和安全性有硬性要求的环境中。该职位将帮助用标准化的基础设施即代码(IaC)模块替换定制的、一次性基础设施,从而在OpenAI扩展过程中提升可靠性和运维效率。
关于职位
我们正在寻找一位经验丰富的站点可靠性工程师,负责安全基础设施,设计、构建和运营支撑公司内身份、访问、终端设备和共享平台服务的可靠、安全且可扩展的基础设施。
在此职位上,您将作为基础设施和身份系统的高级技术负责人,从架构和实现到策略执行、升级、恢复和日常运营,全程负责。您将构建持久、生产级的平台,消除运维摩擦,默认实施安全措施,并使团队能够自信地加快进展。
此职位适合一位注重实战的资深工程师,能够在模糊环境中茁壮成长,享受从头到尾负责复杂系统,并通过用标准化、可重复的基础设施取代脆弱的实现来提高可靠性和安全性的挑战。
此职位位于我们的旧金山总部,需要现场办公。
在此职位中,您将:
- 在本地、混合、共享和产品相邻环境中设计、构建和运营可靠的基础设施。
- 建立标准化的基础设施模式,用可重复、可审计、默认安全的系统替代定制的实现。
- 负责关键基础设施平台的生命周期,包括供应、部署、升级、补丁、恢复和长期可靠性。
- 使用Terraform、Chef和Ansible等工具构建基础设施即代码和配置管理。
- 成熟与身份相关的基础设施和策略强制实施的基础设施,包括Microsoft Entra和Azure管理模式。
- 构建可观测性、警报和事件响应机制,以提高可用性、可恢复性和运维信心。
- 通过设置防护措施,自动化高劳动强度和高风险的工作流程,逐步推进。
查看英文原文
About the Team
The Infrastructure Engineering function sits within IT and is responsible for reliably building, deploying, and operating critical on prem and hybrid environments that power internal services and critical R&D environments.
This is an early, high-leverage technical role focused on applying strong Site Reliability Engineering discipline to environments where uptime, safety, recoverability, and security are non-negotiable. This person helps replace bespoke, one-off infrastructure with standardized infrastructure-as-code building blocks that compound reliability and operational leverage as OpenAI scales.
About the Role
We are looking for an experienced Site Reliability Engineer working on security infrastructure to design, build, and operate reliable, secure, and scalable infrastructure that underpins identity, access, endpoint, and shared platform services across the company.
In this role, you will be a senior technical owner for infrastructure and identity systems end to end, from architecture and implementation through policy enforcement, upgrades, recovery, and day-two operations. You will build durable, production-grade platforms that remove operational friction, enforce security by default, and enable teams to move faster with confidence.
This role is well suited for a hands-on senior engineer who thrives in ambiguity, enjoys owning complex systems end to end, and raises the reliability and security bar by replacing fragile implementations with standardized, repeatable infrastructure.
This role is based in our San Francisco HQ and requires in-office presence.
In this role, you will:
- Design, build, and operate reliable infrastructure across on-prem, hybrid, shared, and product adjacent environments.
- Establish standardized infrastructure patterns that replace bespoke implementations with repeatable, auditable, secure-by-default systems.
- Own the lifecycle of critical infrastructure platforms, including provisioning, deployment, upgrades, patching, recovery, and long-term reliability.
- Build infrastructure-as-code and configuration management using tools such as Terraform, Chef, and Ansible.
- Mature identity adjacent and policy enforced infrastructure, including Microsoft Entra and Azure management patterns.
- Build observability, alerting, and incident response mechanisms that improve availability, recoverability, and operational confidence.
- Automate high-toil and high-risk workflows with guardrails, progressive rollout patterns, and safe rollback paths.
- Translate incidents, design reviews, and operational learnings into durable fixes, reusable patterns, and stronger technical standards.
- Influence cross-functional partners across security, identity, network, and platform teams through architecture, implementation, operational data, and clear technical writing
You might thrive in this role if you:
- Have 10+ years of hands-on experience operating and architecting mission-critical infrastructure in high-reliability environments
- Have experience running Security Infrastructure
- Have been the senior technical owner for the design and maturation of complex on-prem, hybrid, or cloud-integrated systems, setting durable architectural patterns used by multiple teams
- Apply Site Reliability Engineering principles at scale, using observability, automation, and incident learnings to materially reduce risk and operational toil
- Operate comfortably in ambiguity, making sound architectural decisions under pressure while staying close to technical detail
- Have experience operating infrastructure for R&D or specialized labs, manufacturing, or other safety critical environments where uptime and recoverability are essential
- Have experience with fleet, endpoint, or virtual desktop platforms such as FleetDM, Chef, or Azure Virtual Desktop
- Have experience partnering closely with identity or security engineering teams on hardened, policy enforced infrastructure at scale
About OpenAI
OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.
We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement https://cdn.openai.com/policies/eeo-policy-statement.pdf.
Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.
To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA. No response will be provided to inquiries unrelated to job posting compliance.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241.
OpenAI Global Applicant Privacy Policy https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf
At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.