ForgeApply · Job listing
Lead Security & Infrastructure Engineer
Anodize
Apply in about a minute — without sacrificing quality.
ForgeApply autofills this application and tailors your resume to this exact posting. You review everything before it's sent. Free trial, no card required.
About this role
Lead Security & Infrastructure Engineer
Summary
We’re a well-funded, stealth startup building a new end-to-end personal computing platform.
As our Lead Security & Infrastructure Engineer, your responsibility is to build a high-performance, automated, and seamless corporate environment. You will have complete ownership of both our internal security posture and corporate infrastructure, across our custom silicon design environment, internal systems, and employee endpoints. Your goal is to keep us secure by default through automation, code, and zero-trust principles, rather than manual policies and ticket queues.
Additionally, you will have the opportunity to act as an internal consultant for our product team, helping them design our products to be manageable by modern enterprise IT organizations.
Responsibilities
• Secure Silicon & Vendor IP Infra: Design infrastructure and enforce network isolation and strict access controls for our cloud-based silicon design environment. Protect highly confidential, encrypted third-party IP during the design and tape-out phases.
• Automate Internal Systems: Build and scale our identity provider, SaaS toolchain, and lifecycle workflows through zero-touch automation. No manual ticket queues.
• Secure the Fleet: Build and secure our internal fleet (Windows/macOS/Linux) using light-touch, high-efficacy tools that keep our company secure without killing battery life.
• Data Loss Prevention: Build the systems that allow us to enforce the highest level of security for sensitive and confidential data.
Minimum Requirements
• 6+ years of experience spanning Infrastructure Security, DevSecOps, or Systems Engineering, ideally in fast-paced startup or high-growth tech environments.
• IaC & Automation First: Strong system design and software development skills, plus hands-on experience using Infrastructure as Code (IaC) to build and manage security and infrastructure programmatically.
• Identity & Zero Trust: Experience working with Identity Providers, strict least-privilege access controls, and Zero Trust network architectures.
• Cloud & Network Security: Proven track record securing public cloud environments, with expertise in network segmentation, VPC isolation, egress control, and robust encryption standards.
• Fleet Management & Endpoint Security: Hands-on experience administering multi-OS environments (macOS, Linux, Windows) using open source tools like FleetDM to enforce security without sacrificing engineering velocity or creating systemic risk via centralization.
Preferred Qualifications
• Experience securing cloud-based silicon design (EDA) environments, high-performance computing (HPC) workloads, or high-value third-party IP during chip development cycles.
• Familiarity with enterprise device enrollment standards and hardware-level security concepts.
Salary insight
This posting doesn't disclose pay. Across 6,449 San Francisco jobs with disclosed salaries on ForgeApply, the median is $202k.
See full DevOps / SRE salary data for San Francisco →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Ready to apply to Anodize?
Apply in about a minuteSimilar jobs
- Lead Security & IT Engineer — Anodize · San Francisco or Los Altos, CA
- Lead Security Engineer — Alembic · San Francisco HQ
- Lead Security Engineer — Hinge-health · New York
- Lead Security Engineer — Duettoresearch · United States
- Lead Security Engineer — Suno · Boston
- Lead Security Engineer — Devtechnology · Suitland, MD
- Lead Security Engineer — Ardentmc · Rockville, MD
- Lead Security Engineer, Enterprise Security — Klaviyo · Denver, CO
More like this: DevOps & SRE Jobs · DevOps & SRE Jobs in San Francisco · More jobs at Anodize · Browse all jobs