{"id":1064000,"url":"https://alion.io/job/radixark-member-of-technical-staff-security","title":"Member of Technical Staff — Security","company":{"id":686458,"name":"RadixArk","domain":"radixark.com","url":"https://alion.io/company/radixark","size_band":null,"is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"C","score":55,"open_postings":20,"ghost_share":0.75,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-24T05:45:00Z"}},"role":"AI/ML","role_family":"AI/ML","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Palo Alto, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":208000,"max_usd":426000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":503},"experience_years_min":4,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"GCP","optional":false},{"name":"HIPAA","optional":false},{"name":"IAM","optional":false},{"name":"Kubernetes","optional":false},{"name":"Linux","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Rest API","optional":false},{"name":"SIEM","optional":false},{"name":"SOC 2","optional":false},{"name":"Threat Modeling","optional":false},{"name":"Unix","optional":false},{"name":"GitHub","optional":true},{"name":"LLM","optional":true},{"name":"SGLang","optional":true}],"status":"live","first_seen_at":"2026-09-18T21:40:56Z","employer_posted_date":"2026-09-18","last_verified_at":"2026-09-24T12:13:24Z","board_verified":true,"closed_at":null,"days_open":5,"trust":{"level":"ok","repost_count":0,"flags":["company_stale"],"days_open":5},"description":"About the Role\nRadixArk is looking for a Member of Technical Staff - Security to champion both our internal security posture and help us prepare for vendor audits and compliance requirements. As our first dedicated security engineer, you'll lay the foundation for security practices across our infrastructure, products, and operations-ensuring we can confidently serve enterprise customers and pass SOC 2 audits.\nThis is a unique opportunity to shape security from the ground up at a fast-growing AI infrastructure company. You'll work across backend systems, cloud infrastructure, and customer-facing APIs to build security into our products and processes before external auditors arrive.\nKey Responsibilities\nSecurity Posture & Compliance:\nBuild and document our internal security architecture, controls, and practices\nCreate threat models for our systems and products that interact with customer data\nDevelop an Incident Response Plan (IRP) and Business Continuity/Disaster Recovery (BC/DR) plan\nEstablish vulnerability and patch management processes with clear SLAs\nPrepare security documentation for vendor audits, including SOC 2 readiness\nSystem Scoping & Inventory:\nDefine which systems and data handle customer data to determine SOC 2 audit scope\nCreate and maintain an inventory of infrastructure, applications, and third-party dependencies\nClassify data flows and identify security boundaries between in-house and outsourced components\nDocument which security controls are managed internally vs. outsourced to vendors (AWS, GCP, etc.)\nInfrastructure & Application Security:\nReview and improve network security: firewalls, intrusion detection/prevention (IDS/IPS), DDoS mitigation\nAudit API authentication, authorization, rate limiting, and multi-tenancy isolation\nImplement secrets management and secure configuration practices\nReview cloud IAM, networking, and data protection (encryption in transit and at rest)\nEvaluate container and supply-chain security practices\nSecurity Monitoring & Operations:\nDesign and implement security logging and monitoring systems\nSet up SIEM/SOAR tooling or evaluate and integrate centralized logging\nEstablish security alerting, incident response procedures, and runbooks\nConduct regular vulnerability scans and penetration tests\nVendor & Customer Security:\nDevelop security processes to answer vendor questionnaires and RFPs\nCreate documentation for customers on security controls, certifications, and data handling\nLead the SOC 2 audit process-coordinate with internal teams and external auditors\nStay informed on relevant compliance frameworks (SOC 2, HIPAA, Export Control, etc.)\nTeam Enablement:\nEnforce secure development practices to engineers\nHelp teams understand threat models relevant to their work\nBuild security into CI/CD pipelines and deployment processes\nExperience & Requirements\nCore Technical Skills:\n4+ years working on security, infrastructure, or backend systems (or equivalent combination of hands-on experience and security training)\nStrong understanding of cloud platforms: AWS, GCP, or Azure (IAM, networking, data protection, secrets management)\nProficiency in Linux/Unix system administration and command-line tools\nHands-on experience with Kubernetes, container security, or infrastructure-as-code\nSolid understanding of network security, authentication/authorization protocols, and cryptography basics\nExperience conducting vulnerability assessments, penetration testing, or security audits\nSecurity Expertise:\nDemonstrated experience building or improving security programs (threat modeling, security architecture, incident response)\nKnowledge of secure coding practices, OWASP Top 10, and common vulnerability types (SQLi, XSS, CSRF, etc.)\nFamiliarity with security tools: vulnerability scanners, SIEM, secret management systems, IDS/IPS\nUnderstanding of regulatory compliance frameworks (SOC 2 is a plus; export control is a major plus for us)\nPreferred Experience:\nBackground in founding or early-stage startups-you understand scrappy, pragmatic security (not over-engineering on day one)\nExperience with ML infrastructure, GPU/compute management, or high-performance systems\nInvolvement in SOC 2 audits or other compliance programs\nExperience writing security policies, playbooks, and operational runbooks\nFamiliarity with supply-chain security, open-source risk, or dependency management\nEducation & Background:\nBachelor's degree in Computer Science, Engineering, Cybersecurity, or equivalent professional experience\nRelevant security certifications (CISSP, CISM, CEH, OSCP, etc.) are a plus but not required\nNotes for Candidates\nWe're looking for someone who is pragmatic, autonomous, and genuinely excited about security as a core part of our business-not someone looking for a checklist compliance role. You should be comfortable with ambiguity, able to prioritize ruthlessly, and willing to help across all of ops/finance/legal as needed (that's the reality of founding team hires at a Series A startup).\nIf you have questions about the role, security priorities, or company direction, we'd love to hear from you.\nAbout RadixArk\nRadixArk is an infrastructure-first company built by engineers who've shipped production AI systems, created SGLang (30K+ GitHub stars, the fastest open LLM serving engine), and developed Miles (our large-scale RL framework). Founded by AI infrastructure veterans from xAI and NVIDIA, we're on a mission to democratize frontier-level AI infrastructure by building world-class open systems for inference and training. Our team has optimized kernels serving billions of tokens daily, designed distributed training systems coordinating 10,000+ GPUs, and contributed to infrastructure that powers leading AI companies and research labs.\nEqual Opportunity\nRadixArk is an Equal Opportunity Employer and is proud to offer equal employment opportunity to everyone regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, and more.","description_format":"text","description_chars":6048,"description_truncated":false,"requirements":{"experience_years_min":4,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["AI Infrastructure"],"lifecycle":[{"event":"open","at":"2026-09-19T13:50:55Z"}],"liveness":{"score":56,"band":"ok","label":"Likely open","p_open":1,"p_active":0.557,"p_room":1,"age_days":5,"expected_fill_days":31,"reasons":["conf:1","stale_co","win:early"],"computed_at":"2026-09-24T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/radixark-member-of-technical-staff-security","json_url":"https://alion.io/job/radixark-member-of-technical-staff-security.json","meta":{"generated_at":"2026-09-24T15:41:43Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}