Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Senior Platform Security Engineer role.
Rezi rewrites your resume against Firmus Technologies's job description. Free.

Tailor your resume to this Senior Platform Security Engineer role.
Rezi rewrites your resume against Firmus Technologies's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Senior Platform Security Engineer posting at Firmus Technologies — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Senior Platform Security Engineer posting at Firmus Technologies — free, in seconds.
About the Role
AI FactoryOS Operations runs Firmus' proprietary operating system for the AI Factory, governing GPU telemetry, cooling, power, and grid interaction. This role ensures the 24/7 reliability of AI FactoryOS, Firmus AI Cloud, and their associated platforms, meeting defined service levels. The function focuses on building guarded automation, remediation, and operational tooling to transform manual responses into software-defined capabilities and operates shared services essential for the estate's operation. It collaborates closely with platform engineering teams, providing production insights to shape future development.
Responsibilities
- Build runtime visibility and enforcement using eBPF-based tooling, feeding high-quality signal into the estate's security monitoring and tuning detection for actionable alerts.
- Own security gates in the delivery pipeline, including image signing, software bills of materials, vulnerability gating, and policy checks.
- Maintain policy-as-code controls governing production deployments on the delivery toolchain.
- Set and own the security content of the multi-tenant Kubernetes estate: admission policy, workload identity, and network policy.
- Verify production deployments align with defined security policies.
- Set and continuously validate the operational security standard for the platform's Kubernetes control planes and baselines in production.
- Raise deviations from the operational security standard as engineering requirements to the AI Infrastructure team.
- Validate layered controls limiting the blast radius of faults or compromises across tenant boundaries.
- Test layered controls against realistic failure and attack paths, feeding findings to AI Infrastructure.
- Investigate and respond to security-related operational anomalies, distinguishing security signals from ordinary operational symptoms.
- Operate the platform's security controls in line with ISO 27001 and NIST frameworks.
- Apply expertise in securing large-scale GPU infrastructure.
- Produce security evidence for collation by the Service Delivery Manager.
- Provide deep technical expertise for security-related platform faults.
- Contribute to post-incident reviews for security incidents.
- Mentor engineers on secure design and runtime security practices.
- Provide independent monitoring of privileged activity across the estate, including identity, certificate, and secrets platforms.
Requirements
- Strong experience of privileged access security, including least-privilege design, secrets management, and auditing of privileged operations.
- Strong experience securing multi-tenant Kubernetes environments, including admission policy, workload identity, network policy, and control plane hardening.
- Extensive experience with eBPF-based runtime security tooling, including building detection and enforcement.
- Strong DevSecOps experience owning security gates in a delivery pipeline.
- Solid understanding of hardware-enforced or network-based tenant isolation and its interaction with Kubernetes-level policy.
- Experience with policy-as-code tooling for Kubernetes and delivery pipelines.
- Demonstrated experience as a senior escalation point for security-related faults in a 24/7 production environment, including post-incident review.
- Strong scripting or programming ability for security automation and tooling (e.g., Python, Go, Bash).
- Clear technical judgment and communication skills.
- Experience securing GPU or HPC infrastructure and multi-tenant AI workloads.
- Experience in a multi-tenant service provider, cloud, or colocation environment.
- Experience with workload identity and secrets management patterns.
- Experience with security frameworks and evidence production under ISO 27001, SOC 2, or NIST frameworks.
- Relevant security certification (e.g., OSCP, GCFA, or a Kubernetes security credential).
- A Bachelor's degree in computer science, engineering, or a related discipline, or an equivalent combination of relevant experience and training.
Skills
- eBPF-based tooling (Cilium, Falco, Tetragon)
- Kubernetes security
- Admission policy
- Workload identity
- Network policy
- Control plane hardening
- DevSecOps
- Image signing
- Software bills of materials
- Vulnerability gating
- Policy-as-code
- Privileged access security
- Least-privilege design
- Secrets management
- Auditing
- Hardware-enforced tenant isolation
- Network-based tenant isolation
- Python
- Go
- Bash
- ISO 27001
- NIST frameworks
- GPU infrastructure security
- HPC infrastructure security
- Multi-tenant AI workloads
- Service provider environments
- Cloud environments
- Colocation environments
- Runtime enforcement
- OSCP
- GCFA
- Kubernetes security credential
Location
- Australia
- Singapore
Work Type
- On-call
- 24/7 operations
Experience Level
- Senior
Education Level
- Bachelor's degree in computer science, engineering or a related discipline, or an equivalent combination of relevant experience and training.
About the Company
- Firmus runs large-scale, state-of-the-art AI infrastructure built on the latest generation of GPU rack-scale systems and operated as one estate to power the next generation of AI innovation.