Staff Security Engineer, Network Security

Nscale•Seattle, WA
•$160,000 - $190,000•Hybrid

About The Position

Nscale is seeking a Staff Security Engineer - Network Security to define and implement network security patterns for Nscale's various network segments, including corporate, OT/BMS, production management, customer management, telemetry, and internet access paths. This role involves working across data centers, colocation sites, and office environments, reviewing designs, and establishing repeatable baselines to ensure security and efficiency. The goal is to prevent one-off security decisions, establish clear trust boundaries and segmentation patterns, and enable the business to move quickly while mitigating risks.

Requirements

  • 7+ years of experience in network security, data center networking, infrastructure security, enterprise network engineering, or related engineering roles
  • Deep hands-on experience with routing, switching, segmentation, firewalls, internet edge, WAN, remote access, wireless, and network troubleshooting
  • Experience designing or reviewing secure networks across data centers, colocation sites, offices, production environments, or globally distributed infrastructure
  • Experience securing OT, BMS, industrial, facilities, or other operational networks where safety, availability, and local control matter
  • Strong understanding of zero-trust principles, identity-aware access, least privilege, explicit authorization, and the limits of network location-based trust
  • Ability to translate network diagrams into trust boundaries, required flows, security controls, monitoring requirements, and risk decisions
  • Ability to work effectively with infrastructure, facilities, IT, platform engineering, security operations, physical security, and third-party providers
  • Experience building reusable network security standards, design review processes, and deployment gates
  • Strong judgment in real-world environments with incomplete designs, urgent timelines, and complex trust-boundary decisions

Nice To Haves

  • Preferred exposure to AI infrastructure, GPU clusters, high-performance computing, sovereign infrastructure, or hyperscale data center environments

Responsibilities

  • Define data center network security reference architecture across corporate internet access, OT/BMS, production management, customer management, telemetry, and site operations networks.
  • Establish trust-boundary decisions that determine which networks are untrusted, which are privileged, and which flows are explicitly required.
  • Translate network diagrams into trust boundaries, required flows, security controls, monitoring requirements, and risk decisions.
  • Create a clear policy position that corporate site networks provide internet access and do not become privileged access zones by default.
  • Design segmentation patterns, firewall policy principles, routing controls, and network access control requirements for high-risk paths.
  • Define when network access control is required, optional, or unnecessary based on trust zone, user population, asset class, and operational risk.
  • Prevent fragile controls such as IP-based trust from replacing strong identity, device posture, application-layer authentication, and explicit authorization.
  • Specify requirements for local safety-critical telemetry paths where latency, availability, or physical operations make remote-only dependencies unacceptable.
  • Review new data center, colocation, office, and site network designs before implementation choices are finalized.
  • Assess urgent network designs and identify decisions that must be approved, changed, or accepted with compensating controls.
  • Set security standards for third-party network providers, installation partners, managed service providers, and data center specialists.
  • Build reusable design checklists, diagrams, and decision records for future site builds.
  • Define network telemetry, logging, and detection requirements across corporate, OT/BMS, production management, and internet-edge paths.
  • Partner with Identity and Security Data to ensure network access depends on strong authentication and produces usable telemetry.
  • Collaborate with cross-functional teams to balance security, operational safety, availability, and deployment speed.
  • Support practical security decisions in environments with fast hardware timelines, incomplete designs, and third-party dependencies.

Benefits

  • Highly competitive US compensation package (base + bonus + equity)
  • Performance reviews every 12 months
  • Flexible workplace
  • Medical, dental, vision
  • Flexible paid time off
  • Parental leave
  • Retirement plan participation
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service