About the Team
OpenAI Consumer Devices is building the next generation of products that bring powerful AI into people’s everyday lives. Guided by OpenAI’s mission to ensure AGI benefits all of humanity, our team combines world-class researchers, engineers, designers, and operators who care deeply about creating useful, intuitive, and responsible technology. You’ll have the opportunity to work alongside exceptional people on ambitious, zero-to-one challenges at the intersection of hardware, software, and AI. This is a chance to help define an entirely new category of products—and shape how people experience AI in the future.
The Operating Systems team is critical in this mission, turning sophisticated hardware and AI capabilities into a reliable, trusted platform. Security is central to that work: we define trust boundaries, integrate hardware-backed protections, isolate sensitive context, and establish the guardrails that let AI applications and agents act safely, privately, and under user control.
About the Role
We’re looking for a Software Security Architect to define the security architecture for OpenAI’s next-generation operating system. You’ll work alongside hardware security architects and partner with operating system, silicon, firmware, privacy, and product teams to protect users, their devices, and their data.
This is a senior, hands-on role for someone who can connect operating system internals, hardware-backed security, and real-world product constraints. Your work will shape the platform’s trust model, protect sensitive information, and set the technical foundations for AI that is safe, private, and under user control.
Responsibilities
- Define the operating system’s security architecture, trust boundaries, privilege model, and protections for sensitive user data.
- Partner with hardware security architects to integrate roots of trust, secure elements, trusted execution environments, and processor security capabilities into the operating system.
- Design foundational platform defenses, including secure boot, code signing, attestation, secure updates, key protection, and device recovery.
- Establish isolation and access controls across the kernel, applications, system services, and AI workloads.
- Define guardrails for how AI applications and agents access information, use sensors and tools, retain context, and act on a user’s behalf.
- Lead threat modeling and architecture reviews across the platform, translating emerging threats into practical, enforceable requirements.
- Prototype solutions, review security-critical systems code, and guide engineering teams through complex technical and product tradeoffs.
Requirements
- Deep experience designing or securing operating systems, kernels, embedded platforms, hypervisors, or other privileged systems software.
- Complex understanding of operating system internals, including memory protection, process isolation, executable loading, device drivers, and privilege boundaries.
- Experience building security architectures that span hardware, firmware, operating systems, applications, and cloud services.
- Practical expertise in secure boot, code signing, device identity, attestation, trusted execution, and hardware-backed key protection.
- Ability to write or review systems code in C, C++, Rust, or comparable languages, with a strong grasp of secure development and exploit mitigation.
- Rigorous threat modeling, influence cross-functional engineering teams, and communicate security tradeoffs clearly.
- Care deeply about user privacy, personal agency, and building systems that earn trust through their design.
Conditions
- Equal opportunity employer, no discrimination on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
- Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates.