Staff Software Security Engineer at Anthropic

Hybrid - London, UK

Apply
More jobs at Anthropic

The Security Engineering team’s mission is to safeguard Anthropic’s AI systems and maintain the trust of our users and society at large. Join us to develop critical security infrastructure, build secure development practices, and partner with research and product teams to operate as a world‑class security organization.

Salary

GBP 255,000 - 325,000

Requirements

Skills

  • 8-15+ years of software engineering experience implementing and maintaining critical systems at scale
  • Strong software engineering skills in Python or at least one systems language (Go, Rust, C/C++)
  • Experience implementing and operating critical systems at scale using DevOps and cloud automation practices such as infrastructure as code
  • Hands-on network security engineering in cloud or on-prem environments (e.g., VPC design, cloud firewall policy, egress control, private service connectivity, or network segmentation)
  • Working knowledge of Kubernetes security and networking (including network policy, service identity, and container hardening)
  • Experience with threat modeling and risk assessment for networked and multi-cloud systems
  • Track record of driving engineering excellence through high standards, constructive code reviews, and mentorship
  • Clear communicator who can translate technical concepts across organizational levels
  • Low ego, high empathy engineer who attracts talent and supports diverse, inclusive teams
  • Experience supporting fast-paced startup engineering teams
  • Bachelor’s degree or an equivalent combination of education, training, and/or experience

Responsibilities

  • Build security for large-scale AI clusters across multiple clouds and bare-metal data centers, including IAM, network segmentation, and encryption controls
  • Design and implement network security controls: default-deny ingress and egress, segmentation between research, training and production environments, private connectivity across clouds and data centers, cloud firewall policy and mTLS with service identity
  • Ship these controls as secure defaults using infrastructure as code and GitOps workflows, so new clusters, VPCs and data center links inherit the right boundaries
  • Build visibility into network traffic and boundary drift, with detection for exfiltration paths and automated remediation where it is safe to do so
  • Design secure-by-design development workflows and CI/CD pipelines across our services, with expertise in Kubernetes security, container orchestration and identity management
  • Threat model and assess risk for complex multi-cloud and networked environments, and join infrastructure networking, cluster and data center teams at design time so topology, routing and firewall decisions carry our security requirements from day one
  • Mentor engineers and contribute to hiring and growth of the Security team

Technologies

PythonGoRustC/C++IAMNetwork segmentationEncryption controlsNetwork security controlsDefault-deny ingress and egressPrivate connectivityCloud firewall policymTLS with service identityInfrastructure as codeGitOps workflowsKubernetes securityContainer orchestrationIdentity managementNetwork policyService identityContainer hardeningThreat modelingRisk assessmentCI/CD pipelines

See if your resume is ready for this job

See how our AI can optimize your resume and improve your chances for this role.