SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 200,000 - 350,000 / annual
Goodfire is an AI interpretability research lab building interpretability agents and infrastructure to understand, monitor, and align AI models. Founded by researchers from OpenAI and Google DeepMind, the company has raised over $200M and is headquartered in San Francisco.
You will be Goodfire's first security hire, owning all IT and physical security operations. This is a foundational, hands-on role where you'll define what security looks like for an AI research lab while protecting the company against sophisticated, fast-evolving threats unique to AI development environments. You'll work closely with research, engineering, and operations teams to balance security with the pace of a fast-moving organization.
Key responsibilities include:
- Identity and access management: MFA, SSO, account lifecycle, and device trust
- Endpoint security: device management, EDR, hardening, and patching
- AI agent and untrusted code containment: limiting what they can access from laptops, accounts, and cloud infrastructure
- Compliance and customer trust: SOC 2 audits, vendor reviews, and customer security questionnaires
- Incident response, physical security, and network management for the San Francisco office
The role requires hands-on ownership across all security domains, from the unglamorous operational work to strategic threat modeling. You'll be expected to own anything security-related yourself, big or small, and understand how threat models are evolving in the context of AI development.
The company operates in-person 5 days a week from San Francisco HQ, with one company-wide remote week per month.
REQUIREMENTS:
Required:
- 5+ years in IT security or security engineering with hands-on ownership of identity, endpoints, and corporate systems
- Experience running SOC 2 audits and enterprise customer security reviews
- Strong grasp of AI security, particularly how AI agents change the threat model
- Willingness and humility to own anything security-related yourself, big or small
Preferred:
- Physical security experience: access control systems and facility security
- Experience at an early-stage startup or building a security program from scratch
- Experience at an AI lab or with ML research environments
- Familiarity with securing cloud infrastructure and CI/CD pipelines