Member of Technical Staff — Security Engineering

causal· Infrastructure
Apply Now ↗
📍 San FranciscoFullTime

About this role

Our mission is general causal intelligence; AI that is capable of (1) predicting the future and (2) identifying the actions to alter it.

To achieve this breakthrough, we are building a Large Physics foundation Model (LPM) because physical systems, unlike text or images, are governed by verifiable cause and effect. We believe that scaling on physics will enable an understanding of causality required to predict and control physical systems, starting with weather.

Our founding team has built and deployed AI against the physical world in robotics, drug discovery, and particle physics at institutions like DeepMind, Waymo, Cruise, Insitro, Nabla Bio, and CERN.

About Security at Causal Labs

As we build and deploy our Large Physics Model, we operate an environment that spans petabytes of continuous physical observations, massive distributed GPU clusters, and high-stakes customer deployments.

Your mission is to design and operate the security posture across our entire engineering stack. You will ensure our research environments, proprietary model weights, software infrastructure, and customer integrations remain secure, all while maintaining the rapid iteration and engineering velocity our researchers need.

Responsibilities

  • Enterprise Infrastructure & Cloud Isolation: Architect secure network perimeters, private data transmission channels (e.g., PrivateLink, VPNs), and isolated single/multi-tenant storage environments. Implement access controls and customer-managed encryption (KMS/BYOK) across petabyte-scale data stores.

  • Model IP & Weight Protection: Design zero-trust boundaries, encrypted storage, and secure execution environments to protect proprietary foundation model weights and checkpoints against exfiltration during storage, distributed multi-node training, and serving.

  • Pipeline Integrity & AI Threat Defense: Secure our data ingestion pipelines against tampering and data poisoning. Threat-model and defend against AI-specific vulnerabilities, including adversarial inputs, model extraction attacks, and data memorization/regurgitation risks using output guardrails and privacy-preserving techniques.

  • Enterprise Auth & Governance: Own enterprise identity federation (SAML 2.0/OIDC with Okta, Entra ID) and machine-to-machine authentication (mTLS). Implement immutable audit logging, cryptographic erasure, and compliance controls required for enterprise CISOs and SOC 2 / FedRAMP environments.

  • Security Engineering & SDLC: Partner with Infrastructure, Research, and Forward Deployed teams to build automated security testing, threat detection, and vulnerability scanning directly into our deployment workflows, orchestrators (Kubernetes, Slurm), and customer-facing APIs.

What we're looking for

  • Demonstrated Hands-on Security Engineering: Proven track record building and securing production systems in cloud environments (AWS, GCP, or Azure) or large-scale distributed systems. Practical mastery of core primitives: IAM, network perimeters, KMS/encryption, and secrets management.

  • Strong Systems & Software Background: Hands-on experience with Linux systems, networking, container security (Docker, Kubernetes), Infrastructure-as-Code (Terraform or Pulumi), and proficiency in languages like Python, Go, or Rust.

  • Understanding of ML Platform Security: Practical grasp of the security challenges unique to ML platforms—protecting high-value model weights, securing distributed training pipelines, data lineage/poisoning, and AI-specific threat vectors.

  • Adaptable & High Agency: Comfort conducting architectural security reviews, digging into complex distributed systems, and adapting fast to new technical constraints or bespoke enterprise customer environments.

  • Bias Toward Real-World Impact: Pragmatic mindset—delivering security solutions that actually work for users under pressure, balancing rigor with engineering velocity.

  • End-to-End Ownership: Ability to take deliverables autonomously from initial threat modeling and requirements all the way through execution, deployment, and monitoring.

Frequently Asked Questions

Is the salary disclosed for the Member of Technical Staff — Security Engineering position at causal?
The salary for this Member of Technical Staff — Security Engineering role at causal is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Member of Technical Staff — Security Engineering position at causal located?
This Member of Technical Staff — Security Engineering role at causal is based in San Francisco. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Member of Technical Staff — Security Engineering role at causal full-time or part-time?
This is listed as a FullTime position. It is posted as a Member of Technical Staff — Security Engineering role in the Infrastructure department at causal.
Which team or department does the Member of Technical Staff — Security Engineering at causal belong to?
This Member of Technical Staff — Security Engineering position is part of the Infrastructure department at causal. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Member of Technical Staff — Security Engineering position at causal?
Click the "Apply Now" button on this page. You will be redirected to causal's official application portal hosted on ashby where you can submit your application directly.
When was the Member of Technical Staff — Security Engineering job at causal posted?
This Member of Technical Staff — Security Engineering position at causal was posted on Jul 30, 2026. Apply as soon as possible — early applications are often reviewed first.
Member of Technical Staff — Security Engineering
causal
Apply for this role ↗

You'll be redirected to causal's official application page on Ashby ATS.