ForgeApply · Job listing
Director, Infrastructure Security
Crusoe
See all 349 open roles at Crusoe →
Tailor your resume for this Crusoe job in about a minute.
ForgeApply rewrites your resume for this exact posting, then autofills the application on Crusoe's site with it. You review everything before it's sent. Free trial, no card required.
About this role
Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens — to power the world's most ambitious AI workloads. When you join Crusoe, you join a team that is building the future, faster.
We're in the midst of the greatest industrial revolution of our time. The demand for AI compute is boundless, and power is a bottleneck. We're solving that — with an energy-first approach that makes AI infrastructure better for the world and faster for the people innovating with AI.
We're looking for problem-solving, opportunity-finding teammates with a sense of urgency, who believe in the scale of our ambition and thrive on a path not fully paved — people who want to grow their careers alongside a team of experts across energy, manufacturing, data center construction, and cloud services.
If you want to do the most meaningful work of your career, help our customers and partners advance their AI strategies, and be part of a high-performing team that believes in each other, come build with us at Crusoe.
About the Role:
As a GPU-cloud provider, Crusoe’s infrastructure is our product. Infrastructure Security
Engineering is arguably the most critical domain in our security engineering
organization.
Unlike traditional enterprise cloud security functions that act as passive auditors asking other
teams to fix bugs, this is an elite engineering and software development organization. You
will lead a dedicated team of 5–6 infrastructure security engineers who design, build, and
operate foundational security layers across our hyper-scale fleet.
This role offers a high-impact organizational leadership opportunity: inheriting an established
team of talented engineers, sharpening technical focus, resolving execution friction, and
instilling a high-velocity software delivery culture to turn this core group into an elite, world-class
engineering unit.
Reporting directly to the Senior Director of Security Engineering, you will own two core
pillars: Platform Security Engineering and Infrastructure Security Access and Posture
Management.
A Note From the Hiring Manager
"Infrastructure Security Engineering at Crusoe is an active software engineering
discipline, not a pure ‘cloud security’ function. We don't throw tickets over the fence
- we build the foundational cryptographic, identity, access, and runtime layers that
make our GPU-cloud VM and baremetal offerings secure by default.
I come from a deep product and infrastructure security background, and I hold
strong, battle-tested opinions on how infrastructure security should be engineered and operated. I am looking for a Director who can dive into the technical details,
establish clear architectural direction, and transform an existing team into a
high-performance engineering engine. Once aligned, you will have my full support,
dedicated headcount, and total executive backing to build and scale one of the
premier infrastructure security teams in the AI industry."
What You'll Be Working On:
1. Team Leadership, Turnaround & Talent Elevation
Organizational Transformation: Inherit, lead, and mentor an existing team of 5–6
infrastructure security engineers. Diagnose execution bottlenecks, resolve cultural
alignment issues, and elevate the team into a high-throughput engineering org.
Engineering Rigor & Velocity: Transition the team from reactive operational task
handling to a proactive platform engineering model with clear shipping cadences, code
quality standards, and architectural roadmaps.
Strategic Growth & Hiring: Establish clear accountability, strategically hire additional
junior talent to complement existing strengths, systems security, and automation
2. Platform Core Security Services (Foundational Engineering)
Identity, Secrets & PKI: Build, operate, and scale core identity and crypto primitives,
including workload identity (SPIFFE/SPIRE), enterprise secrets-as-a-service (HashiCorp
Vault), and public key infrastructure (PKI) across multi-tenant GPU environments.
Fleet Telemetry & eBPF: Deploy and manage eBPF-based security sensors at scale
across bare-metal and virtualized fleets to deliver high-fidelity observability and
kernel-level runtime protection.
Fleet Access & Just-In-Time (JIT): Architect and enforce zero-trust, JIT access
mechanisms for engineers and operators accessing fleet nodes, hypervisors, and core
switches.
Firmware & Supply Chain Security: Build mechanisms for secure boot, hardware roots
of trust, firmware update delivery, and software supply chain verification across GPU
nodes, CPUs, and network fabrics.
Infrastructure Vulnerability Management: Build platforms to continuously track,
prioritize, and remediate vulnerability states across millions of bare-metal, containerized,
and hypervisor assets.
3. Infrastructure Security Posture & IAM (Architecture & De-risking)
Control Plane & Cloud Security: Secure Crusoe’s multi-layer control plane across
public cloud environments (GCP) and multi-gigawatt on-premise AI data center
infrastructure.
IAM & Elimination of Standing Secrets: Eliminate standing admin privileges and
long-lived secrets. Architect least-privilege RBAC/ABAC models across cloud projects
and physical infrastructure.
Architectural Isolation & Risk Reduction: Identify and eliminate systemic architectural
risks (e.g., decoupling co-mingled Terraform execution environments, isolating tenant
control planes, and establishing hard boundary enforcement across GCP projects and
GPU clusters).
Security Architecture & Governance-by-Code: Perform continuous security architecture reviews, enforcing change management, isolation, and baseline posture natively through IaC (Terraform, OpenTofu, Kubernetes operators).
What You'll Bring to the Team:
Platform & Security Engineering Leadership: 8+ y
Salary insight
The midpoint of this range ($310k) is about 55% above the median disclosed salary for San Francisco roles listed on ForgeApply ($200k across 8,498 jobs).
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Crusoe role before you apply.
Tailor my resume for this jobSimilar jobs
- Director, Infrastructure Security Engineer — Pru · Newark, NJ
- Director, Infrastructure — Federato · Remote
- Director, IT Security — Denverbroncosteamllc · Englewood, CO
- Director of Infrastructure — Stand Out For Good · Knoxville, TN
- Director, Information Security — Trimedx · Indianapolis, IN
- Director, Infrastructure Engineering — Columbia · Portland, Oregon, United States
- Director, Infrastructure Engineering — Columbia Sportswear Company · Portland, Oregon, United States
- Senior Manager, Infrastructure Security — Stblaw · New York, NY
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)