HPC Security & IAM Architect
Role details
Job location
Tech stack
Job description
We are seeking an HPC Security & IAM Architect to design and deliver end-to-end security architectures for large-scale HPC, AI/ML, and next-generation CaaS / GPUaaS platforms.
This is a highly technical, customer-facing role focused on embedding security across the full platform stack-from infrastructure and identity to application and pipeline security. You will guide customers through the entire security lifecycle, including requirements definition, architecture design, proof-of-concept, deployment, and ongoing optimization.
This role blends infrastructure security, identity & access management (IAM), and DevSecOps, ensuring platforms are secure by design across compute (CPU/GPU), storage, networking, Kubernetes, and orchestration layers. You will play a key role in securing multi-tenant, GPU-accelerated environments, enabling scalable and compliant delivery of GPU-as-a-Service (GPUaaS) and Container-as-a-Service (CaaS) offerings.
You will also translate real-world challenges into scalable security patterns, reference architectures, and platform enhancements across HPC and AI infrastructure environments., Customer Engagement & Security Strategy
- Act as the primary security and IAM advisor for customers adopting HPC, AI/ML, and CaaS / GPUaaS platforms
- Define security, identity, and compliance requirements aligned with performance, scalability, and multi-tenant platform needs
- Guide long-term security strategy for GPU-accelerated and containerized environments
Security Architecture & Platform Design
- Design end-to-end security architectures across infrastructure, identity, and application layers
- Define models for identity federation, SSO, RBAC, multi-tenancy, and policy enforcement
- Architect secure frameworks for multi-tenant GPUaaS and CaaS platforms, including tenant isolation and workload segmentation
- Implement Zero Trust principles including authentication, encryption, segmentation, and workload isolation
IAM & Identity Engineering
- Design and implement IAM frameworks including directory integration, lifecycle management, and access governance
- Support privileged access management (PAM), secrets management, and federation (SAML, OIDC)
- Ensure secure identity models across multi-tenant HPC and Kubernetes-based environments
DevSecOps & Application Security
- Embed security tooling (SAST, SCA, DAST, SBOMs) into CI/CD pipelines supporting platform and workload delivery
- Enable secure software delivery across CaaS and GPUaaS environments
- Partner with engineering teams to integrate security controls into platform pipelines
Container, Kubernetes & Platform Security
- Provide expertise in Kubernetes security including RBAC, admission controllers, runtime security, and OPA/Gatekeeper
- Define and enforce security standards for containerized HPC and AI workloads
- Secure orchestration layers supporting containerized HPC and GPU-based workloads at scale
Governance, Risk & Compliance
- Conduct security and identity assessments, identifying gaps and recommending improvements
- Align architectures with frameworks such as NIST, SOC 2, ISO 27001, and CIS
- Support compliance and audit readiness across multi-tenant AI infrastructure platforms
Automation & Platform Security
- Develop automation for secure infrastructure provisioning (Terraform, Ansible, Python, Go)
- Build reusable security frameworks, playbooks, and reference architectures
- Drive consistency through infrastructure-as-code and policy-as-code approaches
Cross-Functional Leadership
- Partner with product and engineering teams to influence security capabilities for HPC, CaaS, and GPUaaS platforms
- Lead workshops, architecture reviews, and technical engagements
- Stay current on emerging security trends across HPC, AI infrastructure, and GPU ecosystems
Requirements
- Proven experience as a Security Architect, IAM Architect, or Security Engineer in HPC, cloud, or distributed environments
- Experience supporting or securing CaaS, GPUaaS, or multi-tenant platform environments
- Strong expertise in:
- IAM (SSO, RBAC, MFA, federation - SAML, OIDC)
- Infrastructure security (Zero Trust, encryption, segmentation, isolation)
- Kubernetes security (RBAC, admission control, runtime security, OPA/Gatekeeper)
- Application security tooling (SAST, SCA, DAST, CI/CD integration)
- Experience with automation (Terraform, Ansible, Python, Go)
- Familiarity with compliance frameworks (NIST, SOC 2, ISO 27001, CIS)
- Strong communication and stakeholder engagement skills
Preferred:
- Experience securing GPU-accelerated or AI/ML platforms
- Experience with PAM, secrets management, and identity lifecycle automation
- Familiarity with observability tools (Prometheus, Grafana, OpenTelemetry)
- Relevant certifications (CISSP, CISM, CCSP, CKS, AWS Security Specialty)
- Bachelor's or Master's degree in a related field