The Network Security team at Anthropic is responsible for securing cloud and on‑prem environments. As Engineering Manager, you will lead the team, set strategy, hire and develop engineers, partner with infrastructure and data center teams, and ensure secure‑by‑default networking across research, training, and production environments.
Software Engineering Manager, Network Security at Anthropic
Hybrid - San Francisco, CA; New York City, NY
More jobs at AnthropicSalary
USD 405,000 - 485,000
Requirements
Skills
- 8+ years of front line management experience
- Low ego, high empathy; built diverse teams and has former reports who would work for them again
- Experience managing infrastructure or security engineering teams, including hiring, developing, and managing senior and staff engineers
- Has grown engineers into staff or lead roles, and has made the call to move someone out when coaching didn’t work
- Kept a team intact and delivering through reorgs, charter changes, or leadership turnover
- Experience owning a security or infrastructure domain end to end: setting multi-year strategy, delivering year-long cross-organizational work with little direction, and answering to executives for its risk and tradeoffs
- Scaled a team and its systems together through hypergrowth, where last quarter’s architecture was already too small
- Hands‑on network security engineering in cloud and/or on‑prem environments: VPC design, interconnects, private service connectivity, cloud firewall policy, egress control, physical segmentation, and out‑of‑band/management‑plane security
- Threat modeling and risk assessment for networked systems, with the judgment to tell which controls reduce risk and which just look good on a diagram
- Secured Kubernetes networking at scale, or worked in high‑assurance environments where controls had to be evidenced, not just deployed
Responsibilities
- Own the network security roadmap: threat model from the management plane through Kubernetes and cloud interconnects, decide what to build, and deliver it
- Reason about the design and implementation of default‑deny ingress and egress, segmentation between research, training, and production, private connectivity, and mTLS/service identity across every environment
- Ship these as secure‑by‑default primitives so new clusters, VPCs, and data center links inherit the right boundaries without security on the critical path
- Join networking, cluster, and data center teams at design time so topology, routing, and firewall decisions carry our invariants from day one
- Build visibility into traffic and boundary drift, with detection for exfiltration paths and automated remediation where safe
- Own the network security evidence for our security goals and compliance: the invariants hold, and you can prove it
- Hire, grow, and retain senior security software engineers; own their career development, and set the practices the team runs on as it scales
Technologies
KubernetesVPC designCloud interconnectsPrivate service connectivityCloud firewall policyEgress controlPhysical segmentationOut‑of‑band/management‑plane securityThreat modelingRisk assessmentCloud networkingOn‑prem networking
See if your resume is ready for this job
See how our AI can optimize your resume and improve your chances for this role.