The posting, in xAI's own words
archived Oct 10, 2026SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.
ABOUT THE ROLE:
We are seeking a hands-on Infrastructure Security Engineer to build and secure SpaceXAI’s infrastructure from the bare-metal layer up through the platform and application stack. In this role, you will design, implement, and harden physical and private-cloud foundations—servers, networks, identity, and orchestration—and carry that security posture into containers, automation, and hybrid connectivity with public cloud. This role focuses on securing critical infrastructure spanning data centers, colo, and hybrid environments, with work that may span platforms such as SpaceXAI, X Social, X Money, and related systems. You’ll operate with an automation-first mindset: building secure foundations at the metal and OS layer, hardening platforms at scale, and partnering closely with engineering so security is embedded in how we build and run systems—not bolted on after the fact.
Read the full posting ↓
Bare metal, data center & network security
Design and implement secure bare-metal and private-cloud architectures (servers, storage, out-of-band management, BIOS/UEFI/BMC firmware posture) Harden physical and virtual fleets: OS baselines (Linux/Windows), CIS benchmarks, patch and vulnerability management, and secure boot / measured boot where applicable Hands-on firmware, BMC/iDRAC/iLO, PXE/Kickstart provisioning, and hardware lifecycle security Build and secure network foundations: segmentation, load balancers, DNS, PKI, NAC, and IDS/IPS on real hardware Own hybrid connectivity between on-premises and cloud (site-to-site VPN, Direct Connect / Interconnect / ExpressRoute, SD-WAN, zero-trust access) Manage identities and privileged access across Active Directory / LDAP / Kerberos and cloud IAM (federation, SAML/OIDC, PAM) Assist with security assessments and audits of physical, on-premises, and hybrid infrastructure Monitor and remediate infrastructure to comply with regulations and best practices (e.g., PCI, NIST CSF, GDPR, HIPAA)