Logo for Submer

Sr Platform Security Engineer (Zero Trust and Platform Security)

Role overview

Qualifications

  • 7+ years of experience in cloud security or infrastructure security engineering
  • Strong understanding of security architecture in cloud environments
  • Experience securing large-scale distributed infrastructure platforms
  • Familiarity with multi-tenant infrastructure security models

Responsibilities

  • Design and implement zero-trust security architecture across the platform
  • Develop automation workflows that improve detection, response, and remediation
  • Support security monitoring and detection systems
  • Help ensure platform security controls meet customer and regulatory requirements

About the company

Submer logo

Submer

IT Services & IT Consulting

We enable next generation cooling and automation for data & energy-intense environments by integrating our pristine, highly-efficient & sustainable technologies. Solving the challenges of today and powering the use cases of the future.Submer helps enable datacenters that make sense through products, platforms, APIs, processes and installations that will move hyperscalers, colocation and huge industries to new levels of efficiency and innovation.

Company details

IndustryIT Services & IT Consulting
Company size51-200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Location & work modality: Europe (remote)

Start: ASAP

Type of Contract: Full-time (permanent or freeelance)

About Radian Arc

Radian Arc, now part of InferX, Submer's AI cloud and GPU infrastructure platform, provides an infrastructure-as-a-service (IaaS) platform for running cloud gaming, artificial intelligence and machine learning applications inside telecommunication carrier networks. Our teams across the USA, Australia, Central Europe, Malaysia, Singapore and Japan offer telecom operators a GPU-based edge computing platform without the need for capital expenditure, facilitating low latency and improved economics for value-added services and the monetization of 5G investments.

What impact you will have

Design and implement key security capabilities for the GPU cloud platform, ensuring that infrastructure, control planes, and multi-tenant workloads operate within a robust zero-trust security model.

This role focuses on securing the platform across identity, networking, infrastructure, platform, and automation layers while enabling high-performance AI workloads to run safely in multi-tenant environments.

As a Senior Platform Security Engineer, you will build security capabilities that integrate deeply with the platform, infrastructure stack, and operational tooling, enabling secure-by-design infrastructure at scale. You will also leverage automation and AI-assisted tooling to improve detection, triage, and response across the platform security stack.

What you’ll do

 

Zero Trust Architecture

  • Design and implement zero-trust security architecture across the platform.
  • Implement identity-aware access controls for infrastructure, services, and operators.
  • Enforce least-privilege access models for both internal teams and customers.
  • Secure access paths to infrastructure components including:
    • Control planes,
    • Orchestration systems,
    • Management networks,
    • Operational tooling.

Identity & Access Management

  • Design and operate secure authentication and authorization systems.
  • Implement IAM capabilities for multi-tenant environments in collaboration with platform and infrastructure teams.
  • Integrate identity systems with infrastructure and platform components.
  • Manage cryptographic infrastructure including:
    • PKI systems,
    • Key management,
    • Certificate lifecycle automation.

Infrastructure & Platform Security

  • Secure the underlying infrastructure used by the GPU cloud platform, including:
    • Kubernetes clusters,
    • Virtualization layers,
    • Storage systems,
    • Networking fabrics.
  • Collaborate with infrastructure teams to ensure security is embedded in platform architecture and deployment practices.
  • Contribute to security guardrails and secure deployment patterns for new infrastructure.

Network Security

  • Design and implement security controls for large-scale distributed infrastructure networks.
  • Implement secure segmentation and tenant isolation mechanisms using technologies such as:
    • EVPN / VXLAN,
    • VRF isolation,
    • Encrypted transport,
    • Zero-trust networking.
  • Work with networking teams to secure high-performance fabrics including RDMA and InfiniBand environments.

Security Automation

  • Develop automation workflows that improve detection, response, and remediation.
  • Build integrations between security systems and operational tooling.
  • Automate vulnerability triage, remediation workflows, and incident response processes.
  • Contribute to SOAR-style automation systems that coordinate security operations across the platform.

Threat Detection & Incident Response

  • Support security monitoring and detection systems.
  • Investigate and triage security alerts and potential vulnerabilities.
  • Participate in incident response and post-incident analysis.
  • Improve detection coverage and response automation across the platform.

Vulnerability & Patch Management

  • Design and maintain patch management strategies across the platform infrastructure, including:
    • Operating systems,
    • Container runtimes,
    • Kernel updates,
    • Infrastructure components.
  • Build automation pipelines that validate and deploy security updates across large infrastructure fleets.
  • Track vulnerabilities and coordinate remediation across engineering teams.
  • Maintain vulnerability remediation workflows and reporting for security posture visibility.

Security Telemetry & Detection

  • Build and maintain security monitoring pipelines that ingest signals from infrastructure, networking, and platform components.
  • Improve signal quality from SIEM platforms by developing correlation rules, enrichment pipelines, and automated triage workflows.
  • Integrate security telemetry with platform observability systems to provide a unified view of infrastructure health and security posture.

AI-Assisted Security Operations

  • Design and implement AI-assisted security workflows that analyze security telemetry and incident signals.
  • Develop AI agents that help:
    • Summarize security alerts,
    • Correlate events across systems,
    • Detect anomaly patterns,
    • Assist operators during incident investigations.
  • Use machine learning or LLM-based tooling to reduce alert fatigue and accelerate incident triage.

Compliance & Security Governance

  • Help ensure platform security controls meet customer and regulatory requirements.
  • Contribute to security policies and operational procedures.
  • Help define measurable security metrics and compliance validation processes.

Technical Stack

 

Security Monitoring & Detection

  • Wazuh.
  • Snort IDS/IPS.
  • TheHive.
  • Cortex.

Security Infrastructure

  • Wazuh SIEM.
  • HashiCorp Vault.
  • HashiCorp Boundary.
  • Tailscale.

Identity & Access

  • PKI infrastructure.
  • IAM systems such as Authentik/KeyCloak.
  • Certificate lifecycle management.
  • Identity federation.

Secure Networking

  • Zero-trust networking models.
  • Encrypted network transport.
  • Network segmentation technologies
  • Citrix NetScaler.

Platform Security

  • Kubernetes security.
  • Container runtime security.
  • Infrastructure hardening.

Security Automation

  • Python / Go.
  • Security automation frameworks.
  • Incident response automation

 

What you’ll need

Core Experience

  • 7+ years of experience in cloud security or infrastructure security engineering.
  • Experience securing large-scale distributed infrastructure platforms.

Infrastructure Security

  • Strong understanding of security architecture in cloud environments.
  • Experience securing Kubernetes and containerized platforms.
  • Familiarity with multi-tenant infrastructure security models.

Identity & Cryptography

  • Experience implementing identity and access management systems.
  • Strong understanding of PKI, key management, and secure authentication systems.

Network Security

  • Understanding of datacenter networking security concepts.
  • Familiarity with segmentation, tenant isolation, and zero-trust networking.

Security Operations

  • Experience with SIEM platforms and security telemetry.
  • Ability to triage vulnerabilities and investigate incidents.
  • Experience building security automation workflows.

What we offer

  • Attractive compensation package reflecting your expertise and experience.

  • A great work environment characterised by friendliness, international diversity, flexibility, and a hybrid-friendly approach.

  • You'll be part of a fast-growing scale-up with a mission to make a positive impact, offering an exciting career evolution.

Our job titles may span more than one job level. The actual base pay is dependent on a number of factors, such as transferable skills, work experience, business needs and market demands.

 

Our Inclusive Responsibility

Radian Arc is committed to creating a diverse and inclusive environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected category under applicable law.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Engineer Related jobs

Other jobs at Submer

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.