Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 4
API
Communication @ 7
Distributed Systems @ 7
GPU @ 4
HPC
Kubernetes @ 4
Leadership @ 7
Linux @ 4
Security @ 8
Technical Leadership @ 7
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
NVIDIA DGX Cloud is an AI Factory designed to power the next generation of AI and industrial-scale breakthroughs. As the Distinguished Engineer for Security Architecture within the Security Engineering organization, you will set the security design bar for an AI factory of hundreds of thousands of GPUs and build against it alongside engineering teams.
This is the founding architecture position in a new organization. Security Engineering is accountable for the security outcome of the DGX Cloud platform, and this role leads its architecture function. You will define the security design standard for DGX Cloud and maintain it from within the teams building the platform.
Security responsibilities span the fleet horizontally and the technology stack vertically, from hardware roots of trust and hardened baselines through tenancy, GPU workload isolation, services, and APIs across every DGX Cloud engineering organization. A small team of Principal Engineers will report to you, and you will remain hands-on in the design. You will also serve as DGX Cloud's technical interface with NVIDIA's central security organization.
Responsibilities
- Set the DGX Cloud security bar: Own the security design standard across tenancy, GPU workloads, identity, supply chain, and isolation. Create reference architectures, golden paths, and requirements that engineers can build against.
- Hold the bar by building: Embed with engineering teams on real work, participate in designs, learn the code, and help ship secure systems rather than reviewing them only after completion.
- Architect the security platform: Drive the multi-year architecture for common security infrastructure, including hardened baselines and patch SLOs, deploy-time policy and admission control, workload identity, supply-chain provenance through signing and attestation, and detection and response tuned to GPU workloads.
- Eliminate classes of risk: Address recurring risks at their architectural root, including by offensively testing internal designs, and incorporate findings into paved roads, baselines, and detections.
- Grow the Principal Engineering bench: Lead a small team of Principal Engineers, set their technical direction, hire into capability gaps, and develop them into broader technical scopes.
- Collaborate across functions: Serve as DGX Cloud's primary technical connection to NVIDIA's central security organization and partner with platform, production engineering, and network security teams.
- Communicate risk upward: Document security gaps and the work required to close them, and communicate them to executives responsible for accepting risk.
Requirements
- Typically 20+ years of experience across software engineering, infrastructure, and security, with recent depth securing large-scale distributed or cloud platforms.
- Experience building systemic security solutions rather than performing manual operations or tool administration.
- A proven record owning the end-to-end security architecture of a large platform, including multi-tenant isolation, identity and access, policy enforcement, supply chain, and detection.
- Production-grade coding experience, including writing, shipping, and operating services at scale.
- Ability to read unfamiliar codebases closely enough to identify where security assumptions break.
- Experience forming technical perspectives on emerging technologies, including AI-generated code, AI-assisted security analysis, and agents operating within defended systems.
- Deep threat-modeling experience for complex distributed systems, including the substrate, orchestration layer, and tenancy boundary.
- Cloud-native architecture experience, including Kubernetes, Linux systems security, kernel-level primitives, and the security properties of high-throughput multi-tenant environments.
- Strong technical leadership, communication, consensus-building, and organizational influence skills.
- Typically 7+ years of experience leading and developing senior technical talent, including engineers with deeper expertise in their domains.
- Bachelor's, master's, or PhD degree in Computer Science, Electrical Engineering, or a related field, or equivalent practical experience. The posting also specifies a minimum of 18+ years of practical engineering experience for equivalent backgrounds.
Ways To Stand Out
- Experience securing high-performance computing environments, RDMA-based networks, large GPU fleets, or GPU-specific security challenges.
- Experience establishing a security architecture practice where none previously existed, including its standards, reference architectures, working agreements, and organizational credibility.
- Experience with hardware roots of trust, attestation, TPM/HSM integration, confidential computing, or workload identity frameworks deployed at scale.
- Notable contributions to security-focused open source, standards work, or engineering-focused security research.
Benefits
The base salary range is USD 320,000–488,750. Compensation depends on location, experience, and the pay of employees in similar positions. The role also includes eligibility for equity and benefits.