Security Engineer, Host Assurance

OpenAI
San Francisco, Seattle
Workplace: HybridFull timeUSD 293,000 - 385,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Problem-solving","Communication","Collaboration","Adaptability","Critical thinking"]

A hands-on security engineering role focused on building and operating the Host Assurance platform to establish trust in bare-metal hosts across OpenAI’s global infrastructure. You’ll work across hardware, firmware, and software boundaries to ensure secure bootstrap, attestation, and measurable trust while enabling scalable production deployments.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
OpenAI
OpenAI
5 months ago

Security Engineer, Host Assurance

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 10 hours agoStatus: Live

Job Summary

A hands-on security engineering role focused on building and operating the Host Assurance platform to establish trust in bare-metal hosts across OpenAI’s global infrastructure. You’ll work across hardware, firmware, and software boundaries to ensure secure bootstrap, attestation, and measurable trust while enabling scalable production deployments.
Location: San Francisco, Seattle
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Design, build, and operate components of the Host Assurance platform that establish trust in bare-metal hosts before they are eligible for production use.
  • •Help ensure hosts are verifiably trustworthy from delivery and installation through secure bootstrap and readiness to join orchestration systems.
  • •Build and improve systems such as machine identity, certificate issuance and enrollment, HSM-backed or key-management-backed trust services, host attestation, measurement, and baseline verification tooling.
  • •Validate delivered hardware and firmware against vendor claims and continuously detect and manage drift over time.
  • •Eliminate insecure bootstrap patterns while preserving deployment throughput and operational reliability; partner with provisioning, fleet, and orchestration teams to deliver paved paths where the secure approach is the easiest approach.

Pay and Benefits

Salary: USD 293,000 - 385,000 annually
Equity and Bonus:Equity

Key Requirements

  • •5+ years of software engineering experience building and operating reliable production systems at scale.
  • •Deep expertise in PKI, HSMs, machine identity, applied cryptography, secure boot, firmware or hardware security, host attestation, or low-level platform security.
  • •Comfortable working across systems boundaries, from services and APIs down to host, boot, firmware, or hardware-adjacent trust mechanisms.
  • •Ability to write production-quality code and reason clearly about failure modes, operational safety, and long-term maintainability.
  • •Experience replacing fragile or manual security mechanisms with durable, paved-path infrastructure.
Experience:5+ yearsSecurityHardwareCloudInfrastructure
Skills:Problem-solvingCommunicationCollaborationAdaptabilityCritical thinking
Tech Stack:PKIHSMFirmwareSecure bootHost attestationCryptography

Company Brief

OpenAI
Develops and deploys advanced generative AI models (including ChatGPT and DALL·E) and AI infrastructure, providing APIs and consumer products to accelerate safe AGI for broad benefit.
Industry: AI & Machine Learning
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Scaleup
Valuation: Hectocorn (USD 100B+)
Funding: Series E+
Headquarters: San Francisco, United States
Founded: 2015
Glassdoor
Glassdoor: 4.4
WebsiteLinkedInGlassdoor