Search Jobs

Search by job, company or skills

Security Engineer

Security Engineer

gmi cloud
3-5 Years
  • Posted 12 hours ago
  • Be among the first 10 applicants

Job Description

Security Engineer

Department: Infrastructure Security

Reports to: Senior Director / Head of Security

Role Overview

We are seeking a hands-on Security Engineer to design, implement, and maintain security controls across our GPU-as-a-Service (GPUaaS) platform and supporting infrastructure.

Reporting to the Senior Director / Head of Security, this role will focus on the practical implementation of security measures across cloud infrastructure, GPU clusters, networking systems, Kubernetes environments, CI/CD pipelines, applications, and operational tooling. The ideal candidate combines strong engineering fundamentals with experience securing high-performance computing, cloud-native, and distributed systems.

You will work closely with Platform Engineering, SRE, DevOps, Product teams to build secure-by-default systems, automate security operations, detect threats, and respond effectively to incidents.

Responsibilities

  1. Implement and maintain security controls across GPUaaS infrastructure, cloud environments, data centers, and production systems.
  2. Secure GPU clusters, bare-metal hosts, Kubernetes platforms, storage systems, management planes, and networking services.
  3. Configure network segmentation, firewalls, private networking, ingress and egress controls, and service-to-service security policies.
  4. Harden Linux hosts, container runtimes, Kubernetes clusters, hypervisors, system images, and platform components.
  5. Establish and maintain secure configuration baselines and system-hardening standards.
  6. Review infrastructure, platform, and architectural designs to identify and mitigate security risks.
  7. Implement workload, data, and tenant-isolation controls in multi-tenant environments.
  8. Protect customer workloads, model artifacts, datasets, secrets, credentials, and metadata.
  9. Implement IAM controls, including least privilege, RBAC, MFA, privileged access, and periodic access reviews.
  10. Manage secrets, encryption keys, certificates, service accounts, and credential-rotation processes.
  11. Deploy and maintain security monitoring, centralized logging, alerting, and detection capabilities.
  12. Develop detection rules, dashboards, and automated responses for suspicious or unauthorized activity.
  13. Participate in incident response, including investigation, containment, eradication, recovery, and post-incident analysis.
  14. Develop, test, and maintain incident-response playbooks and operational runbooks.
  15. Operate vulnerability-management processes across hosts, containers, Kubernetes, cloud services, applications, and network devices.
  16. Implement continuous scanning for vulnerabilities, misconfigurations, exposed secrets, insecure dependencies, and public-facing assets.
  17. Integrate security checks into CI/CD pipelines, infrastructure-as-code workflows, and software-development processes.
  18. Conduct threat modeling, secure design reviews, security testing, and remediation tracking with engineering teams.
  19. Build reusable security tooling, automation, dashboards, and infrastructure components.
  20. Support audits, customer security assessments, compliance activities, security documentation, metrics, and reporting.

Qualifications

  1. Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or equivalent practical experience.
  2. 3-5 years of hands-on experience in security engineering, cloud security, infrastructure security, DevSecOps, or a related technical field.
  3. Strong knowledge of Linux security, networking, containers, Kubernetes, and infrastructure-as-code (e.g. SSH/OS Hardening, CVE scan and patch, Kubernetes pod security, Kyverno, OPA, Network Policy, Slurm munge keys, cgroups, filesystem)
  4. Experience implementing IAM controls, including least privilege, RBAC, MFA, privileged access, and secrets management.
  5. Experience with security monitoring, centralized logging, SIEM platforms, detection engineering, and alert investigation (e.g. security/audit/container logs, network flow, normalize/correlate events, alerts on unexpected events)
  6. Practical experience with vulnerability management, configuration assessment, penetration testing, and remediation.
  7. Experience integrating security controls into CI/CD pipelines and software-development workflows.
  8. Working knowledge of TLS, VPNs, DNS, firewalls, PKI, network segmentation, and related security technologies.
  9. Ability to automate security and infrastructure tasks using Python, Go, Bash, PowerShell, or similar languages.
  10. Familiarity with security tools for container scanning, dependency analysis, infrastructure-as-code scanning, and secrets detection.
  11. Understanding of incident response, digital forensics fundamentals, threat modeling, and security-risk prioritization.
  12. Experience securing GPU clusters, high-performance computing environments, AI/ML platforms, or distributed compute infrastructure.
  13. Knowledge of security frameworks and emerging practices, including NIST, ISO 27001, SOC 2, CIS Benchmarks or confidential computing.

More Info

Job Type:
Industry:
Employment Type:

Key Skills

Configuration assessment

Network segmentation

Infrastructure-as-code

IAM controls

Centralized logging

Containers

About Company

Similar Jobs

4-6 yrs
Taiwan, Taipei City
Skills:
DAST, Iso 27001, Vulnerability Assessments, Penetration Testing, NIST AI RMF, MITRE ATLAS, OWASP Top 10 for LLM Applications, IaC scanning, cloud-native environments, AI coding assistants, SOC 2, Policy as Code, GitHub Copilot, Claude ChatGPT, SCA, SAST, log aggregation, AI automation, Security Monitoring, AI agents, secrets scanning
6-8 yrs
Taiwan
Skills:
core switching , Networking, Vpc, OSPF, Routers, Vxlan, routing, Firewalls, EVPN, BDP, MP-FBP, Mpls, networking software
5-7 yrs
Taiwan, Taipei City
Skills:
cloud security, Linux, Windows, Identity And Access Management, AWS, security posture management, on-premise data center security, scripting and automation languages
5-7 yrs
Taiwan
Skills:
Python, Code Cursor, agentic runtimes, Claude, CI CD pipeline integration, prompt context engineering, LLM APIs, AI security risk concepts, AI tooling coding assistants, GitHub Copilot, AI agent or orchestration frameworks
3-7 yrs
Remote
Skills:
Python, Java, Rust, Algorithms, Typescript, Bug Fixing, Pentesting, Node.js