Staff Information Security Engineer - AI First

New
R
RithumE-commerce technology
United States - RemoteFull-TimeStaff
Salary$170,000-$220,000 per year
Apply NowOpens the employer's application page

Job Details

Experience
5+ years of security engineering experience
Required Skills
AWSPythonTerraform

Requirements

  • 5+ years of security engineering experience with demonstrated AI/ML security depth (prompt injection, model supply chain, adversarial inputs, RAG).
  • Experience using AI tools (ChatGPT, Copilot, Claude) and LLM frameworks/APIs (OpenAI, Anthropic, LangChain).
  • Hands-on identity and access expertise across modern enterprise and cloud identity stacks.
  • Proficiency in infrastructure and policy-as-code (e.g., Terraform, OPA/Rego).
  • Proficiency in a scripting language for automation (Python preferred).
  • Cloud security expertise, including multi-account governance and preventive guardrails (AWS Solutions Architect/Security Specialty or equivalent).
  • Application security expertise (OWASP Top 10, OWASP LLM/GenAI Top 10, secure SDLC).
  • Proficiency in threat-modeling methodologies (STRIDE, PASTA, or equivalent).
  • Practical experience integrating security tooling such as SIEM, CSPM, SAST, DAST, and SCA.
  • Working knowledge of SOC 2 and/or ISO 27001 control frameworks.

Responsibilities

  • Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and implementation.
  • Implement preventive, default-on security controls codified as policy- and infrastructure-as-code across cloud and enterprise environments.
  • Implement and enforce identity and access controls, including access boundaries for AI systems and non-human identities.
  • Assist in maintaining the InfoSec risk register and translate emerging threats into actionable guidance for engineering teams.
  • Support third-party and vendor risk assessments, focusing on vendors using AI pipelines.
  • Automate repetitive security workflows and build AI-assisted security agents with appropriate human-in-the-loop gates.
  • Integrate security tooling such as SIEM, CSPM, and DAST/SAST with LLM layers for automated response.
  • Define and enforce security requirements for AI-powered features, including prompt-injection mitigations and output validation.
  • Conduct threat modeling on agentic and LLM-based systems, addressing novel attack surfaces like indirect prompt injection.
View Full Description & ApplyYou'll be redirected to the employer's site
$170,000-$220,000 per year
Apply Now