> Markdown version of [/jobs/ext/2716160-staff-security-software-engineer](https://www.wearedevelopers.com/jobs/ext/2716160-staff-security-software-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff Security Software Engineer - **Company:** Crusoe's Inc - **Location:** San Francisco, CA, United States - **Experience:** Experienced - **Salary:** $215,000.0 - $260,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Systems Engineering, User Authentication, Cloud Computing, Cyber Security, Continuous Delivery, Continuous Integration, Data Retention, Linux, Distributed Systems, Fault Tolerance, Identity and Access Management, Key Management, Automation of Marketing, Network Control, Open Source Technology, Public Key Infrastructure, Security Software, Software Engineering, Software Systems, Data Streaming, Systems Architecture, Cloud Platform System, High Performance Computing, Software Security, Event Driven Architecture, Kubernetes, Infrastructure Automation Frameworks, Information Technology, Hashicorp, Integration Frameworks, Data Pipelines, Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/staff-software-engineer-security-crusoe-8282169 ## About the Role * Education: Bachelor's degree in Computer Science, Information Security, a related technical field, or equivalent practical job experience. * Software Engineering: 8+ years of professional software development experience, with at least 5+ years of hands-on, production-grade programming experience in languages like Go, Rust. * Orchestration & Containers: 4+ years of hands-on experience deploying on, securing, and managing applications at scale on Kubernetes and public cloud environments. * System Architecture: Proven track record of designing, building, and operating high-QPS, fault-tolerant, and mission-critical distributed systems. * Cloud & Infrastructure: Strong hands-on experience with major public cloud infrastructure provider platforms (GCP or AWS). * CI/CD & IaC: Deep familiarity with modern continuous integration and continuous deployment pipelines, alongside robust Infrastructure-as-Code (IaC) tooling practices. * Data Flow Design: Strong experience engineering technical architectures involving complex data flows, event-driven architectures, fine-grained access controls, data retention management, and secure third-party integrations. * Technical Expertise + Infrastructure & Systems: Expert-level proficiency in distributed systems, infrastructure automation, and developing robust, automated abstractions (like Kubernetes operators or platform-level service meshes) to manage infrastructure complexity. + Kubernetes Internals: Deep operational experience managing Kubernetes at scale, troubleshooting complex cluster issues, developing operators, and optimizing the control plane. + Security Platform Engineering: Demonstrated experience implementing and maintaining identity and secrets management solutions such as HashiCorp Vault and SPIFFE/SPIRE in production environments. Bonus Points * Advanced understanding of authentication, authorization at scale in distributed systems. * Experience engineering security tools or telemetry platforms within large-scale AI/ML or high-performance computing environments. * Active contributor to open-source security engineering projects or frameworks. ## Description As a Staff Security Software Engineer, you are fundamentally a systems engineer who operates with a security-first mindset. You will design, build, and deploy the core infrastructure and automation platforms that define Crusoe's security posture. Rather than operating as a traditional security auditor, you will act as a platform architect-engineering the foundational software systems that enable secure-by-default production environments. You will own the full engineering lifecycle-from high-throughput identity and secrets management systems and Kubernetes orchestration to the development of high-throughput data pipelines-ensuring that our architecture is both performant and impregnable., * Architect & Build: Design, implement, and maintain highly scalable, distributed software systems that form Crusoe's core security engineering foundation. * Strategic Partnership: Partner closely with product security, infrastructure security platform engineering, and specialized security domain teams to translate complex business and regulatory needs into durable, automated technical solutions while retaining complete engineering ownership. * Data & Control Pipelines: Develop high-throughput control integrations and data pipelines to collect, normalize, and analyze security telemetry across identity systems (IAM), logs, vulnerability scanners, and continuous compliance (CCM/GRC) tools. * Metrics & Visibility Engines: Architect advanced metrics engines, real-time dashboards, and analytics insights pipelines that provide continuous visibility into overall compliance health, technical risk posture, and emerging security threats. * Technical Leadership: Provide technical direction, mentorship, and architectural oversight across the security engineering team, fostering a culture of high engineering standards, operational excellence, and continuous technical innovation. * Scaling product security controls: Integrate and scale automated security checks within CI/CD pipelines to ensure consistent security enforcement. * Platform Security Infrastructure: Architect and manage critical platform security services at scale, specifically PKI infrastructure, SPIFFE/SPIRE for identity, and HashiCorp Vault for secrets management, ensuring secure credential handling and identity management across our distributed environment. * Production-Grade Systems: Engineer secure, high-throughput distributed systems, utilizing deep Linux knowledge and Kubernetes expertise to solve complex infrastructure-level challenges. * On This Team, You Will + Tackle complex security and compliance puzzles at cutting-edge scale within cloud and distributed infrastructure. + Collaborate with a brilliant, multidisciplinary team of engineers who are redefining compliance adherence for modern infrastructure. + Have the freedom, autonomy, and responsibility to innovate, experiment, and heavily influence how Crusoe establishes its core security assurance pipelines. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) - [Securing Secrets in the GitOps era](https://www.wearedevelopers.com/videos/546-securing-secrets-in-the-gitops-era) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)