{"schemaVersion":"jobsearcher.job.v1","id":"7d5a4d6402d19d94d01b85c6","url":"https://jobsearcher.com/jobs/7d5a4d6402d19d94d01b85c6","canonicalUrl":"https://jobsearcher.com/jobs/7d5a4d6402d19d94d01b85c6","title":"Software Engineer, Host Assurance","description":"Security - San Francisco, Seattle, and US - Remote\n\nAbout the Team\n\nSecurity is foundational to OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.\n\nThe Security organization protects OpenAI’s technologys.\n\nThe Host Assurance team exists to make bare metal and VMs dependable & scalable foundations for OpenAI: secure by default, verifiable in practice, and resilient across providers and operating models. We operate at the trust boundary between hardware and cloud-scale orchestration, ensuring that hosts are eligible to safely run workloads with predictable security properties and auditability.\n\nAbout the Role\n\nOpenAI is seeking a Software Engineer, Host Assurance to build and operate the services, APIs, and host software that establish and maintain trust in our compute infrastructure. You will own production software from design and implementation through testing, rollout, observability, and operation. Your work will support capabilities such as machine identity, certificate issuance and enrollment, secure bootstrap, and host attestation across bare-metal and VM environments.\n\nSuccess in this role requires strong technical judgment, the ability to reason across software and host-system boundaries and learn unfamiliar parts of the stack, and a practical mindset for building systems that are secure, reliable, and usable in fast-moving production environments. The systems you build will sit on the critical path of OpenAI’s frontier infrastructure investments and will directly shape how large amounts of compute are brought online - securely, responsibly, and at global scale - underpinning long-lived commitments around privacy, security, and reliability.\n\nYou will partner closely with infrastructures and emerging deployment models– to make the secure path the easiest path. This role is well suited for engineers who enjoy working across trust services, operating systems, hardware and firmware validation, and infrastructure security, and who are excited by ambiguous, high-impact problems at the boundary of hardware and large-scale systems.\n\nIn this role, you will:\n\nDesign that establish trust in both bare-metal & VM hosts before they are eligible for production use.\n\nHelp ensure hosts are verifiably trustworthy from delivery and installation through secure bootstrap and readiness to join orchestration systems.\n\nBuild and improve systems such as machine identity, certificate issuance and enrollment, HSM-backed or key-management-backed trust services, host attestation, measurement, and baseline verification tooling.\n\nValidate delivered hardware and firmware against vendor claims and continuously detect and manage drift over time.\n\nEliminate insecure bootstrap patterns while preserving deployment throughput and operational reliability. Partner with provisioning, fleet, and orchestration teams to deliver paved paths where the secure approach is the easiest approach.\n\nOwn software components through implementation, operational readiness, launch, and ongoing operation. Define readiness criteria, validate behavior under load and failure, establish monitoring and actionable alerts, plan staged rollouts and tested recovery procedures, and maintain runbooks. Use production experience to improve reliability and reduce operational burden.\n\nParticipate in production support via oncall rotation.\n\nHelp define observables and improve the telemetry and validation needed to enforce them in practice.\n\nWork across different deployment models and provider boundaries while maintaining a consistent bar for host trust outcomes.\n\nYou might thrive in this role if you:\n\nHave strong software engineering experience building and operating reliable production systems at scale.\n\nBring depth in distributed systems engineering, operating systems, or infrastructure security. Experience with PKI, HSMs, machine identity, attestation, secure boot, or hardware security is valuable but not required.\n\nCan reason across services, APIs, and host software, and learn the boot, firmware, and hardware trust mechanisms relevant to your work. Apply sound judgment to trust boundaries, correctness, and safe failure behavior.\n\nHave experience writing production quality code and ability to reason clearly about failure modes, operational safety, and long-term maintainability.\n\nHave experience supporting critical production systems at scale, such as being on-call.\n\nBalance rigor with pragmatism, and care about making strong security controls deployable in real-world environments.\n\nAre self-directed, low ego, and willing to work across disciplines to solve the most important problems.\n\nEnjoy building in ambiguous spaces where the architecture is still emerging, stakes are at all time high, and the future is being built.\n\nAbout OpenAI\n\nOpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core the full spectrum of humanity.\n\nWe are an equal opportunity employeration, or other applicable legally protected characteristic.\n\nBackground checks for applicants will be administered in accordance with applicable lawation technology systems and related data security obligations.\n\nTo notify OpenAI that you believe this job posting is non-compliant. No response will be provided to inquiries unrelated to job posting compliance.\n\nWe are committed to providing reasonable accommodations to applicants with disabilities.\n\nAt OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.\n\nCompensation\n\n$266K – $445K + Offers Equity","company":"OpenAI","rawCompany":"openai","city":"Millbrae","state":"CA","isRemote":false,"isActive":true,"createdAt":"2026-09-08T08:43:32.871Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Software Engineer, Host Assurance","description":"Security - San Francisco, Seattle, and US - Remote\n\nAbout the Team\n\nSecurity is foundational to OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.\n\nThe Security organization protects OpenAI’s technologys.\n\nThe Host Assurance team exists to make bare metal and VMs dependable & scalable foundations for OpenAI: secure by default, verifiable in practice, and resilient across providers and operating models. We operate at the trust boundary between hardware and cloud-scale orchestration, ensuring that hosts are eligible to safely run workloads with predictable security properties and auditability.\n\nAbout the Role\n\nOpenAI is seeking a Software Engineer, Host Assurance to build and operate the services, APIs, and host software that establish and maintain trust in our compute infrastructure. You will own production software from design and implementation through testing, rollout, observability, and operation. Your work will support capabilities such as machine identity, certificate issuance and enrollment, secure bootstrap, and host attestation across bare-metal and VM environments.\n\nSuccess in this role requires strong technical judgment, the ability to reason across software and host-system boundaries and learn unfamiliar parts of the stack, and a practical mindset for building systems that are secure, reliable, and usable in fast-moving production environments. The systems you build will sit on the critical path of OpenAI’s frontier infrastructure investments and will directly shape how large amounts of compute are brought online - securely, responsibly, and at global scale - underpinning long-lived commitments around privacy, security, and reliability.\n\nYou will partner closely with infrastructures and emerging deployment models– to make the secure path the easiest path. This role is well suited for engineers who enjoy working across trust services, operating systems, hardware and firmware validation, and infrastructure security, and who are excited by ambiguous, high-impact problems at the boundary of hardware and large-scale systems.\n\nIn this role, you will:\n\nDesign that establish trust in both bare-metal & VM hosts before they are eligible for production use.\n\nHelp ensure hosts are verifiably trustworthy from delivery and installation through secure bootstrap and readiness to join orchestration systems.\n\nBuild and improve systems such as machine identity, certificate issuance and enrollment, HSM-backed or key-management-backed trust services, host attestation, measurement, and baseline verification tooling.\n\nValidate delivered hardware and firmware against vendor claims and continuously detect and manage drift over time.\n\nEliminate insecure bootstrap patterns while preserving deployment throughput and operational reliability. Partner with provisioning, fleet, and orchestration teams to deliver paved paths where the secure approach is the easiest approach.\n\nOwn software components through implementation, operational readiness, launch, and ongoing operation. Define readiness criteria, validate behavior under load and failure, establish monitoring and actionable alerts, plan staged rollouts and tested recovery procedures, and maintain runbooks. Use production experience to improve reliability and reduce operational burden.\n\nParticipate in production support via oncall rotation.\n\nHelp define observables and improve the telemetry and validation needed to enforce them in practice.\n\nWork across different deployment models and provider boundaries while maintaining a consistent bar for host trust outcomes.\n\nYou might thrive in this role if you:\n\nHave strong software engineering experience building and operating reliable production systems at scale.\n\nBring depth in distributed systems engineering, operating systems, or infrastructure security. Experience with PKI, HSMs, machine identity, attestation, secure boot, or hardware security is valuable but not required.\n\nCan reason across services, APIs, and host software, and learn the boot, firmware, and hardware trust mechanisms relevant to your work. Apply sound judgment to trust boundaries, correctness, and safe failure behavior.\n\nHave experience writing production quality code and ability to reason clearly about failure modes, operational safety, and long-term maintainability.\n\nHave experience supporting critical production systems at scale, such as being on-call.\n\nBalance rigor with pragmatism, and care about making strong security controls deployable in real-world environments.\n\nAre self-directed, low ego, and willing to work across disciplines to solve the most important problems.\n\nEnjoy building in ambiguous spaces where the architecture is still emerging, stakes are at all time high, and the future is being built.\n\nAbout OpenAI\n\nOpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core the full spectrum of humanity.\n\nWe are an equal opportunity employeration, or other applicable legally protected characteristic.\n\nBackground checks for applicants will be administered in accordance with applicable lawation technology systems and related data security obligations.\n\nTo notify OpenAI that you believe this job posting is non-compliant. No response will be provided to inquiries unrelated to job posting compliance.\n\nWe are committed to providing reasonable accommodations to applicants with disabilities.\n\nAt OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.\n\nCompensation\n\n$266K – $445K + Offers Equity","datePosted":"2026-09-08T08:43:32.871Z","dateModified":"2026-09-08T08:43:32.871Z","hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"7d5a4d6402d19d94d01b85c6"},"url":"https://jobsearcher.com/jobs/7d5a4d6402d19d94d01b85c6"}}