About the Role
We are seeking an individual to set up and operate networks with extremely strict security properties, zero-trust concepts, and bespoke security components, all without Internet access, yet capable of training large models. The network you will build will implement novel and difficult security interventions required for the SL5 standard.
Responsibilities
- Designing and standing up the SL5 prototype compute platform, including racks, network configuration, device security policy & attestation, imaging, enrollment, and build server setup.
- Implementing deny-all, permit-by-exception execution without live internet access, including measured boot, signed images on hosts, allow-listing enforcement, and the pipeline for building and signing images and updates.
- Ensuring the platform is fast and usable for researchers despite constraints, and adapting workflows where traditional cloud-native habits are not suitable for an air-gapped environment.
- Co-developing the infrastructure and machine-security sections of the SL5 standard with stakeholders.
- Publishing research for technical and policy audiences, adhering to appropriate sensitivity.
Requirements
- 5+ years building and operating production infrastructure at scale (cloud platform, SRE, datacenter, ML infra, or similar, ideally including GPU/accelerator fleets).
- Alternatively, 2+ years building and stress-testing training infrastructure at a frontier AI lab.
- Comfort with primitives such as secure boot, attestation, code signing, key management, image/build pipelines, and network segmentation.
- Experience in or ability to reason about environments without internet access where hosts cannot be trusted (air-gapped, classified, or hard-isolated).
- Clear communication with both technical and non-technical stakeholders, including ML researchers.
Skills
- Secure boot
- Attestation
- Code signing
- Key management
- Image/build pipelines
- Network segmentation
- Confidential computing
- TEE
- Accelerator security features
- Data-diode transfer systems
Location
- Bay Area
Work Type
- In-person
Experience Level
- 5+ years building and operating production infrastructure at scale
- 2+ years building and stress-testing training infrastructure at a frontier AI lab
Salary/Compensations
- $200,000 - $350,000 USD per year
Benefits
- Full benefits, including healthcare, dental, vision, 401k match, and more.
About the Company
- Security Level 5 is a Bay Area AI security nonprofit working with AI labs and US intelligence agencies to defend frontier models from priority nation-state-level threats.
- We are a small technical team, moving fast and growing quickly.
- We are designing and building the first datacenter purpose-built to Security Level 5, the standard for defending frontier AI labs against attackers with the resources of a nation-state and billion-dollar budgets.
- We wrote the first version of the standard with input from CISOs and senior security staff at frontier labs, and US security and intelligence officials.
- We are designing SL5 architectures purpose-built for frontier AI workloads and standing up the reference tech stack to guide labs' buildouts.
