Skip to main content

Infrastructure & Security

Head of Enterprise Infrastructure

Full-timeHybrid, US (Detroit preferred)

Ready to apply? Send your resume to careers@maacverify.ai.

Submit resume

About the role

MaacVerify, Inc. is an independent AI performance verification and certification company. We assess AI deployments inside client environments in regulated sectors (healthcare, financial services, legal) using the MAAC framework, a nine-dimension psychometric instrument validated through doctoral research in Industrial and Systems Engineering. We do not build, sell, or train AI systems, and we do not advise on governance, compliance, or remediation. We measure AI performance and issue certification decisions. Independence is the product. The company is pre-revenue and founder-led, with the methodology, research base, intellectual property, and platform in place. This is a founding team position: high ownership, high accountability, compensated in founding equity under the structure described below. MaacVerify's platform is startup-ready. Your mandate is to make it enterprise-ready. The Head of Enterprise Infrastructure owns the infrastructure that lets MaacVerify run assessments inside regulated client environments: secure client-side assessment infrastructure, deployment into restricted and air-gapped environments, audit-ready engagement records, and the company's own security and compliance posture. The client-side assessment infrastructure is the single most critical enterprise-readiness gap in the company today, and closing it is this role's first deliverable. Boundary with Platform Engineering: the Head of Platform Engineering owns the product platform and application build. This role owns secure deployment, infrastructure operations, data handling in regulated environments, and compliance infrastructure. The two roles collaborate daily and own different failure modes.

What you will do

  • Client-side assessment infrastructure. Design and build the infrastructure for running MAAC assessments inside client environments, including on-premises and air-gapped deployments, without compromising chain-of-custody or scoring integrity.
  • Secure data handling. Architect data handling for regulated contexts (clinical, financial, legal), covering encryption, isolation, retention, and destruction, to a standard that survives client security review and regulator scrutiny.
  • Audit-ready records. Build and operate the timestamped audit trail and chain-of-custody systems that underpin every certification: evidence that baseline parameters were locked before client data was observed, and that no client personnel touched scoring or decisions.
  • Infrastructure operations. Own hosting, containerized deployment, observability, backup, and disaster recovery for the current stack (Node.js/Fastify, Prisma, PostgreSQL, Redis, Docker; Next.js/TypeScript frontend), and lead its migration to enterprise-grade hosting as engagements demand it.
  • Security and compliance posture. Drive MaacVerify's own SOC 2 path from zero to audit, own enterprise security questionnaires and vendor risk reviews, and keep the company's posture consistent with what it demands of the systems it certifies.
  • Multi-tenant hardening. Harden the multi-tenant backend for enterprise isolation, access control, and least-privilege operations.
  • AI-leveraged delivery. Work fluently with AI-assisted development tooling. The company builds with AI leverage under human accountability, and applies to itself the standard it applies to the systems it certifies.

What we are looking for

  • Regulated-environment experience. Hands-on infrastructure and security work in regulated or high-compliance environments (healthcare, financial services, PCI, or equivalent), including passing real audits.
  • Compliance build experience. Direct experience standing up SOC 2 (or ISO 27001) from scratch: policies, controls, evidence collection, and the audit itself.
  • Deployment depth. Containerized deployment, infrastructure as code, and experience delivering software into restricted, on-premises, or air-gapped environments.
  • Stack fluency. Working depth in TypeScript/Node.js services, PostgreSQL, and Redis; comfort operating and improving an existing production stack rather than rewriting it.
  • AI-assisted engineering. Daily fluency with AI coding tools (Claude Code, Cursor, or equivalent) with disciplined review practices.
  • Founding temperament. Builder over spectator. Comfort with equity-first economics, clear ownership, and being measured on shipped, audited, defensible systems.

Compensation

Founding roles are equity-compensated during launch, with a contractual path to salary: a defined revenue trigger converts each role to a market-anchored base salary with benefits, plus a milestone equity grant that vests at conversion. Equity-first now, salaried later, on documented terms rather than promises.