Staff Software Security Engineer
Anthropic · London, UK · Security · listed December 11, 2025
The shape of it
Seniority
Staff
Experience asked
8–15 years
Where
Hybrid
Requirements listed
10
Length
1,128 words
In the posting’s own words
The Security Engineering team's mission is to safeguard our AI systems and maintain the trust of our users and society at large. Whether we're developing critical security infrastructure, building secure development practices, or partnering with our research and product teams, we are committed to operating as a world-class security organization and keeping the safety and trust of our users at the forefront of everything we do.
What it asks for · 10
- Have 8-15+ years of software engineering experience implementing and maintaining critical systems at scale
- Strong software engineering skills in Python or at least one systems language (Go, Rust, C/C++)
- Experience implementing and operating critical systems at scale using DevOps and cloud automation practices such as infrastructure as code
- Hands-on network security engineering in cloud or on-prem environments, for example VPC design, cloud firewall policy, egress control, private service connectivity or network segmentation
- Working knowledge of Kubernetes security and networking, including network policy, service identity and container hardening
- Experience with threat modeling and risk assessment for networked and multi cloud systems
- Track record of driving engineering excellence through high standards, constructive code reviews and mentorship
- Clear communicator who can translate technical concepts across organizational levels and bring clarity and ownership to ambiguous technical problems
- Low ego, high empathy engineer who attracts talent and supports diverse, inclusive teams
- Experience supporting fast-paced startup engineering teams
Also a plus
- Secured Kubernetes networking at scale (CNI, network policy, service mesh or mTLS rollouts) or worked in high-assurance environments where controls had to be evidenced, not just deployed
- Worked on interconnects and private connectivity between cloud providers and physical data centers, including management-plane and out-of-band network security
- Built network traffic visibility or exfiltration detection systems
- Exposure to large-scale distributed training and what it demands of a network
- Led cross-functional security initiatives and navigated complex organizational dynamics
- Managing infrastructure through automated configuration and policy enforcement
- Hardening containerized applications and enforcing security policies
What the job covers
- Build security for large-scale AI clusters across multiple clouds and bare-metal data centers, including IAM, network segmentation and encryption controls
- Design and implement network security controls: default-deny ingress and egress, segmentation between research, training and production environments, private connectivity across clouds and data centers, cloud firewall policy and mTLS with service identity
- Ship these controls as secure defaults using infrastructure as code and GitOps workflows, so new clusters, VPCs and data center links inherit the right boundaries
- Build visibility into network traffic and boundary drift, with detection for exfiltration paths and automated remediation where it is safe to do so
- Design secure-by-design development workflows and CI/CD pipelines across our services, with expertise in Kubernetes security, container orchestration and identity management
- Threat model and assess risk for complex multi cloud and networked environments, and join infrastructure networking, cluster and data center teams at design time so topology, routing and firewall decisions carry our security requirements from day one
- Mentor engineers and contribute to hiring and growth of the Security team
Tools and skills named
Security & compliance
- Security13×
- IAM
- Threat modeling
Cloud & infra
- Kubernetes3×
- CI/CD
Languages
- C++
- Go
- Python
- Rust
Ways of working
- Code review
- Cross-functional
- Mentorship
Words the posting leans on
- security13×
- network10×
- cloud9×
- engineering6×
- systems6×
- controls5×
- experience5×
- infrastructure5×
- policy5×
- service5×
- design4×
- clusters3×
- data centers3×
- network security3×
- networking3×
- automated2×
Counted from the posting after the mission statement and the legal notices are set aside. The ones near the top are the ones a screener is looking for.
The posting, your resume, and the gaps between them. One click loads all three.
More open at Anthropic
- Account Executive, AI NativeNew York City, NY; San Francisco, CA | New York City, NY
- Account Executive - DNBSingapore
- Account Executive - Public Sector (ASEAN)Singapore
- Account Executive, StartupsSan Francisco, CA | New York City, NY
- Accounting, Revenue Internal ControlsSan Francisco, CA | Seattle, WA
- Administrative Business Partner, GTMSan Francisco, CA