C
CoreWeaveLivingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA

Security Engineering Manager (Platform Security)

On-siteFull Time$165k - $242k per yearPosted 3 days ago

About the role

  • CoreWeave is the AI hyperscaler, operating infrastructure at a scale and level of complexity required to support the most demanding AI workloads in the world
  • In this role, you will lead and scale CoreWeave’s Platform Security engineering function, owning how security is designed into the Kubernetes-based platform and public cloud environments
  • This is a hands-on engineering leadership role focused on building and operating security controls, not writing policy
  • You will define strategy and execution for cloud security posture, workload isolation, platform guardrails, image integrity, and multi-cloud security across CoreWeave’s own Kubernetes infrastructure and third-party cloud platforms including AWS, GCP, and Azure
  • You will lead and grow a team of platform security engineers and partner closely with Infrastructure, Platform Engineering, SRE, and other security teams to ensure platform security capabilities scale alongside the business. T
  • This role reports to the Senior Director of Security Foundations
  • CoreWeave delivers GPU-accelerated infrastructure purpose-built to support the most demanding AI and machine learning workloads in the world
  • Our platform is designed for extreme performance, scale, and reliability, supporting frontier AI development across a rapidly expanding global footprint
  • As CoreWeave continues to scale, securing the platform layer that underpins customer workloads and internal services is a critical foundation for the business
  • Platform Security at CoreWeave is an engineering discipline focused on building and operating systems that enforce security at the infrastructure layer across both our Kubernetes-based platform and third-party public cloud environments
  • The team owns the technical design, implementation, and operation of cloud security posture management, workload isolation, platform-level guardrails, and image integrity controls
  • This role is responsible for running, evolving, and operating CoreWeave’s Platform Security engineering program and team in close partnership with Infrastructure, Platform Engineering, SRE, and other security stakeholders
  • Own the strategy, roadmap, and execution of CoreWeave’s Platform Security engineering program across Kubernetes and multi-cloud environments
  • Lead and develop a team of platform security engineers through mentorship, technical direction, and performance management
  • Design, build, and operate security controls for CoreWeave’s Kubernetes-based platform, including workload isolation, admission control, runtime policy enforcement, and tenant boundary integrity
  • Drive the security posture of CoreWeave’s third-party public cloud environments (AWS, GCP, Azure), including account governance, IAM hygiene, configuration baselines, and automated guardrails
  • Own and mature cloud security posture management (CSPM) capabilities, ensuring continuous visibility and automated remediation across all cloud environments
  • Build and operate image integrity and supply chain security controls, including image signing, provenance verification, and base image governance
  • Partner closely with Infrastructure and Platform Engineering to embed security into the Kubernetes control plane, admission pipelines, and deployment workflows
  • Collaborate with Security Operations on detection, investigation, and response for platform and cloud security incidents
  • Define engineering standards, guardrails, and metrics that scale platform security capabilities with the organization
  • Act as a senior escalation point for platform and cloud security risks, incidents, and complex cross-functional issues
  • You have experience designing and operating security controls across multiple public cloud platforms (AWS, GCP, Azure), including IAM, account governance, and configuration management
  • You communicate clearly and partner effectively across Infrastructure, Platform Engineering, SRE, and Security
  • You are comfortable owning ambiguous problem spaces and turning them into clear technical plans and outcomes
  • You have 5 to 10 or more years of experience in platform security, cloud security, infrastructure security, or adjacent security engineering domains
  • You bring strong hands-on depth in Kubernetes security, including admission control, RBAC, network policy, runtime security, and workload isolation patterns
  • You have 3 to 5 or more years of experience leading or managing engineers, either as a people manager or technical leader with people responsibility
  • You prefer building and operating systems over writing policy documents
  • Experience with CSPM platforms such as Wiz
  • Experience with infrastructure-as-code tooling, especially Terraform
  • Experience with container image signing and supply chain security tooling (Sigstore, Cosign, Chainguard)
  • Experience with admission control frameworks such as OPA Gatekeeper or Kyverno
  • Proficiency with automation or programming languages such as Go or Python
  • Experience securing multi-tenant Kubernetes enviro
Technology, Information And InternetSeries UnknownCloudKubernetes