Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 3
Audit @ 3
Communication @ 6
Distributed Systems @ 3
Go @ 3
HPC @ 3
LLM
Machine Learning
Rust @ 3
Security @ 6
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
Responsibilities
- Audit secure boot chains from firmware through OS initialization for diverse hardware platforms (CPUs, BMCs, switches, peripherals, and embedded microcontrollers)
- Audit attestation systems that provide cryptographic proof of system state from hardware root of trust through application layer
- Audit measured boot implementations and runtime integrity monitoring
- Integrate security controls with infrastructure teams without impacting training performance
- Validate security mechanisms before production deployment
- Conduct firmware vulnerability assessments and penetration testing
- Build firmware vulnerability assessment pipelines for continuous security monitoring
- Document security architectures and maintain threat models
- Collaborate with software and hardware vendors to ensure security capabilities meet our requirements for exploit mitigation
Requirements
- Proven track record of conducting hands-on vulnerability auditing on complex, security-critical systems
- Hands-on experience with secure boot, measured boot, and attestation technologies (TPM, Intel TXT, AMD SEV, ARM TrustZone)
- Strong understanding of cryptographic protocols and hardware security modules
- Experience with UEFI/BIOS or embedded firmware security, bootloader hardening, and chain of trust implementation
- Proficiency in low-level programming languages (C, Assembly) and systems programming
- Knowledge of firmware vulnerability assessment and threat modeling
- Ability to work effectively across hardware and software boundaries
- Strong communication and cross functional collaboration skills
- Track record of assessing security architectures for complex, distributed systems
Preferred qualifications
- 8+ years of experience in systems security, with at least 5 years focused on low-level security (firmware, bootloaders, and OS kernel-level security)
- Capacity to audit for logic bugs in code written in Rust or Go
- Ability to find vulnerabilities via reverse engineering in software that is provided only in binary form
- Experience performing fault injection & side-channel analysis attacks on hardware
- Experience auditing silicon root of trust implementations
- Experience auditing confidential computing technologies and hardware-based TEEs
- Background in formal verification or security proof techniques
- 5 or more talks at top-tier security conferences with candidate listed as first author
- Experience using LLMs to automate security assessment (including tooling creation)
- Experience securing large-scale HPC or cloud infrastructure
- Previous work with AI/ML infrastructure security
Logistics
- Annual Salary: $320,000 - $405,000 USD
- Location-based hybrid policy: expects all staff to be in one of the offices at least 25% of the time
- Visa sponsorship: We do sponsor visas (they will make every reasonable effort to get you a visa if they make an offer, and they retain an immigration lawyer to help)
Minimum education
- Bachelor’s degree or an equivalent combination of education, training, and/or experience
Required field of study
- A field relevant to the role as demonstrated through coursework, training, or professional experience
More jobs at Anthropic
Software Engineer, Web Platform
Anthropic · San Francisco, United States
USD 320,000-405,000 per year
Strategic Finance, GTM - Post Sales
Anthropic · San Francisco, United States
USD 240,000-325,000 per year
Engineering Manager, Growth
Anthropic · San Francisco, United States, New York City, United States, Seattle, United States
USD 405,000-485,000 per year
Life Sciences Operator, Lead
Anthropic · San Francisco, United States
USD 300,000-320,000 per year
Finance Systems Engineer, Revenue
Anthropic · San Francisco, United States, Seattle, United States
USD 205,000-270,000 per year
Similar jobs
Senior Software Engineer
SentinelOne · United States
USD 132,000-182,000 per year
Senior Staff AI Platform Engineer
Nvidia · Santa Clara, United States
USD 168,000-322,000 per year
Security Controls Assurance Lead
Anthropic · Washington, United States, New York City, United States, San Francisco, United States
USD 270,000-345,000 per year
Member of Technical Staff (Software Engineer, Inference & Training Platform)
Perplexity AI · New York City, United States, Ireland, London, United Kingdom, San Francisco, United States
USD 250,000-485,000 per year
Senior Platform AI Engineer
Nvidia · Santa Clara, United States
USD 184,000-356,500 per year
Senior GPU and HPC Infrastructure Engineer - DGX Cloud
Nvidia · Santa Clara, United States
USD 184,000-356,500 per year
Forward Deployed Engineer - Physical AI Cloud Platform
Nebius · United States
USD 179,500-224,300 per year
Senior Security Engineer, AI Security
Reddit · United States
USD 190,800-267,100 per year