Cerebras logo

Cerebras

Software Supply Chain Security Engineer

HybridNew this week

Part remote, part office, you need to live within commuting distance of a named location.

Hybrid · Sunnyvale, CA

Employer listed it 2 days ago · Added yesterday

First listed 2 days ago.

Salary

Not stated

Location

Hybrid · Sunnyvale, CA

Timezone

Not stated

Contract

Full-time

Experience

Senior

Category

Software

This employer didn't state pay. Jobs like this usually pay around $180k–$230k a year, a typical range taken from 596 senior-level software roles on Nomaders that do state pay. It's a guide, not an offer.

Remote flexibility

Hybrid

This role is only partly remote, the employer expects time in the office around Sunnyvale, CA, Hybrid, so you need to live within commuting distance.

What the employer says

  • Source listing states candidate location: "Sunnyvale, CA, Hybrid"
  • Listing mentions "Hybrid"

What Nomaders makes of it

  • Not suitable if you plan to move between countries

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

Cerebras Systems builds the world's largest AI chip, 56 times larger than GPUs. This architecture allows Cerebras to deliver industry-leading training and inference speeds; over 10 times faster than GPU-based hyperscale cloud inference services. This order of magnitude increase in speed is transforming the user experience of AI applications, unlocking real-time iteration and increasing intelligence via additional agentic computation. Cerebras works with the leading model labs, global enterprises, and cutting-edge AI-native startups. OpenAI recently announced a multi-year partnership with Cerebras, to deploy 750 megawatts of scale, transforming key workloads with ultra high-speed inference.

Cerebras is seeking a Software Supply Chain Security Engineer to help build a secure foundation for our build and development workflows.

In this role you will be responsible for assessing and hardening every layer of our source to artifact pipeline, from how we store and manage code to what we deploy into our clusters.

The ideal candidate brings a combination of wide breadth of knowledge on a variety of software supply chain topics throughout the whole SDLC process, a pragmatic and results-driven outlook on security, and the flexibility and attention to detail to work in a fast-paced development environment without compromising our security standards.

Responsibilities

Define core security requirements for artifact build pipelines including maturing SLSA processes, and see them through from ideation to implementation

Partner with platform, infrastructure, networking, and hardware teams to identify supply chain gaps and deliver end-to-end solutions for ensuring confidence in CI/CD artifacts

Develop threat models for each layer of the build and deploy stack, outlining trust boundaries and the interplay between first and third-party mechanisms

Work with engineering leads and devops architects to build in secure supply chain principles from the beginning

Balance engineering outcomes with security controls, enabling the company to deliver securely quickly

Document security posture and strategy for technical and nontechnical audiences from both 1p and 3p perspectives

Skills and Qualifications

8-10 years of experience with software supply chain and SDLC topics including secure code management, build pipeline hardening, artifact signing and attestation, and the end-to-end integration thereof.

Masters in Computer Science or PhD (preferred)

Strong hands-on engineering abilities in devops and SDLC contexts

Ability to work in fragmented and legacy build environments, experience with modernizing stacks is a plus

Familiarity with AWS, Jenkins, SLSA, and best practices for secure artifact provenance and builds are a plus

Strong written communication skills, with the ability to make security concepts approachable for non-specialists.

Direct work with Agentic workflows and deep understanding of LLM and reasoning cycles.

Why Join Cerebras

People who are serious about software make their own hardware. At Cerebras, we have built a breakthrough architecture that is unlocking new opportunities for the AI industry. With dozens of model releases and rapid growth, we’ve reached an inflection point in our business. Members of our team tell us there are five main reasons they joined Cerebras:

Build a breakthrough AI platform beyond the constraints of the GPU.

Publish and open source their cutting-edge AI research.

Work on one of the fastest AI supercomputers in the world.

Requirements

  • ·8-10 years of experience with software supply chain and SDLC topics including secure code management, build pipeline hardening, artifact signing and attestation, and the end-to-end integration thereof.
  • ·Masters in Computer Science or PhD (preferred)
  • ·Strong hands-on engineering abilities in devops and SDLC contexts
  • ·Ability to work in fragmented and legacy build environments, experience with modernizing stacks is a plus
  • ·Familiarity with AWS, Jenkins, SLSA, and best practices for secure artifact provenance and builds are a plus

Benefits

No benefits package published with this listing. Ask about it at first interview.

How to apply

  1. 1Check the flexibility label above, hybrid, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Cerebras, mentioning your remote working experience.
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 1d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

Typically $180k to $230k per year · You'll be taken to the employer's careers page.