Skip to content

Open nowFirst seen 8 hours ago

Sr. Staff Platform Security Engineer, Cloud Infrastructure

Groq3 open roles

Where
United States
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr. Staff Platform Security Engineer, Cloud InfrastructureGroq · United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Groq's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Groq postings stay open a median of 21 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: first seen 8 hours ago

Groq median: 21 days open

The posting

Mission: Build the hardware-rooted security foundations that protect sensitive AI workloads across hardware and software boundaries. You will set technical direction and build security capabilities spanning firmware security, hardware trust, attestation, trusted execution environments, and protected workload execution. As a senior technical leader, you will work close to the hardware layer and partner across hardware, firmware, systems, platform, and security engineering to solve complex security challenges at the foundation of the computing stack.

Location: We prioritize hiring in or near the SF Bay Area, New York City and Dallas.

Responsibilities & opportunities in this role: Set technical direction and own architecture for security capabilities spanning hardware, firmware, systems software, and protected workload execution. Design and build security architectures for hardware-rooted trust, attestation, trusted execution environments, and hardware-backed isolation. Architect attestation capabilities that establish and verify trust across hardware, firmware, host, and workload boundaries. Partner deeply with hardware, firmware, and systems engineers to shape platform integrity, secure and measured boot, device identity, and other hardware-rooted security capabilities. Design security capabilities that enable protected workload execution while maintaining trust throughout the workload lifecycle. Design secure approaches for cryptographic key material, credentials, identity, certificates, and provisioning within trusted computing environments. Shape security for the lifecycle of trusted compute infrastructure, from provisioning and platform initialization through operation and decommissioning. Lead threat modeling and security analysis across hardware, firmware, host software, and workload execution, identifying systemic risks and driving durable mitigations. Develop systems software, security tooling, and automation that make hardware-backed security capabilities reliable and operable at scale. Lead security-sensitive designs across organizational boundaries, translating complex hardware and systems risks into practical engineering decisions. Establish technical patterns and influence security direction across hardware, firmware, systems, platform, and security engineering. Partner across engineering and security to build capabilities that strengthen customer trust, platform reliability, and support compliance requirements. Clearly communicate trust models, security architecture, technical tradeoffs, and risk to engineers, technical leaders, and security leadership.

Ideal candidates have/are: 6+ years of systems, firmware, hardware, or security engineering experience, with deep expertise in low-level systems security and experience with hardware-rooted trust, attestation, trusted execution environments, confidential computing, or related technologies. Demonstrated experience setting technical direction and owning complex security architecture spanning multiple layers of the hardware and software stack. Deep expertise in firmware security, hardware-rooted trust, attestation, trusted execution environments (TEEs), protected workload execution, or closely related low-level security domains. Deep understanding of hardware-rooted trust, including roots of trust, platform integrity, secure or measured boot, device identity, and hardware-backed attestation. Experience designing or implementing attestation systems and reasoning about trust across hardware, firmware, host, and workload boundaries. Strong understanding of firmware and low-level systems security, including boot chains, platform integrity, and security boundaries between hardware and software. Strong understanding of cryptographic systems, key management, certificate lifecycle, secure credential management, and secure provisioning in trusted computing environments. Strong systems engineering skills, with experience developing low-level systems software, security tooling, firmware, or production automation in languages such as C, C++, Rust, Go, Python, or similar languages. Ability to threat model complex systems and reason about attacks spanning hardware, firmware, operating systems, infrastructure, and application workloads. Experience leading ambiguous, cross-functional technical initiatives and influencing engineering direction across highly specialized engineering disciplines. Ability to communicate complex trust models, security architecture, and technical risk clearly to different audiences. Experience developing or securing firmware, platform initialization, device security, or hardware-backed security mechanisms is valuable. Experience integrating hardware-rooted trust, attestation, or confidential computing capabilities with higher-level infrastructure, identity, key-management, or workload systems is valuable. Experience with bare-metal lifecycle security or securing large-scale compute environments is valuable.

Why Join Us Purposeful Hiring: You’re not here by accident, and neither is anyone else. Every teammate is handpicked with intention because who we build with matters. Builders Wanted: You’re not just riding the rocket ship, you’re building it. Your work directly shapes the trajectory of our company. Mission-Driven Work: We’re here to make a real impact. Our mission fuels everything we do. Tackling Hard Problems: If easy isn’t your thing, you’re in the right place. We solve some of the most complex and exciting challenges in our space. Excellence Is The Standard: High performance isn’t just encouraged, it’s the baseline. And it’s contagious.

If this sounds like you, we’d love to hear from you!

Compensation Groq is committed to providing competitive compensation through our Total Cash philosophy, which incorporates potential bonus value directly into base pay. The total cash salary range for this position, which is inclusive of the potential bonus value, is $341,400 - $401,600, with individual placement determined by your geographic location, experience, skills, and alignment with internal compensation standards. This range is specific to candidates located in the United States. Compensation for international candidates will vary based on local market dynamics. Beyond cash compensation, Groq also offers a Long-Term Incentive (LTI) Program and a robust suite of employee benefits.

US Job Posting This position may require access to technology and/or information subject to U.S. export control laws and regulations, including the Export Administration Regulations (EAR). To comply with these requirements, candidates for this role must meet certain citizenship or residency criteria. Specifically, they must qualify as U.S. Persons for export control purposes (i.e., U.S. citizen, U.S. lawful permanent resident (Green Card holder), or a protected individual under 8 U.S.C. § 1324b(a)(3) such as a refugee or asylee), or otherwise be eligible for an applicable export license. #LI-MS1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Groq's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Groq's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Groq's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.