Security Software Engineer, Platform Integration

Anthropic Anthropic · AI Frontier · San Francisco, CA · Security

This role focuses on building and maintaining the platform trust integration surface for AI systems, ensuring the security and integrity of compute resources. It involves verifying attestation pipelines, DICE chains, and encryption postures to gate workloads. The role requires deep systems software engineering experience and a strong understanding of hardware security primitives.

What you'd actually do

  1. You will be the technical owner of Anthropic's platform trust integration surface, the host-side stack that ingests trust primitives produced by hardware and converts them into production gates for workloads.
  2. Attestation verification pipeline. Consume trusted reference integrity manifests for every component in the TCB. Validate measurements end-to-end, surface drift, and gate workload placement on attestation outcomes.
  3. DICE chain consumption. Integrate with iRoT-rooted DICE chains where exposed, and define what Anthropic requires of partners where they aren't yet.
  4. Dynamic root-of-trust and late-launch integration. Working with other security engineers to ensure Anthropic's host software stack securely leverages DRTM primitives, and work with silicon vendors and firmware maintainers to address gaps in relevant technologies.
  5. Interconnect topology validation. Build the tooling to validate interconnect topology claims for multi-node workloads and catch deviations before they reach production.

Skills

Required

  • Deep systems software engineering experience with kernel, firmware, or low-level platform code.
  • Understanding of hardware as encountered in modern server platforms, and implications of trust relationships within.
  • Working knowledge of modern attestation primitives: RoTs, TPMs, DICE, SPDM, measured boot, DRTM across major CPU architectures, reference integrity manifest best practices, remote attestation protocols and design patterns.
  • Ability to read vendor documentation critically and identify gaps between _what the spec claims_ and _what can actually be relied on in production_.
  • Strong ownership disposition: comfortable being the one accountable for a capability landing, including when it requires pushing partners.
  • Supply-chain attestation work (SPDM, TCG provenance, pre-delivery identity bootstrapping beyond TOFU).
  • Familiarity with relevant standards from TCG (TPM, DICE, etc.), IETF (RATS WG, SEAT WG, etc.), DMTF (SPDM, etc.), etc.
  • History of shipping security-critical code in production at scale.

Nice to have

  • Bachelor’s degree or an equivalent combination of education, training, and/or experience
  • A field relevant to the role as demonstrated through coursework, training, or professional experience
  • Years of experience required will correlate with the internal job level requirements for the position

What the JD emphasized

  • platform trust integration surface
  • Attestation verification pipeline
  • DICE chain consumption
  • Dynamic root-of-trust and late-launch integration
  • Interconnect topology validation
  • CPU and interconnect encryption posture
  • Debug-disable verification
  • Ensure devices/peripherals are appropriately covered
  • security-critical code in production at scale