
AI Security Engineer
Posted 7 hours ago

Posted 7 hours ago
This is a fully remote position, open to applicants in Maryland.
• Create reference architectures for secure LLM/AI agent implementations across Azure, AWS, or hybrid environments.
• Develop defense-in-depth measures for model endpoints, vector databases, prompt routing, tools/plugins, and orchestration layers.
• Enforce runtime guardrails such as prompt injection defenses, output content filtering, PII detection/redaction, jailbreak prevention, and tool usage restrictions.
• Transform enterprise policies into enforceable controls using middleware, gateways, and policy engines.
• Integrate Entra ID/Azure AD, OAuth/OIDC, and RBAC/ABAC models into systems.
• Utilize DLP, encryption, key management/HSM, tokenization, and fine-grained data access for RAG pipelines.
• Incorporate threat modeling, secure coding practices, dependency scanning, secret scanning, and SAST/DAST into AI application pipelines.
• Create AI-specific code review guidelines for prompt templates, tool bindings, and agent plans.
• Operationalize AI security and compliance frameworks, managing model cards, data lineage, evaluation reports, and audit trails.
• Design adversarial tests and automated evaluation harnesses to assess AI security vulnerabilities.
• Establish AI observability, privacy-aware logging, policy-hit monitoring, model-drift detection, cost governance, and anomaly detection processes.
• Develop incident-response playbooks for unsafe outputs, data leakage, compromised tools, and model endpoint misuse.
• Collaborate with Product and Engineering teams to facilitate the safe use of AI applications.
• Offer training and guidance on responsible AI practices, secure agent design, and safe prompt engineering.
• A relevant degree in Computer Science, Engineering, Cybersecurity, or equivalent experience.
• 5–8+ years of experience in application/cloud security with at least 2 years focused on AI/ML or LLM security.
• Proven experience in designing secure LLM/AI agent deployments across Azure, AWS, or hybrid environments.
• Hands-on experience with guardrail implementation, including content filters, safety classifiers, prompt injection defenses, jailbreak prevention, and tool whitelisting.
• Familiarity with securing RAG pipelines and vector databases.
• Knowledge of Azure OpenAI, AI Studio, AKS, Key Vault, Entra ID, Defender, Microsoft Purview, and M365 Copilot governance.
• Experience with AWS Bedrock, SageMaker, and KMS or GCP Vertex AI.
• Understanding of OAuth/OIDC, SAML, SCIM, RBAC/ABAC, and secrets management.
• Knowledge pertaining to encryption, tokenization, redaction, differential privacy basics, DLP-based PII/PHI detection, data classification, retention, and lineage.
• Familiarity with STRIDE threat modeling, secure coding, dependency scanning, secret scanning, SAST/DAST, CI/CD, IaC, and policy-as-code methodologies.
• Experience with Azure Monitor/Sentinel, tracing, metrics, SIEM/SOAR, and automated AI evaluation pipelines.
• Working knowledge of NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, and public-sector controls.
• Proven experience in documenting controls, audits, and risk assessments.
• Proficiency in Python or TypeScript/Node.js programming languages.
• Experience with LangChain, Semantic Kernel, Guidance, or DSPy.
• Exceptional written and verbal communication skills.
• Ability to manage multiple competing priorities in a high-volume, fast-paced environment.
• Capable of interacting professionally and collaboratively with colleagues, clients, and business partners.
• Demonstrated ability to support and enhance IT service delivery in federal agencies.
• Excellent judgment and creative problem-solving abilities.
• Availability to respond to requests via email, MS Teams, or other communication platforms during core business hours.
• Strong active listening and collaboration skills.
• Certifications that are considered advantageous include CISSP, CCSP, AZ-500, GIAC, OSCP, AI-102, AZ-305, AWS Security Specialty, CISA, ISO 27001 Lead Implementer, and Responsible AI certifications.
• Competitive compensation aligned with industry standards.
• Comprehensive medical and dental insurance coverage.
• Generous paid time off and holiday policies.
• 401(k) retirement plans with matching contributions.
• Flexible remote work options.*
• Paid training opportunities.
• Employee referral program available.
• Ongoing employee development initiatives.
OCHIN, Inc.
Solutions for Information Design, Inc.
Fuze Health
LG Energy Solution Vertech, Inc.
Get handpicked remote jobs straight to your inbox weekly.