ForgeApply · Job listing
Engineering Manager, Hardware Platform Security
Anthropic
See all 441 open roles at Anthropic →
Tailor your resume for this Anthropic job in about a minute.
ForgeApply rewrites your resume for this exact posting, then autofills the application on Anthropic's site with it. You review everything before it's sent. Free trial, no card required.
About this role
About Anthropic
Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.
About the role
Platform Security Engineering (PSE) sits within Data Center Security Engineering (DCSE). As Anthropic expands beyond traditional cloud providers into owned facilities, colocation, and partner sites, we take on the security responsibilities that cloud providers used to abstract away: firmware integrity, boot chain verification, platform trust, and host hardening. PSE exists so that Anthropic can deploy training and inference workloads to any qualified environment with a demonstrable security posture, including the technical controls behind our AI Safety Level commitments.
We are hiring an engineering manager to lead a group of platform security engineers covering firmware research, OS and kernel hardening, platform trust integration, and server manageability firmware. You will own the roadmap for this group, grow the team, and be accountable for the security posture of the compute platforms Anthropic runs on: hardware roots of trust, secure and measured boot, attestation, firmware supply chain, and the integrity of the hosts that hold model weights on bare-metal infrastructure.
This is a hands-on management role. You will not write most of the code, but you will review designs, make the final call on hard trade-offs, and be able to reason with your engineers from a silicon root of trust through firmware, bootloader, kernel, and host software. You will partner with infrastructure, fleet, and compute teams inside Anthropic, and with silicon vendors, OEMs, and compute providers outside it.
You will report to the Data Center Security Engineering manager.
Key responsibilities
• Lead and grow the platform security engineering group: hiring, onboarding, development, performance, and prioritization for full-time engineers, and coordination of contractor and vendor engineers working alongside them
• Own the platform security roadmap and its delivery: hardware root of trust and attestation, secure and measured boot across CPU, BMC, accelerator, and peripheral firmware, OS and kernel hardening, and the host-side pipeline that turns attestation evidence into production gates
• Own the firmware supply chain posture for the fleet: SBOM and reference integrity manifests, authenticated update, rollback protection, and the vendor relationships needed to get fixes shipped
• Drive platform risk assessments for new compute platforms and providers, and make evidence-based go/no-go recommendations with bounded risk rather than perfect-or-nothing gates
• Partner with infrastructure, fleet, compute, and detection and response teams so that platform controls land in production without degrading training or inference performance
• Manage relationships with silicon vendors, OEMs, and compute providers: security requirements, vulnerability management, disclosure and remediation timelines, and upstream and standards-body engagement (TCG, OCP, IETF)
• Run the team's operating rhythm: design reviews, threat models, incident participation for platform-layer issues, and clear written status to security and infrastructure leadership
Minimum qualifications
• Have 10+ years in systems security, with at least 5 years focused on firmware, hardware, or OS-level security
• Have 5+ years as a people manager of security or systems engineers, including hiring and developing senior and staff-level engineers
• Can go from architecture to implementation detail with your engineers: secure boot, measured boot, TPM and other roots of trust, attestation protocols (SPDM, DICE, remote attestation), UEFI and BMC firmware, and Linux kernel and OS hardening
• Have owned a technical roadmap end to end, including the prioritization calls when security, performance, and delivery timelines conflict
• Have worked directly with silicon vendors, OEMs, or cloud and bare-metal providers on security requirements and remediation, and can push a partner to a fix without burning the relationship
• Write clearly: design reviews, risk assessments, and status for executives are part of the job
• Are comfortable building a team and its processes from an early stage, with a scope that is broader than the headcount
Preferred qualifications
• Experience managing a mixed team of full-time engineers, contractors, and vendor engineers while keeping design authority in-house
• Hands-on background in OpenBMC or other server management firmware, DRTM or secure launch, or confidential computing primitives (TDX, SEV-SNP, ARM CCA)
• A record of upstream contributions or maintainership in Linux, OpenBMC, or a comparable community, or standing in TCG, UEFI Forum, or OCP
• Experience securing large-scale HPC or AI training infrastructure
• Firmware vulnerability research, reverse engineering, or fuzzing background
• Experience running coordinated vulnerability disclosure with hardware or firmware vendors
The annual compensation range for this role is listed below.
For sales roles, the range provided is the role’s On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.
Annual Salary: $485,000 — $625,000 USD
Logistics
Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience
Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience
Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position
Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. Howe
Salary insight
This posting doesn't disclose pay. Across 8,498 San Francisco jobs with disclosed salaries on ForgeApply, the median is $200k.
See full Hardware Engineer salary data for San Francisco →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Anthropic role before you apply.
Tailor my resume for this jobSimilar jobs
- Engineering Manager, Platform Security — Discord · San Francisco Bay Area
- Engineering Manager, Security Platform — Vannevarlabs · Remote
- Security Engineering Manager, Platform Security — Coreweave · Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA
- Offensive Hardware Security Engineer, Platform Security — Anthropic · San Francisco, CA | New York City, NY | Seattle, WA
- Senior Manager, Engineering - Platform Security — Fastly · Denver, CO; New York City, NY; San Francisco, CA
- Senior Hardware Security Engineer — The Aerospace Corporation · El Segundo, CA
- Engineering Manager, Proactive Security - Platform — Doordashusa · Remote
- Software Engineer, Platform Security — Decagon · San Francisco
More like this: Hardware & Electrical Engineering Jobs · Hardware & Electrical Engineering Jobs in San Francisco · Browse all jobs
Free ATS checker · How to Autofill Greenhouse Job Applications (Without Sending Junk)