SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
xAI is seeking an Infrastructure Security Engineer to join its security team. The role focuses on designing, implementing, and maintaining secure cloud and hybrid infrastructure across multi-cloud environments, including platforms such as SpaceXAI, X Social, and X Money. You will operate with an automation-first mindset, building secure foundations and hardening platforms at scale while partnering closely with engineering teams to embed security into how systems are built and run.
Key responsibilities span three areas:
Cloud & Infrastructure Security: Design and implement secure cloud architectures across AWS, GCP, and Azure. Build and secure mission-critical applications in hybrid cloud and on-premises environments. Develop and maintain Infrastructure as Code (IaC) templates with embedded security controls. Assist with regular security assessments and audits. Implement and manage cloud security tools (CSPM, CWPP, CASB). Manage identities and roles across cloud and hybrid environments. Monitor and remediate infrastructure to comply with regulations (PCI, NIST CSF, GDPR, HIPAA).
Platform, Containers & Developer Enablement: Design and implement secure container standards and automation that enable frictionless developer workflows. Maintain Kubernetes security aligned with best practices. Collaborate with development teams to integrate security into CI/CD pipelines. Secure and enhance CI/CD pipelines; integrate and maintain code scanning platforms.
Detection, Operations & Tooling: Monitor and respond to security events and incidents in cloud and hybrid environments. Maintain SIEM data pipelines for reliable alerting. Build, deploy, and maintain security operations infrastructure using Python, Terraform, and configuration management tools like Puppet. Develop dashboards and alerts from security metrics. Develop and maintain cloud security policies, standards, and procedures. Own security projects end to end. Stay current with emerging cloud security threats.
The company operates with a flat organizational structure where all employees are expected to be hands-on and contribute directly to the mission. Strong communication skills, work ethic, and prioritization are essential.
REQUIREMENTS:
- Bachelor's degree in Computer Science, Cybersecurity, or related field
- 3–5 years of experience in cloud security, infrastructure security, or related roles
- Strong understanding of cloud security principles, compliance frameworks, and best practices
- Proficiency in at least one cloud platform (AWS, GCP, or Azure) and associated security services
- Proven experience securing hybrid AWS/on-premises or multi-cloud environments, including IAM and security posture
- Experience with Infrastructure as Code tools (Terraform, CloudFormation)
- Familiarity with containerization technologies and their security implications
- Knowledge of network security concepts and protocols
- Experience with scripting languages (Python, Bash) for automation and tool development
- Proactive mindset with strong ownership, critical thinking, and problem-solving skills
- Located in EU/UK or willing to relocate
PREFERRED SKILLS:
- Relevant security certifications (CCSP, CSSK, AWS Security Specialty)
- Deep expertise in Kubernetes and container security
- Experience with multi-cloud environments and cloud-to-cloud security
- Knowledge of CI/CD best practices and tools
- Familiarity with regulatory compliance (GDPR, HIPAA, PCI DSS, NIST CSF)
- Strong proficiency with Python, Terraform, and configuration management (Puppet)
- Hands-on experience building GitHub Actions and workflows
- Experience with observability and security operations tooling (Prometheus, Grafana, CloudWatch, Wazuh)
- Experience building custom cloud security tools or integrations
- Interest in leveraging AI for cloud security monitoring and automation
- Contributions to open-source cloud security projects
- Experience securing AI/ML workloads in cloud environments
- Experience in banking, money transmission, P2P payments, or similarly regulated financial platforms