Resume and JobRESUME AND JOB
Crusoe logo

Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!

Crusoe

Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!

full-timePosted: Dec 8, 2025

Job Description

Staff Infrastructure Engineer (Vault) at Crusoe

Role Overview

Crusoe is on a mission to accelerate the abundance of energy and intelligence, crafting the engine that powers a world where people can create ambitiously with AI — without sacrificing scale, speed, or sustainability. We are looking for a Staff Infrastructure Engineer to join our team and play a critical role in building and securing our infrastructure.

As a Staff Infrastructure Security Engineer, you will be responsible for architecting and operationalizing the foundational security services that enable our transition to a Zero Trust model. This is a highly strategic role focused on establishing the organization’s “roots of trust,” with immediate ownership of our enterprise HashiCorp Vault platform, from Proof of Concept through global production readiness. You’ll serve as the subject matter expert for secrets management and identity architecture, while designing scalable, self-service trust patterns across our hybrid, multi-cloud environment. Over time, this role will shape our long-term credentials management strategy and how engineering teams securely interact with core infrastructure.

A Day in the Life

Your day-to-day activities will be varied and challenging, including:

  • Architecting a highly available, disaster-resilient, multi-cluster secrets management platform.
  • Driving Vault from PoC to enterprise-grade production, establishing standards, reliability, and scalability.
  • Collaborating with Cloud Engineering, DevOps, and SRE teams on secure secret management workflows.
  • Designing and enforcing governance controls to meet internal and external compliance requirements.
  • Implementing Policy as Code using Sentinel to automate guardrails and access decisions.
  • Engineering Vault infrastructure using Terraform with fully automated, reproducible deployments.
  • Integrating Vault with identity providers and workload identities.
  • Configuring and tuning core Vault secrets engines and Enterprise features.
  • Operationalizing Vault as a Service through paved-road onboarding and self-service workflows.
  • Building observability across the platform.

Why San Francisco?

San Francisco is a global hub for technology and innovation, offering a vibrant ecosystem for professionals in the cloud security and infrastructure engineering space. Located in the heart of Silicon Valley, you'll be surrounded by cutting-edge companies, talented individuals, and endless opportunities for learning and growth. San Francisco also boasts a unique culture, world-class cuisine, and stunning natural beauty, making it an exciting place to live and work.

Career Path

This Staff Infrastructure Engineer role offers significant opportunities for career advancement within Crusoe. You could potentially move into a Principal Engineer role, leading larger security initiatives and mentoring other engineers. Alternatively, you could transition into a management position, leading a team of security engineers and shaping the overall security strategy for the company. With Crusoe's rapid growth and commitment to innovation, the possibilities are endless.

Salary and Benefits

Crusoe offers a competitive salary and benefits package, commensurate with experience and qualifications. The estimated salary range for this role in San Francisco is $180,000 to $250,000 per year. In addition to salary, we provide a comprehensive benefits package, including health insurance, paid time off, retirement plan, and other perks designed to support your well-being and professional growth.

Crusoe Culture

At Crusoe, we foster a culture of innovation, collaboration, and sustainability. We are passionate about using technology to solve some of the world's most pressing challenges, and we believe that our employees are our greatest asset. We provide a supportive and inclusive work environment where everyone can thrive and make a meaningful contribution. We encourage continuous learning and development, and we celebrate the achievements of our team members.

How to Apply

If you are a highly motivated and experienced infrastructure security engineer with a passion for building secure and scalable systems, we encourage you to apply for this exciting opportunity. Please submit your resume and cover letter through our online application portal. We look forward to hearing from you!

Frequently Asked Questions (FAQ)

  1. What is Crusoe's mission?

    Crusoe's mission is to accelerate the abundance of energy and intelligence.

  2. What is the focus of this role?

    This role focuses on architecting and operationalizing foundational security services to enable a Zero Trust model.

  3. What is the primary responsibility?

    The primary responsibility is ownership of the enterprise HashiCorp Vault platform.

  4. What experience is required?

    8+ years of hands-on experience in cloud security, DevOps, or infrastructure engineering are required.

  5. What is the preferred experience with Vault?

    Deep, production-grade experience deploying and operating HashiCorp Vault in enterprise environments (Enterprise edition strongly preferred).

  6. What programming languages are preferred?

    Fluency in at least one programming language (Go or Python preferred) for automation and tooling.

  7. What is the location of this role?

    This role is located in San Francisco, California.

  8. What is the company culture like?

    Crusoe fosters a culture of innovation, collaboration, and sustainability.

  9. What are the career growth opportunities?

    Opportunities include Principal Engineer or Management roles within the security organization.

  10. What is the salary range for this position?

    The estimated salary range for this role in San Francisco is $180,000 to $250,000 per year.

Locations

  • San Francisco, California, United States

Salary

Estimated Salary Rangemedium confidence

198,000 - 275,000 USD / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Cloud Securityintermediate
  • DevOpsintermediate
  • Infrastructure Engineeringintermediate
  • HashiCorp Vaultintermediate
  • Secrets Managementintermediate
  • Cryptographyintermediate
  • PKI/X.509intermediate
  • Google Cloud Platform (GCP)intermediate
  • Infrastructure-as-Codeintermediate
  • Terraformintermediate
  • Kubernetesintermediate
  • Microservices Architectureintermediate
  • Gointermediate
  • Pythonintermediate
  • Network Securityintermediate
  • Segmentationintermediate
  • Firewallsintermediate
  • Routingintermediate
  • Zero Trustintermediate
  • Sentinelintermediate
  • SDLCintermediate
  • Automationintermediate
  • Monitoringintermediate
  • Alertingintermediate
  • Audit Loggingintermediate

Required Qualifications

  • 8+ years of experience in cloud security, DevOps, or infrastructure engineering. (experience)
  • Deep, production-grade experience deploying and operating HashiCorp Vault in enterprise environments (Enterprise edition strongly preferred). (experience)
  • Expert knowledge of secrets management, cryptography, PKI/X.509 certificate authorities, and trust systems. (experience)
  • Strong experience with Google Cloud Platform (GCP) and cloud-native IAM models. (experience)
  • Proven expertise using Infrastructure-as-Code tools (Terraform) to automate security platforms. (experience)
  • Hands-on experience with Kubernetes and securely integrating secrets into microservices architectures. (experience)
  • Fluency in at least one programming language (Go or Python preferred) for automation and tooling. (experience)
  • Strong understanding of network security fundamentals, including segmentation, firewalls, routing, and Zero Trust concepts. (experience)
  • Experience architecting and operationalizing foundational security services. (experience)
  • Experience leading cross-functional alignment with Cloud Engineering, DevOps, and SRE teams. (experience)
  • Experience with Policy as Code. (experience)
  • Experience with Vault infrastructure using Terraform with fully automated, reproducible, and version-controlled deployments. (experience)
  • Experience configuring and tuning core Vault secrets engines (KV, Transit, KMIP) and Enterprise features such as performance replication and automated sealing. (experience)
  • Experience building observability across the platform, including monitoring, alerting, audit logging, and usage insights. (experience)

Responsibilities

  • Architecting a highly available, disaster-resilient, multi-cluster secrets management platform as the foundation of our Zero Trust strategy.
  • Driving Vault from PoC to enterprise-grade production, establishing standards, reliability, and scalability.
  • Leading cross-functional alignment with Cloud Engineering, DevOps, and SRE teams on secure secret management workflows embedded into the SDLC.
  • Designing and enforcing governance controls to meet internal policies and external compliance requirements (e.g., SOX, ISO 27001).
  • Implementing Policy as Code using Sentinel to automate guardrails and access decisions.
  • Engineering Vault infrastructure using Terraform with fully automated, reproducible, and version-controlled deployments.
  • Architecting integrations between Vault, identity providers (e.g., Okta), and workload identities (e.g., Kubernetes Service Accounts).
  • Configuring and tuning core Vault secrets engines (KV, Transit, KMIP) and Enterprise features such as performance replication and automated sealing.
  • Operationalizing “Vault as a Service” through paved-road onboarding, self-service workflows, and clear developer documentation.
  • Building observability across the platform, including monitoring, alerting, audit logging, and usage insights.
  • Serving as the subject matter expert for secrets management and identity architecture.
  • Designing scalable, self-service trust patterns across our hybrid, multi-cloud environment.
  • Shaping long-term credentials management strategy.
  • Ensuring engineering teams securely interact with core infrastructure.

Benefits

  • general: Contribute to accelerating the abundance of energy and intelligence.
  • general: Be part of the AI revolution with sustainable technology.
  • general: Drive meaningful innovation and make a tangible impact.
  • general: Join a team setting the pace for responsible, transformative cloud infrastructure.
  • general: Work on foundational security services enabling a Zero Trust model.
  • general: Immediate ownership of the enterprise HashiCorp Vault platform.
  • general: Opportunity to establish the organization’s “roots of trust”.
  • general: Shape the long-term credentials management strategy.
  • general: Design secure workflows for engineering teams.
  • general: Contribute to a hybrid, multi-cloud environment.
  • general: Work on cutting-edge cloud security technologies.
  • general: Professional development opportunities to grow your expertise.
  • general: Be part of a collaborative and innovative work environment.
  • general: Competitive compensation and benefits package.
  • general: Opportunity to work with a talented and passionate team.

Target Your Resume for "Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!" , Crusoe

Get personalized recommendations to optimize your resume specifically for Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!" , Crusoe

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

SecurityInfrastructureVaultCloudGCPKubernetesTerraformDevOpsZero TrustCloud Security EngineerInfrastructure SecurityHashiCorp VaultSecrets ManagementZero Trust ArchitectureGCP SecurityKubernetes SecurityPolicy as CodeSentinelIdentity and Access ManagementPKICryptographyAutomationSecurity GovernanceComplianceSOXISO 27001San Francisco Tech JobsCalifornia Security JobsDevOps SecurityInfrastructure as Code SecurityCloud Native SecurityCrusoe EnergySustainable AIVault EngineerSecrets Management EngineerGreen TechAI InfrastructureCloudEngineering

Answer 10 quick questions to check your fit for Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now! @ Crusoe.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.

Crusoe logo

Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!

Crusoe

Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!

full-timePosted: Dec 8, 2025

Job Description

Staff Infrastructure Engineer (Vault) at Crusoe

Role Overview

Crusoe is on a mission to accelerate the abundance of energy and intelligence, crafting the engine that powers a world where people can create ambitiously with AI — without sacrificing scale, speed, or sustainability. We are looking for a Staff Infrastructure Engineer to join our team and play a critical role in building and securing our infrastructure.

As a Staff Infrastructure Security Engineer, you will be responsible for architecting and operationalizing the foundational security services that enable our transition to a Zero Trust model. This is a highly strategic role focused on establishing the organization’s “roots of trust,” with immediate ownership of our enterprise HashiCorp Vault platform, from Proof of Concept through global production readiness. You’ll serve as the subject matter expert for secrets management and identity architecture, while designing scalable, self-service trust patterns across our hybrid, multi-cloud environment. Over time, this role will shape our long-term credentials management strategy and how engineering teams securely interact with core infrastructure.

A Day in the Life

Your day-to-day activities will be varied and challenging, including:

  • Architecting a highly available, disaster-resilient, multi-cluster secrets management platform.
  • Driving Vault from PoC to enterprise-grade production, establishing standards, reliability, and scalability.
  • Collaborating with Cloud Engineering, DevOps, and SRE teams on secure secret management workflows.
  • Designing and enforcing governance controls to meet internal and external compliance requirements.
  • Implementing Policy as Code using Sentinel to automate guardrails and access decisions.
  • Engineering Vault infrastructure using Terraform with fully automated, reproducible deployments.
  • Integrating Vault with identity providers and workload identities.
  • Configuring and tuning core Vault secrets engines and Enterprise features.
  • Operationalizing Vault as a Service through paved-road onboarding and self-service workflows.
  • Building observability across the platform.

Why San Francisco?

San Francisco is a global hub for technology and innovation, offering a vibrant ecosystem for professionals in the cloud security and infrastructure engineering space. Located in the heart of Silicon Valley, you'll be surrounded by cutting-edge companies, talented individuals, and endless opportunities for learning and growth. San Francisco also boasts a unique culture, world-class cuisine, and stunning natural beauty, making it an exciting place to live and work.

Career Path

This Staff Infrastructure Engineer role offers significant opportunities for career advancement within Crusoe. You could potentially move into a Principal Engineer role, leading larger security initiatives and mentoring other engineers. Alternatively, you could transition into a management position, leading a team of security engineers and shaping the overall security strategy for the company. With Crusoe's rapid growth and commitment to innovation, the possibilities are endless.

Salary and Benefits

Crusoe offers a competitive salary and benefits package, commensurate with experience and qualifications. The estimated salary range for this role in San Francisco is $180,000 to $250,000 per year. In addition to salary, we provide a comprehensive benefits package, including health insurance, paid time off, retirement plan, and other perks designed to support your well-being and professional growth.

Crusoe Culture

At Crusoe, we foster a culture of innovation, collaboration, and sustainability. We are passionate about using technology to solve some of the world's most pressing challenges, and we believe that our employees are our greatest asset. We provide a supportive and inclusive work environment where everyone can thrive and make a meaningful contribution. We encourage continuous learning and development, and we celebrate the achievements of our team members.

How to Apply

If you are a highly motivated and experienced infrastructure security engineer with a passion for building secure and scalable systems, we encourage you to apply for this exciting opportunity. Please submit your resume and cover letter through our online application portal. We look forward to hearing from you!

Frequently Asked Questions (FAQ)

  1. What is Crusoe's mission?

    Crusoe's mission is to accelerate the abundance of energy and intelligence.

  2. What is the focus of this role?

    This role focuses on architecting and operationalizing foundational security services to enable a Zero Trust model.

  3. What is the primary responsibility?

    The primary responsibility is ownership of the enterprise HashiCorp Vault platform.

  4. What experience is required?

    8+ years of hands-on experience in cloud security, DevOps, or infrastructure engineering are required.

  5. What is the preferred experience with Vault?

    Deep, production-grade experience deploying and operating HashiCorp Vault in enterprise environments (Enterprise edition strongly preferred).

  6. What programming languages are preferred?

    Fluency in at least one programming language (Go or Python preferred) for automation and tooling.

  7. What is the location of this role?

    This role is located in San Francisco, California.

  8. What is the company culture like?

    Crusoe fosters a culture of innovation, collaboration, and sustainability.

  9. What are the career growth opportunities?

    Opportunities include Principal Engineer or Management roles within the security organization.

  10. What is the salary range for this position?

    The estimated salary range for this role in San Francisco is $180,000 to $250,000 per year.

Locations

  • San Francisco, California, United States

Salary

Estimated Salary Rangemedium confidence

198,000 - 275,000 USD / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Cloud Securityintermediate
  • DevOpsintermediate
  • Infrastructure Engineeringintermediate
  • HashiCorp Vaultintermediate
  • Secrets Managementintermediate
  • Cryptographyintermediate
  • PKI/X.509intermediate
  • Google Cloud Platform (GCP)intermediate
  • Infrastructure-as-Codeintermediate
  • Terraformintermediate
  • Kubernetesintermediate
  • Microservices Architectureintermediate
  • Gointermediate
  • Pythonintermediate
  • Network Securityintermediate
  • Segmentationintermediate
  • Firewallsintermediate
  • Routingintermediate
  • Zero Trustintermediate
  • Sentinelintermediate
  • SDLCintermediate
  • Automationintermediate
  • Monitoringintermediate
  • Alertingintermediate
  • Audit Loggingintermediate

Required Qualifications

  • 8+ years of experience in cloud security, DevOps, or infrastructure engineering. (experience)
  • Deep, production-grade experience deploying and operating HashiCorp Vault in enterprise environments (Enterprise edition strongly preferred). (experience)
  • Expert knowledge of secrets management, cryptography, PKI/X.509 certificate authorities, and trust systems. (experience)
  • Strong experience with Google Cloud Platform (GCP) and cloud-native IAM models. (experience)
  • Proven expertise using Infrastructure-as-Code tools (Terraform) to automate security platforms. (experience)
  • Hands-on experience with Kubernetes and securely integrating secrets into microservices architectures. (experience)
  • Fluency in at least one programming language (Go or Python preferred) for automation and tooling. (experience)
  • Strong understanding of network security fundamentals, including segmentation, firewalls, routing, and Zero Trust concepts. (experience)
  • Experience architecting and operationalizing foundational security services. (experience)
  • Experience leading cross-functional alignment with Cloud Engineering, DevOps, and SRE teams. (experience)
  • Experience with Policy as Code. (experience)
  • Experience with Vault infrastructure using Terraform with fully automated, reproducible, and version-controlled deployments. (experience)
  • Experience configuring and tuning core Vault secrets engines (KV, Transit, KMIP) and Enterprise features such as performance replication and automated sealing. (experience)
  • Experience building observability across the platform, including monitoring, alerting, audit logging, and usage insights. (experience)

Responsibilities

  • Architecting a highly available, disaster-resilient, multi-cluster secrets management platform as the foundation of our Zero Trust strategy.
  • Driving Vault from PoC to enterprise-grade production, establishing standards, reliability, and scalability.
  • Leading cross-functional alignment with Cloud Engineering, DevOps, and SRE teams on secure secret management workflows embedded into the SDLC.
  • Designing and enforcing governance controls to meet internal policies and external compliance requirements (e.g., SOX, ISO 27001).
  • Implementing Policy as Code using Sentinel to automate guardrails and access decisions.
  • Engineering Vault infrastructure using Terraform with fully automated, reproducible, and version-controlled deployments.
  • Architecting integrations between Vault, identity providers (e.g., Okta), and workload identities (e.g., Kubernetes Service Accounts).
  • Configuring and tuning core Vault secrets engines (KV, Transit, KMIP) and Enterprise features such as performance replication and automated sealing.
  • Operationalizing “Vault as a Service” through paved-road onboarding, self-service workflows, and clear developer documentation.
  • Building observability across the platform, including monitoring, alerting, audit logging, and usage insights.
  • Serving as the subject matter expert for secrets management and identity architecture.
  • Designing scalable, self-service trust patterns across our hybrid, multi-cloud environment.
  • Shaping long-term credentials management strategy.
  • Ensuring engineering teams securely interact with core infrastructure.

Benefits

  • general: Contribute to accelerating the abundance of energy and intelligence.
  • general: Be part of the AI revolution with sustainable technology.
  • general: Drive meaningful innovation and make a tangible impact.
  • general: Join a team setting the pace for responsible, transformative cloud infrastructure.
  • general: Work on foundational security services enabling a Zero Trust model.
  • general: Immediate ownership of the enterprise HashiCorp Vault platform.
  • general: Opportunity to establish the organization’s “roots of trust”.
  • general: Shape the long-term credentials management strategy.
  • general: Design secure workflows for engineering teams.
  • general: Contribute to a hybrid, multi-cloud environment.
  • general: Work on cutting-edge cloud security technologies.
  • general: Professional development opportunities to grow your expertise.
  • general: Be part of a collaborative and innovative work environment.
  • general: Competitive compensation and benefits package.
  • general: Opportunity to work with a talented and passionate team.

Target Your Resume for "Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!" , Crusoe

Get personalized recommendations to optimize your resume specifically for Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now!" , Crusoe

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

SecurityInfrastructureVaultCloudGCPKubernetesTerraformDevOpsZero TrustCloud Security EngineerInfrastructure SecurityHashiCorp VaultSecrets ManagementZero Trust ArchitectureGCP SecurityKubernetes SecurityPolicy as CodeSentinelIdentity and Access ManagementPKICryptographyAutomationSecurity GovernanceComplianceSOXISO 27001San Francisco Tech JobsCalifornia Security JobsDevOps SecurityInfrastructure as Code SecurityCloud Native SecurityCrusoe EnergySustainable AIVault EngineerSecrets Management EngineerGreen TechAI InfrastructureCloudEngineering

Answer 10 quick questions to check your fit for Staff Infrastructure Engineer (Vault) Careers at Crusoe - San Francisco, California | Apply Now! @ Crusoe.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.