Skip to content

Open nowPosted 10 hours ago

Security Engineer (Fuse Corp)

Fuse41 open roles

Where
San Leandro, California
Work mode
On site
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Engineer (Fuse Corp)Fuse · San Leandro, California
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Fuse's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.8%1 day
  2. 3.6%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.0%30 days
This job: posted 10 hours ago

The posting

ABOUT FUSE

We are building one of the most potentially consequential companies of the century. Our mission is to accelerate the world's transition to fusion energy while safeguarding humankind. This is not a normal company. This is not a normal job. We are committed for the long term to win.

ABOUT THE ROLE

We're hiring our first dedicated Security Engineer to own security across a growing and technically diverse footprint: cloud infrastructure, software development practices, control systems, and data collection pipelines. You'll work alongside our IT Systems Administrator, who owns day-to-day device/identity operations - you'll set the security strategy, standards, and technical controls, and partner with them on enforcement. This role sits at the intersection of cloud security, DevSecOps, and OT/control-systems security with real ownership from day one.

WHAT WE VALUE

- Obsess about the details — sloppy work costs us later, so do it right the first time.

- Care — pick up the trash. Do things no one asks you to do. Go the extra mile because you care.

- Act with urgency — every hour matters more than it feels like it does.

- Be responsible for the outcome, not just the task; if it is not working, it remains your problem until it is fixed.

- Assume good intent — disagree openly, then commit fully once a call is made.

CORE RESPONSIBILITIES

- Own security posture for AWS infrastructure managed via Terraform and Spacelift, including IAM policy review, secrets management, and network segmentation.

- Partner with engineering to build security into the SDLC and CI/CD pipeline - code scanning, dependency/vulnerability management, secure defaults for new services.

- Assess and secure control systems and data collection infrastructure.

- Own and operate our security monitoring and detection tooling; triage alerts and build out detection coverage over time.

- Define access-control standards (conditional access, least privilege, MFA policy) in IdP and across SaaS tools; partner with IT Admin on enforcement.

- Define MDM security baselines (macOS/Windows) for IT to implement and maintain.

- Build and lead incident response efforts when issues arise.

- Track security risk across the environment and lay groundwork for relevant compliance frameworks as the company matures.

- Run periodic security awareness efforts (phishing simulations, training) for a non-security-native team.

MINIMUM QUALIFICATIONS

- 4+ years in a security engineering role spanning cloud security and application/DevSecOps work.

- Strong hands-on experience with AWS and Infrastructure-as-Code (Terraform).

- Practical experience with identity security — SSO/IdP policy (Okta or equivalent), conditional access, least-privilege design.

- Experience with a security monitoring/detection platform (SIEM, EDR, or specialized tools) — alert triage, tuning, investigation.

- Solid understanding of secure SDLC practices — SAST/DAST, dependency scanning, secrets management, code review for security issues.

- Strong ability to communicate risk clearly to non-security stakeholders and make pragmatic trade-offs for a small, fast-moving company.

PREFERRED QUALIFICATIONS

- Direct experience securing control systems, OT, or industrial environments.

- Experience with CI/CD-integrated IaC workflows (Spacelift or similar).

- Experience with data collection pipeline security (data integrity, sensor/telemetry access controls).

- Prior experience as employee #1 or #2 on a security team, building programs from scratch.

- Compliance experience (SOC 2, ISO 27001, NIST, or sector-specific frameworks relevant to hardware/control systems companies).

- Scripting/automation skills (Python, Go) to build custom detections or automate security tooling.

- Experience in a company where hardware, CAD/simulation workstations, or physical systems intersect with traditional IT.

ADDITIONAL REQUIREMENTS

- Comfortable being the sole dedicated security resource, setting strategy while partnering with IT for day-to-day enforcement.

- Availability for incident response outside standard business hours when needed.

- Based in or willing to work from our San Leandro, CA office given the control systems and hardware-adjacent scope of the role.

- Occasional travel to other Fuse locations.

- Willingness to obtain relevant certifications (e.g., AWS Security, GIAC/GSEC) if not already held, as the role and compliance needs mature.

BENEFITS

- Medical, dental, and vision coverage.

- Relocation assistance for roles that require it.

- Flexible time off. Take what you need, no accrual tracking.

- 2 weeks of paid time off built into the end of each year (subject to team and business needs).

- 10+ paid holidays.

- Supportive leave of absence policies.

- Paid leave for new parents.

- Access to a 401(k) retirement plan.

- Meals provided on site at our San Leandro and Napierville facilities.

ITAR REQUIREMENTS

To conform to U.S. Government technology export regulations, including the International Traffic in Arms Regulations (ITAR), you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State.

EQUAL OPPORTUNITY

Fuse is an Equal Opportunity Employer; employment with Fuse is governed on the basis of merit, competence, and qualifications and will not be influenced by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, ancestry, immigration status, sexual orientation, gender identity, marital status, mental or physical disability, or any other legally protected status.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Fuse's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Fuse's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Fuse's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.