• Partner with platform, infrastructure, and hardware teams to embed security controls from physical hardware through runtime.
• Design and implement security hardening across the Linux kernel, bootloader, firmware, and host OS layers of Cerebras compute platforms.
• Drive secure boot, measured boot, and attestation strategies across our infrastructure, from the wafer-scale system to supporting host nodes.
• Conduct deep security reviews of kernel modules, drivers, and low-level system components — identifying and remediating memory safety, privilege escalation, and isolation issues.
• Develop kernel-level monitoring and telemetry (e.g., eBPF) to enable detection of low-level attacker behavior.
• Stay ahead of emerging kernel CVEs, supply chain risks, and hardware-level threats — driving response and remediation across the fleet.
• Document low-level security posture, threat models, and remediation playbooks in clear, accessible language.