> Markdown version of [/jobs/ext/2999149-platform-engineer](https://www.wearedevelopers.com/jobs/ext/2999149-platform-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Platform Engineer - **Company:** METR LLC - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Computing Platforms, Cloud Computing, Code Review, Hardware Security Module, Identity and Access Management, Intrusion Detection and Prevention, PostgreSQL, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Datadog, Pulumi, Cloud Platform System, Okta, Large Language Models, Software Security, Backend, Kubernetes, Cybercrime, Gsuite, Cloudwatch, Serverless Computing - **Published:** September 19, 2026 - **Apply:** https://startup.jobs/platform-engineer-application-security-metr-8814708 ## About the Role * 7+ years of experience working in security engineering, software development, or an adjacent field. * Production software engineering. You have experience building and operating backend or infrastructure in practice. * Cloud and container security. You have deep familiarity with AWS (especially non-trivial IAM), Kubernetes, and infrastructure-as-code environments. * Vulnerability remediation. You have found and fixed security flaws in large production systems and can prioritize a remediation backlog. * Security fundamentals. Strong security knowledge across systems, networks, cloud, and identity, and a track record of applying it to real systems. Experienced in designing secure software and cloud architectures. * Code review. Reviewing and giving constructive security feedback on PRs, including from the FOSS community., * Detection engineering at scale: Experience with detection pipelines (DataDog SIEM, AWS SecurityHub), writing and tuning detections, and threat hunting. * AI/LLM engineering: You build with AI: agent pipelines, LLM-powered tooling, automated workflows, and understand current limitations of those tools. * AI security research: Familiarity with agent control, hardware security, or red teaming AI systems themselves. Ideally you have experience with a portion of these technologies: * AWS: cloud-native software platforms * EKS * Lambda * ECS * IAM (in-depth) * CloudWatch * SecurityHub & GuardDuty * PostgreSQL: RLS, serverless Aurora * Pulumi: IaC * DataDog: SIEM * Okta: IdP * Google Workspace: IdP ## Description METR's mission of enabling transparency and coordination about the risks of frontier AI requires a high degree of trust from frontier AI labs, governments, and the public. As misalignment incidents become more extreme and confidential information about models and frontier AI labs becomes more valuable, we expect to be under increasingly intense pressure from external actors and internal agents., * Securing a unique attack surface. METR's evaluation infrastructure runs frontier AI agents, including early checkpoints of unreleased models, executing untrusted, model-generated code at scale on multi-day tasks. You will design and build the isolation, networking, and permission boundaries that contain evaluated agents. * Remediation and hardening. You will find, triage, and fix vulnerabilities across our cloud infrastructure and access control systems. * Fixing known vulnerabilities in our codebase. This includes code reviews and resolving known vulnerabilities in our backlog. * Identity and access as a system. You will design and implement IAM policies, least-privilege access, and automated provisioning and access review for both people and agents. * Securing agentic systems. You will design and implement systems to monitor and control agents, making sure they can operate securely and with appropriate permissions and guardrails. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Why segmenting your infrastructure into tiers makes your infrastructure design better](https://www.wearedevelopers.com/videos/1960-why-segmenting-your-infrastructure-into-tiers-makes-your-infrastructure-design-better) - [Answering the Million Dollar Question: Why did I Break Production?](https://www.wearedevelopers.com/videos/1171-answering-the-million-dollar-question-why-did-i-break-production) - [Unleashing Potential Across Teams: The Power of Infrastructure as Code](https://www.wearedevelopers.com/videos/930-unleashing-potential-across-teams-the-power-of-infrastructure-as-code) - [Terraform for Developers](https://www.wearedevelopers.com/videos/3-terraform-for-developers) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)