Staff Security Engineer, Network Security

Core WeaveNew York, NY
31d$188,000 - $275,000Hybrid

About The Position

CoreWeave is The Essential Cloud for AI. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at www.coreweave.com. We are seeking a Staff Network Security Engineer to architect the defense of our global backbone, edge, and massive-scale GPU clusters. We are looking for a builder, not an administrator. You will move beyond "configuring firewalls" to engineering security into the network fabric itself-utilizing telemetry, automation, and deep protocol On this team, you will: Unravel and tackle network security challenges at an exhilarating global scale. Collaborate with exceptional network architects and engineers building the backbone infrastructure for the AI revolution. Enjoy the freedom and support to experiment, innovate, and significantly shape our approach to securing the underlay and overlay of our cloud. About the role: In this role, you will: Conducting architecture reviews, protocol analysis, and design assessments to proactively identify and fix vulnerabilities in our backbone and data center fabrics. Developing robust, repeatable frameworks for network security automation (CoPP, ACL generation, Route Filtering) that make it easy for teams to build securely from day one. Collaborating closely with Network Engineering teams to integrate security checks and validation seamlessly into their CI/CD and config-push pipelines. Crafting clear, practical security guidance and documentation that empowers engineers to deploy secure routing policies and topologies. Actively participating in architectural discussions regarding peering, transit, and traffic engineering, providing insightful security recommendations. Occasionally, 'drawing the owl' - figuring out innovative solutions for securing massive throughput environments while navigating ambiguous situations.

Requirements

  • 7+ years of experience directly focused on Network Engineering, Infrastructure Security, or ISP/Backbone operations.
  • Strong skills in core network protocols (BGP, OSPF/IS-IS, TCP/IP) and deep knowledge of how they function at the packet level.
  • Solid experience developing network automation or security tooling in Go, Python, or similar modern languages.
  • Proven experience collaborating with network architects to implement secure designs in multi-vendor environments (Arista EOS, SONiC, Juniper, etc.).
  • Excellent ability to negotiate and reach consensus with engineers and fellow security practitioners, as well as excellent technical documentation skills.
  • Familiarity with Linux networking internals, control plane protection, and managing infrastructure as code.

Nice To Haves

  • Hands-on experience with hyperscale network architectures (CLOS fabrics, MPLS/EVPN, VXLAN) and the unique security challenges of high-performance computing.
  • Familiarity with hardware-level networking security (SmartNICs/DPUs, connectX) and flow-based telemetry analysis.
  • Deep understanding of internet routing security standards (RPKI, MANRS) and advanced DDoS mitigation strategies at the network layer.
  • Hands-on experience with Infiniband and RoCE

Responsibilities

  • Conducting architecture reviews, protocol analysis, and design assessments to proactively identify and fix vulnerabilities in our backbone and data center fabrics.
  • Developing robust, repeatable frameworks for network security automation (CoPP, ACL generation, Route Filtering) that make it easy for teams to build securely from day one.
  • Collaborating closely with Network Engineering teams to integrate security checks and validation seamlessly into their CI/CD and config-push pipelines.
  • Crafting clear, practical security guidance and documentation that empowers engineers to deploy secure routing policies and topologies.
  • Actively participating in architectural discussions regarding peering, transit, and traffic engineering, providing insightful security recommendations.
  • Occasionally, 'drawing the owl' - figuring out innovative solutions for securing massive throughput environments while navigating ambiguous situations.

Benefits

  • Medical, dental, and vision insurance - 100% paid for by CoreWeave
  • Company-paid Life Insurance
  • Voluntary supplemental life insurance
  • Short and long-term disability insurance
  • Flexible Spending Account
  • Health Savings Account
  • Tuition Reimbursement
  • Ability to Participate in Employee Stock Purchase Program (ESPP)
  • Mental Wellness Benefits through Spring Health
  • Family-Forming support provided by Carrot
  • Paid Parental Leave
  • Flexible, full-service childcare support with Kinside
  • 401(k) with a generous employer match
  • Flexible PTO
  • Catered lunch each day in our office and data center locations
  • A casual work environment
  • A work culture focused on innovative disruption

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Industry

Professional, Scientific, and Technical Services

Education Level

No Education Listed

Number of Employees

501-1,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service