Full-Time

Member of Technical Staff

Secure Infrastructure and Platform

Security Level 5

Security Level 5

1-10 employees

Develops frontier AI security standards

Compensation Overview

$200k - $350k/yr

+ 401(k) match

San Francisco, CA, USA

In Person

In-person in the Bay Area.

Category
DevOps & Infrastructure (1)
Required Skills
Computer Networking

Get referred to Security Level 5

See people who can refer or advise you

Requirements
  • At least 5 years of experience building and operating production infrastructure at scale, such as cloud platforms, site reliability engineering, datacenter infrastructure, or machine-learning infrastructure, ideally including graphics processing unit or accelerator fleets.
  • Alternatively, at least 2 years of experience building and stress-testing training infrastructure at a frontier artificial intelligence lab.
  • Experience with secure boot, attestation, code signing, key management, image and build pipelines, and network segmentation.
  • Experience working in, or the ability to clearly reason about, environments without internet access where hosts cannot be trusted, such as air-gapped or classified environments.
  • Ability to communicate clearly with technical and non-technical stakeholders, including machine-learning researchers.
Responsibilities
  • Design and stand up the SL5 prototype compute platform, including setting up racks, configuring networks and device security policy and attestation, imaging, enrollment, and the build server.
  • Implement deny-all, permit-by-exception execution without live internet access, including measured boot, signed host images, allow-list enforcement, and the pipeline used to build and sign images and updates.
  • Make the platform fast and usable for researchers despite the security constraints, and reshape workflows where cloud-native practices do not work in an air-gapped environment.
  • Co-develop the relevant infrastructure and machine-security sections of the SL5 standard with laboratories and government stakeholders.
  • Publish research for technical and policy audiences with appropriate sensitivity.
Desired Qualifications
  • Experience with confidential computing, trusted execution environments, or accelerator security features such as memory isolation, interconnect encryption, and attestation.
  • Experience running air-gapped, classified, or other high-side environments, or building cross-domain or data-diode transfer systems.
  • Existing security clearances or clearance eligibility.
  • Experience shipping infrastructure when speed and security were in direct tension.

SL5 Task Force is a nonprofit that develops practical security standards to protect frontier AI from nation-state threats. It creates the SL5 Standard, an overlay to existing frameworks (like NIST SP 800-53 and ICD 705) that provides technical controls and implementation guidance, delivered through two tracks: an Executive Track for decision-makers and a Technical Track for security researchers, with working groups on machine, network, physical, personnel, and supply chain security. The organization differentiates itself through a multistakeholder approach that includes AI labs, national security leaders, data center operators, and chip providers, and by offering an actionable roadmap that bridges current practices with higher-security measures and threat modeling, prototyping, and cost-benefit analyses (e.g., Project MoAT and AI705). Its goal is to achieve nation-state grade protection for frontier AI and to build a functional prototype datacenter with leading AI labs by 2026.

Company Size

1-10

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to Security Level 5

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Lisa Thiergart released SL5 Standard v0.1 in March 2026 with 60 controls.
  • NIST workshop agendas in July 2026 featured SL5 and AI705, signaling institutional traction.
  • IST's 2025 annual report credits Coefficient Giving and over 100 contributors for SL5.

What critics are saying

  • No organization has achieved SL5, and RAND said current tools fail it.
  • SL5 depends on frontier labs adopting costly facility and procurement changes by 2028/2029.
  • A nation-state model-weight theft before adoption destroys SL5's relevance and exposes existential loss.

What makes Security Level 5 unique

  • SL5 combines NIST SP 800-53, NIST 800-161, and ICD 705 for frontier AI.
  • It convenes 50-plus participants across executive and technical tracks, including labs and national security.
  • Project MoAT builds a 1-2 MW mock datacenter to test controls before deployment.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

401(k) Company Match