Software Supply Chain Security Engineer
Operations · Full-time
Sunnyvale, CA, USA
Cerebras Systems builds the world's largest AI chip, 56 times larger than GPUs. This architecture allows Cerebras to deliver industry-leading training and inference speeds; over 10 times faster than GPU-based hyperscale cloud inference services.
This order of magnitude increase in speed is transforming the user experience of AI applications, unlocking real-time iteration and increasing intelligence via additional agentic computation.
Cerebras works with the leading model labs, global enterprises, and cutting-edge AI-native startups. OpenAI recently announced a multi-year partnership with Cerebras, to deploy 750 megawatts of scale, transforming key workloads with ultra high-speed inference.
Cerebras is seeking a Software Supply Chain Security Engineer to help build a secure foundation for our build and development workflows.
In this role you will be responsible for assessing and hardening every layer of our source to artifact pipeline, from how we store and manage code to what we deploy into our clusters.
The ideal candidate brings a combination of wide breadth of knowledge on a variety of software supply chain topics throughout the whole SDLC process, a pragmatic and results-driven outlook on security, and the flexibility and attention to detail to work in a fast-paced development environment without compromising our security standards.
Responsibilities
Define core security requirements for artifact build pipelines including maturing SLSA processes, and see them through from ideation to implementation
Partner with platform, infrastructure, networking, and hardware teams to identify supply chain gaps and deliver end-to-end solutions for ensuring confidence in CI/CD artifacts
Develop threat models for each layer of the build and deploy stack, outlining trust boundaries and the interplay between first and third-party mechanisms
Work with engineering leads and devops architects to build in secure supply chain principles from the beginning
Balance engineering outcomes with security controls, enabling the company to deliver securely quickly
Document security posture and strategy for technical and nontechnical audiences from both 1p and 3p perspectives
Skills and Qualifications
8-10 years of experience with software supply chain and SDLC topics including secure code management, build pipeline hardening, artifact signing and attestation, and the end-to-end integration thereof.
Masters in Computer Science or PhD (preferred)
Strong hands-on engineering abilities in devops and SDLC contexts
Ability to work in fragmented and legacy build environments, experience with modernizing stacks is a plus
Familiarity with AWS, Jenkins, SLSA, and best practices for secure artifact provenance and builds are a plus
Strong written communication skills, with the ability to make security concepts approachable for non-specialists.
Direct work with Agentic workflows and deep understanding of LLM and reasoning cycles.
Why Join Cerebras
People who are serious about software make their own hardware. At Cerebras, we have built a breakthrough architecture that is unlocking new opportunities for the AI industry. With dozens of model releases and rapid growth, we’ve reached an inflection point in our business. Members of our team tell us there are five main reasons they joined Cerebras:
Build a breakthrough AI platform beyond the constraints of the GPU.
Publish and open source their cutting-edge AI research.
Work on one of the fastest AI supercomputers in the world.
Enjoy job stability with startup vitality.
Our simple, non-corporate work culture that respects individual beliefs.
Find out more about what it's like to work at Cerebras here!
Apply today and become part of the forefront of groundbreaking advancements in AI!
Cerebras Systems is committed to creating an equal and diverse environment and is proud to be an equal opportunity employer. We celebrate different backgrounds, perspectives, and skills. We believe inclusive teams build better products and companies. We try every day to build a work environment that empowers people to do their best work through continuous learning, growth and support of those around them.
This website or its third-party tools process personal data. For more details, click here to review our CCPA disclosure notice.