{"id":649467,"url":"https://alion.io/job/nscale-sr-staff-security-engineer-platform-security","title":"Sr. Staff Security Engineer, Platform Security","company":{"id":48155,"name":"Nscale","domain":"nscale.com","url":"https://alion.io/company/nscale","size_band":"501-1000","is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"A","score":93,"open_postings":45,"ghost_share":0,"stale_share":0.267,"repost_share":0,"time_to_fill_p50_days":56,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Houston, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":210000,"max":270000,"currency":"USD","period":"year","gross":null,"usd_annual":270000},"salary_estimate":null,"experience_years_min":12,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"HPC","optional":false},{"name":"Kubernetes","optional":false},{"name":"SLURM","optional":false}],"status":"live","first_seen_at":"2026-09-04T23:07:52Z","employer_posted_date":"2026-09-14","last_verified_at":"2026-09-24T23:07:04Z","board_verified":true,"closed_at":null,"days_open":20,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":20},"description":"About Nscale\nNscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical capabilities and directly supports strategic business outcomes, including cost management, rapid innovation, and environmental responsibility.\nWe thrive on a culture of relentless innovation, ownership, and accountability, where every team member takes pride in their work and drives it with excellence and urgency. As an Nscaler, you’ll build trust through openness and transparency, where everyone is inspired to do their best work. If you join our team, you’ll be contributing to building the technology that powers the future.\nAbout the Role\nWe are hiring a Senior Staff Security Engineer as a founding member of Nscale's Platform Security program. Your job is to go deep on how our IaaS platform is actually built - not how the diagrams say it is built - and to perform the security reviews that tell leadership and customers where it holds, where it doesn't, and what it will take to close the gap.\nThe scope is the infrastructure layer: the GPU compute platform, storage, virtual networking, and Kubernetes. Across each of these you'll map the architecture, define what secure looks like, review designs and implementations against that standard, test isolation boundaries, and produce assurance evidence. The estate spans bare-metal GPU infrastructure, Slurm/HPC scheduling, and Kubernetes.\nThis is a hands-on assurance role. You will spend most of your time inside the platform - reading configuration, tracing data and control paths, breaking isolation assumptions, and working alongside platform, SRE, and infrastructure engineering to land fixes. You will have done this before, at a cloud services provider, where the platform was the product.\nWhat you'll be doing\nPlatform security reviews\nPerform deep-dive security reviews of Nscale's IaaS services, one service at a time, producing a documented architecture, threat model, findings, and remediation plan for each.\nDefine the security requirements baseline for each service and review designs and implementations against it.\nPrioritise findings by exploitability in our environment.\nAdvise leadership on what is known, verified, accepted, and required to close platform security gaps.\nGPU compute platform\nReview the bare-metal and virtualised GPU compute stack: host provisioning, hypervisor and GPU passthrough or partitioning, firmware and BMC management, and tenant reprovisioning.\nVerify that a tenant cannot reach, persist on, or learn from hardware after their lease ends.\nAssess the out-of-band management plane and its separation from tenant-reachable networks.\nStorage\nReview block, object, and file storage services for tenant data separation, encryption at rest and in transit, key management, and access-path control.\nVerify snapshot, backup, and volume lifecycle handling - including secure deletion and reuse - across tenants.\nVirtual networking\nReview the virtual network layer: overlay and underlay design, tenant segmentation, east-west controls, and the boundary between tenant networks and the management plane.\nTest that segmentation holds under realistic tenant behaviour, not only under the design assumptions.\nKubernetes and Slurm\nReview multi-tenant Kubernetes: admission control, workload identity, runtime and node hardening, network policy, and container escape paths.\nReview Slurm/HPC scheduling for isolation between jobs and tenants, privilege boundaries, and node reuse.\nDrive testing of isolation boundaries and gather evidence that demonstrates customer workloads are separated.\nEngineering partnership\nPartner with platform, SRE, and infrastructure engineering to land fixes and secure-by-default patterns.\nInfluence teams you don't manage without becoming their ticket queue.\nTrack control coverage and remediation trends so \"secure\" is a number, not a word.\nKPIs\nAssurance reviews shipped\nTenant isolation evidence produced\nEstate-wide enforcement measured and trended\nAbout You\n12+ years in security engineering, platform/infrastructure engineering, or security architecture, with a deep platform security focus.\nExperience at a cloud services provider - you have secured or assessed IaaS services where the platform was the product and tenants were untrusted by default.\nDeep understanding of multi-tenant isolation across bare metal, hypervisors, container boundaries, and network segmentation - including what it takes to prove separation rather than assert it.\nHands-on knowledge of GPU or accelerator infrastructure: passthrough and partitioning, firmware and BMC management, and the failure modes of hardware reuse between tenants.\nStrong grasp of storage security in a multi-tenant setting: encryption and key management, access-path control, and data lifecycle across snapshots, backups, and reuse.\nWorking knowledge of virtual networking: overlay/underlay design, segmentation, and management-plane separation.\nDeep knowledge of Kubernetes and container internals, including runtimes, namespaces and cgroups, escape paths, admission control, and workload identity.\nExperience securing or assessing Slurm/HPC environments is a strong plus.\nProven ability to influence engineering organisations you don't manage, set standards, win arguments through evidence, and drive remediation without formal authority.\nComfortable operating with ambiguity and a founding-team mandate, creating the evidence base as you build the program.\nWhat we can offer you\nAt Nscale, you'll find a collaborative, supportive, and innovative environment where your contributions spark real impact. We're building something extraordinary, and we want you at the core.\nHighly competitive US compensation package (base + bonus + equity), with performance reviews every 12 months. \nJoin one of the fastest-growing AI infrastructure companies - your chance to directly shape how global AI capacity is planned and deployed. \nExpect a dynamic progression plan tailored to your ambitions. Grow by leading critical cross-functional initiatives and shaping capital strategy - always with our full support.\nHuman-First Flexibility: We treat you as humans first. Our flexible workplace trusts Nscalers to deliver, giving you the autonomy to shape your day around life's moments.\nEqual Opportunities Statement\nWe strongly encourage applications from people of colour, the LGBTQ+ community, people with disabilities, neurodivergent people, parents, carers, and people from lower socio-economic backgrounds.\nIf there’s anything we can do to accommodate your specific situation, please let us know.\nThe responsibilities outlined in this job description are not exhaustive and are intended to provide a general overview of the position. The employee may be required to perform additional duties, tasks, and responsibilities as assigned by management, consistent with the skills and qualifications required for the role.\nFor information on how Nscale handles candidate personal data, please see our Employee & Candidate Privacy Notice: Here.\nThe range below reflects the base salary for the position. Actual compensation may vary based on job-related factors such as skill set, experience, education, and location. In addition to base salary, this role may be eligible for bonus, equity, and/or commission programs. Nscale may offer a competitive benefits package including medical, dental, vision, flexible paid time off, parental leave, and retirement plan participation.\nSalary Range\n$210,000—$270,000 USD\nFor information on how Nscale handles candidate personal data, please see our Employee & Candidate Privacy Notice: Here.\nNscale does not accept unsolicited candidate submissions from recruitment agencies.","description_format":"text","description_chars":7887,"description_truncated":false,"requirements":{"experience_years_min":12,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Equity","Flexible schedule","Parental leave","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Information Technology","Data Centers","Cloud Computing"],"lifecycle":[{"event":"open","at":"2026-09-10T20:22:42Z"}],"liveness":{"score":89,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.893,"p_room":1,"age_days":19,"expected_fill_days":56,"reasons":["conf:3","velocity","win:early","comp:brand"],"computed_at":"2026-09-24T05:45:00Z"},"pay":{"stated_usd_annual":270000,"is_top_pay":true},"html_url":"https://alion.io/job/nscale-sr-staff-security-engineer-platform-security","json_url":"https://alion.io/job/nscale-sr-staff-security-engineer-platform-security.json","meta":{"generated_at":"2026-09-25T01:57:38Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1998,"day_limit":5000,"remaining_today":3002,"minute_limit":60,"resets_at":"2026-09-26T00:00:00Z"}}}