Jobs · Engineering · California

Engineering Manager, Hardware Platform Security

Anthropic · San Francisco, CA · Yesterday
HybridEngineering$485k–$625k/yrFull-time

Key Responsibilities

  • Lead and grow the platform security engineering group: hiring, onboarding, development, performance, and prioritization for full-time engineers, and coordination of contractor and vendor engineers working alongside them
  • Own the platform security roadmap and its delivery: hardware root of trust and attestation, secure and measured boot across CPU, BMC, accelerator, and peripheral firmware, OS and kernel hardening, and the host-side pipeline that turns attestation evidence into production gates
  • Own the firmware supply chain posture for the fleet: SBOM and reference integrity manifests, authenticated update, rollback protection, and the vendor relationships needed to get fixes shipped
  • Drive platform risk assessments for new compute platforms and providers, and make evidence-based go/no-go recommendations with bounded risk rather than perfect-or-nothing gates
  • Partner with infrastructure, fleet, compute, and detection and response teams so that platform controls land in production without degrading training or inference performance
  • Manage relationships with silicon vendors, OEMs, and compute providers: security requirements, vulnerability management, disclosure and remediation timelines, and upstream and standards-body engagement (TCG, OCP, IETF)
  • Run the team's operating rhythm: design reviews, threat models, incident participation for platform-layer issues, and clear written status to security and infrastructure leadership

Minimum Qualifications

  • Have 10+ years in systems security, with at least 5 years focused on firmware, hardware, or OS-level security
  • Have 5+ years as a people manager of security or systems engineers, including hiring and developing senior and staff-level engineers
  • Can go from architecture to implementation detail with your engineers: secure boot, measured boot, TPM and other roots of trust, attestation protocols (SPDM, DICE, remote attestation), UEFI and BMC firmware, and Linux kernel and OS hardening
  • Have owned a technical roadmap end to end, including the prioritization calls when security, performance, and delivery timelines conflict
  • Write clearly: design reviews, risk assessments, and status for executives are part of the job
  • Be comfortable building a team and its processes from an early stage, with a scope that is broader than the headcount

Preferred Qualifications

  • Experience managing a mixed team of full-time engineers, contractors, and vendor engineers while keeping design authority in-house
  • A hands-on background in OpenBMC or other server management firmware, DRTM or secure launch, or confidential computing primitives (TDX, SEV-SNP, ARM CCA)
  • A record of upstream contributions or maintainership in Linux, OpenBMC, or a comparable community, or standing in TCG, UEFI Forum, or OCP
  • Experience securing large-scale HPC or AI training infrastructure
  • Firmware vulnerability research, reverse engineering, or fuzzing background

Similar jobs