Information Security Engineer, Bare Metal

FluidstackAustin, TX
$168,000 - $225,000

About The Position

Fluidstack is building civilization-scale infrastructure for AI, focusing on delivering massive amounts of compute faster than anyone else. The security team is responsible for securing this frontier, protecting the most valuable and targeted artifacts in technology: AI model weights. This role involves building the entire security program from scratch, covering bare metal to boardroom, as the company scales across continents. The threat surface is measured in gigawatts, and the responsibility includes the physical and logical security of critical AI development work.

Requirements

  • Worked in information security or infrastructure engineering with a strong focus on bare metal, IaaS, or high-scale cloud infrastructure.
  • Deep Linux hardening (SELinux, AppArmor, kernel-level security).
  • Command network security (TCP/IP, VPNs, firewall rulesets, zero-trust).
  • Implement encryption in practice, including disk-level (LUKS) and hardware-level.
  • Understand HSMs and trusted computing (TPM/TXT).
  • Automate fluently in Python, Go, or Rust, with configuration management (Ansible, Puppet, Chef).
  • Work well across engineering teams and communicate security decisions clearly.

Nice To Haves

  • BMC platforms (OpenBMC, iDRAC, iLO).
  • Hardware root of trust and secure boot.
  • Compliance standards (SOC 2, ISO 27001, FedRAMP).
  • CISSP, OSCP, or CEH.

Responsibilities

  • Own end-to-end security for every server in the bare metal fleet, from supply chain and provisioning through hardening, operation, and secure decommissioning.
  • Design and maintain hardened golden OS images with automated vulnerability scanning, patch pipelines, and configuration-drift detection.
  • Define and enforce the BMC security model (access control, credential rotation, audit logging, firmware integrity) for one of the most under-defended surfaces in the industry.
  • Partner with network engineering on micro-segmentation, IDS/IPS, and firewall architecture, applying zero-trust from the top-of-rack up.
  • Implement data-at-rest encryption, key management, and secure storage access at fleet scale, and build the automation that makes secure-by-default the path of least resistance.
  • Lead threat modeling and security reviews for new hardware platforms and network designs, and respond to incidents touching the physical fleet.

Benefits

  • Commitment to pay equity and transparency.
  • Equal Employment Opportunity Employer status.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service