Infrastructure Security Engineer (secret + Clearance)

Cohere Cohere · AI Frontier · Toronto, ON · Product

Cohere is seeking an Infrastructure Security Engineer to deploy and manage infrastructure for Protected B classified environments, design and implement security controls, evaluate and manage security tools for hardening training and inference infrastructure, implement security best practices, participate in incident response, and conduct vulnerability assessments. The role requires experience with Protected B environments, Kubernetes, infrastructure as code, and ideally experience with AI/ML systems.

What you'd actually do

  1. Deploy, and manage infrastructure for Protected B classified environments, ensuring compliance with ITSG-33 and Canadian government standards
  2. Design and implement security controls for cloud (AWS, GCP, Azure) and hybrid/multi-cloud deployments
  3. Evaluate, implement, and manage security tools and technologies for training cluster and inference infrastructure hardening
  4. Implement security best practices including IAM, encryption, logging, and monitoring
  5. Participate in security incident response activities, including detection, analysis, containment, and remediation

Skills

Required

  • Infrastructure security
  • Protected B environment setup, configuration, and management
  • Kubernetes
  • Infrastructure as code (Terraform)
  • Configuration management
  • Secure engineering best practices
  • Active Secret+ security clearance

Nice to have

  • Experience working with AI/ML systems or LLM-based applications
  • AWS, GCP, Azure
  • IAM, encryption, logging, and monitoring
  • Vulnerability assessments and penetration testing
  • Security incident response

What the JD emphasized

  • Active Secret+ clearance strongly preferred
  • 5+ years of previous experience in Infrastructure security
  • Proven experience with Protected B environment setup, configuration, and management
  • Knowledge of Canadian government security standards and compliance requirements