This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Crusoe is building the infrastructure for the next era of AI and high-performance computing; and we're looking for someone to make sure it's built securely from the ground up. As part of the Product Security team, you won't just be securing the future, you'll be building it, working closely with engineering teams, shipping production code, designing secure architectures, and creating the security foundations that protect our platform at scale. This is a high-impact role where you'll shape how security is practiced across the company, not by saying "no," but by making the secure path the easy path. We're seeking a Senior Product Security Software Engineer who is first and foremost a skilled software engineer with AI expertise. You'll design secure systems, build security controls that integrate seamlessly into developer workflows, and help raise the security bar across our AI infrastructure and distributed systems, all while maintaining a pragmatic, delivery-focused mindset.
Job Responsibility:
Design and build secure frameworks and patterns for high-performance AI workflows, agents, and models to protect our clients
Create reusable security patterns for product microservices, focusing on service-to-service authorization, API security, and multi-tenant data isolation that scales across product lines
Create developer-facing tools and automation that catch security issues early in the development cycle without slowing teams down
Perform security reviews, penetration tests, code reviews, and system design reviews for Crusoe’s fleet of SaaS offerings
Requirements:
7+ years of experience shipping production software with strong system design skills
Deep expertise in Golang and Node.js/JavaScript, with experience building and debugging distributed systems
Hands-on experience securing gRPC services, REST APIs, and microservice architectures
Strong background implementing authentication and authorization systems using OAuth2, OIDC, SAML, JWT, and RBAC/ABAC models
Production experience with application security tooling (SAST, DAST, SCA) and CI/CD integration (e.g., Semgrep, OWASP ZAP, Burp, GitLab)
Knowledge of runtime application security and observability tools
Solid understanding of cloud-native and containerized environments (Docker, Kubernetes) and network security fundamentals
Strong grasp of OWASP Top 10, secure coding practices, cryptography, and secure design principles
Nice to have:
Experience building reusable security frameworks or internal developer platforms
Background in platform or infrastructure-adjacent security engineering
Experience influencing security practices across multiple engineering teams
Familiarity with supply chain security and dependency risk management
What we offer:
Restricted Stock Units in a fast growing, well-funded technology company
Health insurance package options that include HDHP and PPO, vision, and dental for you and your dependents
Employer contributions to HSA accounts
Paid Parental Leave
Paid life insurance, short-term and long-term disability