Back to all jobs
N

Senior Staff Security Engineer - Network Security

nscaleoperationsukltd

AMER3d ago
Seniority
Staff

About the role

<p>Nscale is the GPU cloud engineered for AI. We provide cost-effective, high-performance infrastructure for AI start-ups and large enterprise customers. Nscale enables AI-focused companies to achieve superior results by reducing the complexity of AI development. Our GPU cloud bolsters technical capabilities and directly supports strategic business outcomes, including cost management, rapid innovation, and environmental responsibility.</p> <p>We thrive on a culture of relentless innovation, ownership, and accountability, where every team member takes pride in their work and drives it with excellence and urgency. As an Nscaler, you’ll build trust through openness and transparency, where everyone is inspired to do their best work. If you join our team, you’ll be contributing to building the technology that powers the future.</p> <h2><strong>About the Role</strong></h2> <p>We’re hiring a <strong>Staff Security Engineer - Network Security</strong> to define and implement the network security patterns that keep Nscale’s corporate, OT/BMS, production management, customer management, telemetry, and internet access paths separated, observable, and secure.</p> <p>This role sits at the intersection of <strong>security, infrastructure, facilities, IT, platform engineering, security operations, physical security, and third-party providers</strong>. You’ll work across data centers, colocation sites, office environments, and production management networks, reviewing designs before hardware and implementation decisions are locked and creating repeatable baselines that support fast deployment in real-world conditions.</p> <p>Your work will help Nscale avoid one-off network security decisions at each new site build. By establishing clear trust boundaries, segmentation patterns, and practical standards, you’ll enable the business to move quickly while reducing the risk of corporate networks becoming accidental privileged access zones and ensuring operational networks have the controls they need.</p> <h2><strong>What you'll be doing</strong></h2> <p><strong>Reference architecture and trust boundaries</strong></p> <ul> <li><strong>Define</strong> data center network security reference architecture across corporate internet access, OT/BMS, production management, customer management, telemetry, and site operations networks.</li> <li><strong>Establish</strong> trust-boundary decisions that determine which networks are untrusted, which are privileged, and which flows are explicitly required.</li> <li><strong>Translate</strong> network diagrams into trust boundaries, required flows, security controls, monitoring requirements, and risk decisions.</li> <li><strong>Create</strong> a clear policy position that corporate site networks provide internet access and do not become privileged access zones by default.</li> </ul> <p><strong>Segmentation, controls, and secure access</strong></p> <ul> <li><strong>Design</strong> segmentation patterns, firewall policy principles, routing controls, and network access control requirements for high-risk paths.</li> <li><strong>Define</strong> when network access control is required, optional, or unnecessary based on trust zone, user population, asset class, and operational risk.</li> <li><strong>Prevent</strong> fragile controls such as IP-based trust from replacing strong identity, device posture, application-layer authentication, and explicit authorization.</li> <li><strong>Specify</strong> requirements for local safety-critical telemetry paths where latency, availability, or physical operations make remote-only dependencies unacceptable.</li> </ul> <p><strong>Design review and deployment standards</strong></p> <ul> <li><strong>Review</strong> new data center, colocation, office, and site network designs before implementation choices are finalized.</li> <li><strong>Assess</strong> urgent network designs and identify decisions that must be approved, changed, or accepted with compensating controls.</li> <li><strong>Set</strong> security standards for third-party network providers, installation partners, managed service providers, and data center specialists.</li> <li><strong>Build</strong> reusable design checklists, diagrams, and decision records for future site builds.</li> </ul> <p><strong>Telemetry, monitoring, and cross-functional partnership</strong></p> <ul> <li><strong>Define</strong> network telemetry, logging, and detection requirements across corporate, OT/BMS, production management, and internet-edge paths.</li> <li><strong>Partner</strong> with Identity and Security Data to ensure network access depends on strong authentication and produces usable telemetry.</li> <li><strong>Collaborate</strong> with cross-functional teams to balance security, operational safety, availability, and deployment speed.</li> <li><strong>Support</strong> practical security decisions in environments with fast hardware timelines, incomplete designs, and third-party dependencies.</li> </ul> <h2><strong>KPIs</strong></h2> <ul> <li><strong>Current-state network trust-boundary map completed</strong></li> <li><strong>Minimum security baseline for new data center deployments defined</strong></li> <li><strong>Urgent network design reviews completed before implementation lock-in</strong></li> <li><strong>Usable network telemetry and logging coverage across key network domains</strong></li> </ul> <h2><strong>About You</strong></h2> <ul> <li><strong>8+ years</strong> of experience in network security, data center networking, infrastructure security, enterprise network engineering, or related engineering roles</li> <li>Deep hands-on experience with routing, switching, segmentation, firewalls, internet edge, WAN, remote access, wireless, and network troubleshooting</li> <li>Experience designing or reviewing secure networks across data centers, colocation sites, offices, production environments, or globally distributed infrastructure</li> <li>Experience securing OT, BMS, industrial, facilities, or other operational networks where safety, availability, and local control matter</li> <li>Strong understanding of zero-trust principles, identity-aware access, least privilege, explicit authorization, and the limits of network location-based trust</li> <li>Ability to translate network diagrams into trust boundaries, required flows, security controls, monitoring requirements, and risk decisions</li> <li>Ability to work effectively with infrastructure, facilities, IT, platform engineering, security operations, physical security, and third-party providers</li> <li>Experience building reusable network security standards, design review processes, and deployment gates</li> <li>Strong judgment in real-world environments with incomplete designs, urgent timelines, and complex trust-boundary decisions</li> <li>Preferred exposure to AI infrastructure, GPU clusters, high-performance computing, sovereign infrastructure, or hyperscale data center environments</li> </ul> <h2><strong>What we can offer you</strong></h2> <p>At Nscale, you'll find a collaborative, supportive, and innovative environment where your contributions spark real impact. We're building something extraordinary, and we want you at the core.</p> <p>Highly competitive US compensation package (base + bonus + equity), with performance reviews every 12 months. 🚀</p> <p>Join one of the fastest-growing AI infrastructure companies — your chance to directly shape how global AI capacity is planned and deployed. ✨</p> <p>Expect a dynamic progression plan tailored to your ambitions. Grow by leading critical cross-functional initiatives and shaping capital strategy — always with our full support.</p> <p>Human-First Flexibility: We treat you as humans first. 🫶🏽 Our flexible workplace trusts Nscalers to deliver, giving you the autonomy to shape your day around life's moments.</p> <h2><strong>Equal Opportunities Statement</strong></h2> <p>We strongly encourage applications from people of colour, the LGBTQ+ community, people with disabilities, neurodivergent people, parents, carers, and people from lower socio-economic backgrounds.</p> <p>If there’s anything we can do to accommodate your specific situation, please let us know.</p> <p>The responsibilities outlined in this job description are not exhaustive and are intended to provide a general overview of the position. The employee may be required to perform additional duties, tasks, and responsibilities as assigned by management, consistent with the skills and qualifications required for the role.</p> <p>For information on how Nscale handles candidate personal data, please see our Employee &amp; Candidate Privacy Notice: Here.</p> <h2><strong>Salary Range</strong></h2> <p>The range below reflects the base salary for the position. Actual compensation may vary based on job-related factors such as skill set, experience, education, and location. In addition to base salary, this role may be eligible for bonus, equity, and/or commission programs. Nscale may offer a competitive benefits package including medical, dental, vision, flexible paid time off, parental leave, and retirement plan participation.</p><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p>The range below reflects the base salary for the position. Actual compensation may vary based on job-related factors such as skill set, experience, education, and location. In addition to base salary, this role may be eligible for bonus, equity, and/or commission programs. Nscale may offer a competitive benefits package including medical, dental, vision, flexible paid time off, parental leave, and retirement plan participation.</p></div><div class="title">Salary Range</div><div class="pay-range"><span>$220,000</span><span class="divider">&mdash;</span><span>$280,000 USD</span></div></div></div><div class="content-conclusion"><p><em>For information on how Nscale handles candidate personal data, please see our Employee &amp; Candidate Privacy Notice:&nbsp;<a href="https://drive.google.com/file/d/1QK5Yg04WHD9K9IAtJgQWubJZC9oLvatK/view?usp=sharing" target="_blank" data-saferedirecturl="https://www.google.com/url?q=https://drive.google.com/file/d/1QK5Yg04WHD9K9IAtJgQWubJZC9oLvatK/view?usp%3Dsharing&amp;source=gmail&amp;ust=1765375172804000&amp;usg=AOvVaw2Ncte4rmlGl8OKuFuDgDtx">Here.</a></em></p></div>

Perks & benefits

  • Paid Time Off
  • Equity Compensation

741,000+ hidden jobs like this

nscaleoperationsukltd and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.

Everything Pro unlocks:

  • Unlimited applications — free stops at 5
  • Track every application in one place
  • Apply straight to the source, one click
  • Save & organize roles you love
  • Roles pulled from company boards before the big sites

Weekly

$9.99
$4.99/week

For an active search. Cancel anytime.

Most popular

Monthly

$24.99
$12.99/month

The smart pick. Save 35% vs weekly.

Lifetime

$99
$49.99once

Pay once. Every future feature, forever.