Security Engineering Manager, Platform Security

Weights & Biases Weights & Biases · Data AI · Bellevue, WA +4 · Technology

This role is for a Security Engineering Manager, Platform Security at CoreWeave, an AI hyperscaler. The individual will lead and scale the platform security engineering function, focusing on designing security into their Kubernetes-based platform and public cloud environments. Responsibilities include building and operating security controls, defining strategy for cloud security posture, workload isolation, platform guardrails, image integrity, and multi-cloud security. The role involves leading a team of platform security engineers and partnering with other engineering teams. The company emphasizes building and operating systems over writing policy.

What you'd actually do

  1. Own the strategy, roadmap, and execution of CoreWeave's Platform Security engineering program across Kubernetes and multi-cloud environments.
  2. Lead and develop a team of platform security engineers through mentorship, technical direction, and performance management.
  3. Design, build, and operate security controls for CoreWeave's Kubernetes-based platform, including workload isolation, admission control, runtime policy enforcement, and tenant boundary integrity.
  4. Drive the security posture of CoreWeave's third-party public cloud environments (AWS, GCP, Azure), including account governance, IAM hygiene, configuration baselines, and automated guardrails.
  5. Own and mature cloud security posture management (CSPM) capabilities, ensuring continuous visibility and automated remediation across all cloud environments.

Skills

Required

  • 5 to 10 or more years of experience in platform security, cloud security, infrastructure security, or adjacent security engineering domains.
  • 3 to 5 or more years of experience leading or managing engineers, either as a people manager or technical leader with people responsibility.
  • strong hands-on depth in Kubernetes security, including admission control, RBAC, network policy, runtime security, and workload isolation patterns.
  • experience designing and operating security controls across multiple public cloud platforms (AWS, GCP, Azure), including IAM, account governance, and configuration management.

Nice to have

  • Experience with CSPM platforms such as Wiz.
  • Experience with container image signing and supply chain security tooling (Sigstore, Cosign, Chainguard).
  • Experience with infrastructure-as-code tooling, especially Terraform.
  • Proficiency with automation or programming languages such as Go or Python.
  • Experience with admission control frameworks such as OPA Gatekeeper or Kyverno.
  • Experience securing multi-tenant Kubernetes environments at scale.
  • Familiarity with security frameworks such as NIST, ISO, or SOC2 in the context of infrastructure and platform security.

What the JD emphasized

  • building and operating security controls, not writing policy
  • building and operating systems over writing policy documents
  • owning ambiguous problem spaces