Skip to content

Open nowFirst seen 4 hours ago

Sr. Staff Platform Security Engineer, Cloud Infrastructure

Groq3 open roles

Where
United States
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr. Staff Platform Security Engineer, Cloud InfrastructureGroq · United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Groq's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Groq postings stay open a median of 21 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: first seen 4 hours ago

Groq median: 21 days open

The posting

Mission: Build and scale the security foundations that enable customers to run sensitive AI workloads with confidence on Groq's inference platform. You will set technical direction and build critical security capabilities across identity and access, Kubernetes, multi-tenant infrastructure, secrets, encryption, and key and certificate management. As a senior software engineer and technical leader, you will partner across Platform Engineering to turn complex security requirements into durable, automated systems that scale with the platform.

Location: We prioritize hiring in or near the SF Bay Area, New York City and Dallas.

Responsibilities & opportunities in this role: Set technical direction and own the architecture for critical platform security capabilities across identity, authorization, infrastructure security, encryption, key management, and auditability. Design and build identity and access systems spanning authentication, federation, authorization, workload identity, lifecycle provisioning, and administrative access. Build and scale security capabilities for Kubernetes and other distributed infrastructure using software, policy, automation, APIs, controllers, Infrastructure-as-Code, and GitOps. Architect security controls and isolation mechanisms for multi-tenant systems across compute, network, storage, and control-plane boundaries. Own infrastructure lifecycle security, including secure provisioning, secrets and credential management, encryption, and certificate lifecycle. Build production software and automation that make secure infrastructure patterns reliable, scalable, and easy for engineering teams to adopt. Lead security-sensitive platform designs and changes, translating complex risks and requirements into practical engineering decisions and scalable platform capabilities. Shape security architecture and technical standards across Platform Engineering, influencing designs beyond the systems you directly own. Partner across engineering and security to build capabilities that strengthen customer trust, platform reliability, and support compliance requirements. Clearly communicate security architecture, technical tradeoffs, and risk to engineers, technical leaders, and security leadership.

Ideal candidates have/are: 6+ years of software engineering experience building complex infrastructure or distributed systems, with deep experience in cloud and platform security, identity and access, Kubernetes, or related infrastructure security domains. Demonstrated experience setting technical direction and owning complex security architecture across multiple systems, teams, or infrastructure domains. Deep experience with identity and access technologies such as OIDC, SAML, SCIM, RBAC, workload identity, short-lived credentials, and multi-factor authentication. Deep experience designing security for multi-tenant systems and isolation across network, compute, storage, and control-plane boundaries. Hands-on Kubernetes security expertise, including RBAC, admission control, service-account and workload identity, secrets and encryption, policy enforcement, and node security. Strong understanding of secrets management, encryption, key management, certificate lifecycle, and secure credential management. Strong software engineering skills in Go, Python, or similar languages, with experience designing, building, and operating production systems. A software-first approach to security, with experience building controls through APIs, controllers, automation, policy, Infrastructure-as-Code, GitOps, or similar approaches. Experience leading ambiguous, cross-functional technical initiatives and influencing engineering direction across teams. Ability to reason about complex security systems end to end and communicate technical risk and architectural tradeoffs clearly to different audiences. Experience building identity, key-management, network security, or infrastructure security capabilities for cloud platforms is valuable. Experience with network policy and encryption or security for high-performance storage and distributed infrastructure is valuable. Experience translating security and compliance requirements into automated evidence and production-ready controls is valuable. Experience building Kubernetes operators, admission webhooks, or similar infrastructure automation is valuable.

Why Join Us Purposeful Hiring: You’re not here by accident, and neither is anyone else. Every teammate is handpicked with intention because who we build with matters. Builders Wanted: You’re not just riding the rocket ship, you’re building it. Your work directly shapes the trajectory of our company. Mission-Driven Work: We’re here to make a real impact. Our mission fuels everything we do. Tackling Hard Problems: If easy isn’t your thing, you’re in the right place. We solve some of the most complex and exciting challenges in our space. Excellence Is The Standard: High performance isn’t just encouraged, it’s the baseline. And it’s contagious.

If this sounds like you, we’d love to hear from you!

Compensation Groq is committed to providing competitive compensation through our Total Cash philosophy, which incorporates potential bonus value directly into base pay. The total cash salary range for this position, which is inclusive of the potential bonus value, is $341,400 - $401,600, with individual placement determined by your geographic location, experience, skills, and alignment with internal compensation standards. This range is specific to candidates located in the United States. Compensation for international candidates will vary based on local market dynamics. Beyond cash compensation, Groq also offers a Long-Term Incentive (LTI) Program and a robust suite of employee benefits.

US Job Posting This position may require access to technology and/or information subject to U.S. export control laws and regulations, including the Export Administration Regulations (EAR). To comply with these requirements, candidates for this role must meet certain citizenship or residency criteria. Specifically, they must qualify as U.S. Persons for export control purposes (i.e., U.S. citizen, U.S. lawful permanent resident (Green Card holder), or a protected individual under 8 U.S.C. § 1324b(a)(3) such as a refugee or asylee), or otherwise be eligible for an applicable export license. #LI-MS1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Groq's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Groq's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Groq's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.