C
CoreWeaveLivingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA
Security Engineering Manager (Platform Security)
On-siteFull Time$165k - $242k per yearPosted 3 days ago
About the role
- CoreWeave is the AI hyperscaler, operating infrastructure at a scale and level of complexity required to support the most demanding AI workloads in the world
- In this role, you will lead and scale CoreWeave’s Platform Security engineering function, owning how security is designed into the Kubernetes-based platform and public cloud environments
- This is a hands-on engineering leadership role focused on building and operating security controls, not writing policy
- You will define strategy and execution for cloud security posture, workload isolation, platform guardrails, image integrity, and multi-cloud security across CoreWeave’s own Kubernetes infrastructure and third-party cloud platforms including AWS, GCP, and Azure
- You will lead and grow a team of platform security engineers and partner closely with Infrastructure, Platform Engineering, SRE, and other security teams to ensure platform security capabilities scale alongside the business. T
- This role reports to the Senior Director of Security Foundations
- CoreWeave delivers GPU-accelerated infrastructure purpose-built to support the most demanding AI and machine learning workloads in the world
- Our platform is designed for extreme performance, scale, and reliability, supporting frontier AI development across a rapidly expanding global footprint
- As CoreWeave continues to scale, securing the platform layer that underpins customer workloads and internal services is a critical foundation for the business
- Platform Security at CoreWeave is an engineering discipline focused on building and operating systems that enforce security at the infrastructure layer across both our Kubernetes-based platform and third-party public cloud environments
- The team owns the technical design, implementation, and operation of cloud security posture management, workload isolation, platform-level guardrails, and image integrity controls
- This role is responsible for running, evolving, and operating CoreWeave’s Platform Security engineering program and team in close partnership with Infrastructure, Platform Engineering, SRE, and other security stakeholders
- Own the strategy, roadmap, and execution of CoreWeave’s Platform Security engineering program across Kubernetes and multi-cloud environments
- Lead and develop a team of platform security engineers through mentorship, technical direction, and performance management
- Design, build, and operate security controls for CoreWeave’s Kubernetes-based platform, including workload isolation, admission control, runtime policy enforcement, and tenant boundary integrity
- Drive the security posture of CoreWeave’s third-party public cloud environments (AWS, GCP, Azure), including account governance, IAM hygiene, configuration baselines, and automated guardrails
- Own and mature cloud security posture management (CSPM) capabilities, ensuring continuous visibility and automated remediation across all cloud environments
- Build and operate image integrity and supply chain security controls, including image signing, provenance verification, and base image governance
- Partner closely with Infrastructure and Platform Engineering to embed security into the Kubernetes control plane, admission pipelines, and deployment workflows
- Collaborate with Security Operations on detection, investigation, and response for platform and cloud security incidents
- Define engineering standards, guardrails, and metrics that scale platform security capabilities with the organization
- Act as a senior escalation point for platform and cloud security risks, incidents, and complex cross-functional issues
- You have experience designing and operating security controls across multiple public cloud platforms (AWS, GCP, Azure), including IAM, account governance, and configuration management
- You communicate clearly and partner effectively across Infrastructure, Platform Engineering, SRE, and Security
- You are comfortable owning ambiguous problem spaces and turning them into clear technical plans and outcomes
- You have 5 to 10 or more years of experience in platform security, cloud security, infrastructure security, or adjacent security engineering domains
- You bring strong hands-on depth in Kubernetes security, including admission control, RBAC, network policy, runtime security, and workload isolation patterns
- You have 3 to 5 or more years of experience leading or managing engineers, either as a people manager or technical leader with people responsibility
- You prefer building and operating systems over writing policy documents
- Experience with CSPM platforms such as Wiz
- Experience with infrastructure-as-code tooling, especially Terraform
- Experience with container image signing and supply chain security tooling (Sigstore, Cosign, Chainguard)
- Experience with admission control frameworks such as OPA Gatekeeper or Kyverno
- Proficiency with automation or programming languages such as Go or Python
- Experience securing multi-tenant Kubernetes enviro