{"schemaVersion":"jobsearcher.job.v1","id":"0d6ea2be2d52a8ff6085cdfe","url":"https://jobsearcher.com/jobs/0d6ea2be2d52a8ff6085cdfe","canonicalUrl":"https://jobsearcher.com/jobs/0d6ea2be2d52a8ff6085cdfe","title":"Staff Infrastructure Security Engineer (Generalist)","description":"Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens — to power the world's most ambitious AI workloads. When you join Crusoe, you join a team that is building the future, faster.We're in the midst of the greatest industrial revolution of our time. The demand for AI compute is boundless, and power is a bottleneck. We're solving that — with an energy-first approach that makes AI infrastructure better for the world and faster for the people innovating with AI.We're looking for problem-solving, opportunity-finding teammates with a sense of urgency, who believe in the scale of our ambition and thrive on a path not fully paved — people who want to grow their careers alongside a team of experts across energy, manufacturing, data center construction, and cloud services.If you want to do the most meaningful work of your career, help our customers and partners advance their AI strategies, and be part of a high-performing team that believes in each other, come build with us at Crusoe.About This RoleCrusoe’s mission is to accelerate the abundance of energy and intelligence. We’re seeking a Staff Infrastructure Security Engineer to secure the foundations of Crusoe Cloud, our purpose-built compute platform for AI and high-performance workloads. This role focuses on designing and embedding security controls directly into our global infrastructure, enabling customers to train advanced models within a trusted, secure-by-default environment.You’ll operate at the intersection of infrastructure, security, and reliability; architecting identity, network, and cloud security systems that scale with a high-growth cloud provider.What You’ll Be Working OnArchitecting security controls across compute, networking, and storage layers of a global cloud platformChampioning Infrastructure-as-Code (IaC) standards (e.g., Terraform) to enforce secure defaults, immutability, and drift detectionBuilding automated security guardrails embedded directly into CI/CD and deployment pipelinesCollaborating on a centralized Vault-as-a-Platform service to manage secrets, encryption keys, and internal PKIDesigning and operating certificate lifecycles (X.509, SSH) to support secure machine-to-machine trustDriving adoption of short-lived, Just-In-Time (JIT) access models to reduce standing privileges and improve auditabilitySecuring core network foundations, including global DNS architecture, service discovery, and network authentication systemsDesigning and maintaining authentication controls for network infrastructure to ensure secure, monitored accessPartnering closely with infrastructure, platform, and SRE teams to identify and remediate security gaps in foundational systemsWhat You’ll Bring To The Team8+ years of hands-on experience in infrastructure engineering, SRE, or security engineeringDeep understanding of security principles across the stack, from Linux and container runtimes to cloud control planesProven experience using Infrastructure-as-Code (Terraform) to manage complex, multi-environment infrastructure at scaleStrong knowledge of cryptography, secrets management, PKI, and modern authentication standardsExperience securing public cloud (AWS, GCP) and/or bare-metal environmentsStrong networking fundamentals, including routing, segmentation, firewalls, and Zero Trust architecturesHands-on experience with Kubernetes and container security, including secure secrets injection into microservicesFluency in at least one programming language (Go or Python preferred) for automation and toolingBonus PointsExperience building or operating internal security platforms (e.g., Vault-as-a-Service)Background securing high-scale cloud or AI infrastructureExperience implementing Zero Trust identity architectures end-to-endFamiliarity with bare-metal provisioning and data center security considerationsBenefits:Competitive compensationRestricted Stock UnitsPaid time off & paid holidaysComprehensive health, dental & vision insuranceEmployer contributions to HSA accountPaid parental leavePaid life insurance, short-term and long-term disabilityProfessional development & tuition reimbursementMental health & wellness supportCommuter benefits (parking & transit)Cell phone stipend401(k) Retirement plan with company match up to 4% of salaryVolunteer time offCompensation RangeCompensation will be paid in the range of up to $210,000 - $265,000 + Bonus. Restricted Stock Units are included in all offers. Compensation to be determined by the applicants knowledge, education, and abilities, as well as internal equity and alignment with market data.Crusoe is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, disability, genetic information, pregnancy, citizenship, marital status, sex/gender, sexual preference/ orientation, gender identity, age, veteran status, national origin, or any other status protected by law or regulation.","company":"Crusoe","rawCompany":"crusoe","city":"Millbrae","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-04-09T08:06:04.959Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"518210","title":"Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services","slug":"computing-infrastructure-providers-data-processing-web-hosting-and-related-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Staff Infrastructure Security Engineer (Generalist)","description":"Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens — to power the world's most ambitious AI workloads. When you join Crusoe, you join a team that is building the future, faster.We're in the midst of the greatest industrial revolution of our time. The demand for AI compute is boundless, and power is a bottleneck. We're solving that — with an energy-first approach that makes AI infrastructure better for the world and faster for the people innovating with AI.We're looking for problem-solving, opportunity-finding teammates with a sense of urgency, who believe in the scale of our ambition and thrive on a path not fully paved — people who want to grow their careers alongside a team of experts across energy, manufacturing, data center construction, and cloud services.If you want to do the most meaningful work of your career, help our customers and partners advance their AI strategies, and be part of a high-performing team that believes in each other, come build with us at Crusoe.About This RoleCrusoe’s mission is to accelerate the abundance of energy and intelligence. We’re seeking a Staff Infrastructure Security Engineer to secure the foundations of Crusoe Cloud, our purpose-built compute platform for AI and high-performance workloads. This role focuses on designing and embedding security controls directly into our global infrastructure, enabling customers to train advanced models within a trusted, secure-by-default environment.You’ll operate at the intersection of infrastructure, security, and reliability; architecting identity, network, and cloud security systems that scale with a high-growth cloud provider.What You’ll Be Working OnArchitecting security controls across compute, networking, and storage layers of a global cloud platformChampioning Infrastructure-as-Code (IaC) standards (e.g., Terraform) to enforce secure defaults, immutability, and drift detectionBuilding automated security guardrails embedded directly into CI/CD and deployment pipelinesCollaborating on a centralized Vault-as-a-Platform service to manage secrets, encryption keys, and internal PKIDesigning and operating certificate lifecycles (X.509, SSH) to support secure machine-to-machine trustDriving adoption of short-lived, Just-In-Time (JIT) access models to reduce standing privileges and improve auditabilitySecuring core network foundations, including global DNS architecture, service discovery, and network authentication systemsDesigning and maintaining authentication controls for network infrastructure to ensure secure, monitored accessPartnering closely with infrastructure, platform, and SRE teams to identify and remediate security gaps in foundational systemsWhat You’ll Bring To The Team8+ years of hands-on experience in infrastructure engineering, SRE, or security engineeringDeep understanding of security principles across the stack, from Linux and container runtimes to cloud control planesProven experience using Infrastructure-as-Code (Terraform) to manage complex, multi-environment infrastructure at scaleStrong knowledge of cryptography, secrets management, PKI, and modern authentication standardsExperience securing public cloud (AWS, GCP) and/or bare-metal environmentsStrong networking fundamentals, including routing, segmentation, firewalls, and Zero Trust architecturesHands-on experience with Kubernetes and container security, including secure secrets injection into microservicesFluency in at least one programming language (Go or Python preferred) for automation and toolingBonus PointsExperience building or operating internal security platforms (e.g., Vault-as-a-Service)Background securing high-scale cloud or AI infrastructureExperience implementing Zero Trust identity architectures end-to-endFamiliarity with bare-metal provisioning and data center security considerationsBenefits:Competitive compensationRestricted Stock UnitsPaid time off & paid holidaysComprehensive health, dental & vision insuranceEmployer contributions to HSA accountPaid parental leavePaid life insurance, short-term and long-term disabilityProfessional development & tuition reimbursementMental health & wellness supportCommuter benefits (parking & transit)Cell phone stipend401(k) Retirement plan with company match up to 4% of salaryVolunteer time offCompensation RangeCompensation will be paid in the range of up to $210,000 - $265,000 + Bonus. Restricted Stock Units are included in all offers. Compensation to be determined by the applicants knowledge, education, and abilities, as well as internal equity and alignment with market data.Crusoe is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, disability, genetic information, pregnancy, citizenship, marital status, sex/gender, sexual preference/ orientation, gender identity, age, veteran status, national origin, or any other status protected by law or regulation.","datePosted":"2026-04-09T08:06:04.959Z","dateModified":"2026-04-09T08:06:04.959Z","hiringOrganization":{"@type":"Organization","name":"Crusoe","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"0d6ea2be2d52a8ff6085cdfe"},"url":"https://jobsearcher.com/jobs/0d6ea2be2d52a8ff6085cdfe"}}