
Senior Product Security Engineer
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in Ireland.
• Oversee the design and execution of secure, scalable, and reliable products within AlphaSense’s AI-native platform.
• Collaborate with architects, engineering, and product teams to integrate security by design throughout the software development lifecycle.
• Design and enforce security measures for AI/ML systems, encompassing model training, data pipelines, inference environments, and agentic workflows.
• Identify and address AI-specific attack vectors such as prompt injection, data poisoning, model inversion, and model theft.
• Implement controls for model provenance, integrity, and auditability.
• Align AI security initiatives with governance and compliance teams according to frameworks like NIST AI RMF and the EU AI Act.
• Establish and uphold secure development standards, guidelines, and best practices.
• Lead threat modeling, secure design evaluations, and risk assessments.
• Develop and sustain security automation and governance integrated into development workflows.
• Generate customer-facing security assurance materials, including questionnaire responses, security whitepapers, and trust collateral.
• Represent product security in discussions with customers, cross-functional teams, and leadership.
• Mentor teams in secure coding practices, AI risk management, and secure design principles.
• Foster a security-first culture through advocacy, documentation, and training.
• 5–7+ years of experience in product, application, or cloud security engineering.
• Extensive knowledge of secure SDLC, threat modeling, and secure architecture design.
• Capability to review and analyze code for informing threat models and design assessments.
• Experience in securing AI/ML pipelines, data workflows, and model-serving infrastructures.
• Familiarity with AI/LLM security, including prompt injection, model integrity, and provenance.
• Demonstrated expertise in cloud security concepts and best practices across multi-cloud environments.
• Understanding of DevSecOps and CI/CD frameworks.
• Knowledge of encryption fundamentals, including symmetric and asymmetric cryptography, TLS/mTLS, key management, and secrets management.
• Understanding of OAuth 2.0, OIDC, SAML, RBAC, and ABAC.
• Ability to lead cross-functional security initiatives alongside engineering, product, and compliance teams.
• Proficiency in Python, Java, and/or JavaScript for security automation and tooling (preferred).
• Knowledge of container and orchestration security, including Kubernetes runtime protection (preferred).
• Experience with software supply chain security and artifact integrity verification (preferred).
• Familiarity with bug bounty programs (preferred).
• Knowledge of SOC 2, ISO 27001, NIST 800-53, and NIST AI RMF (preferred).
• Relevant certifications such as CKS, CISSP, CSSLP, or AI/ML security credentials (preferred).
• Performance-based bonus.
• Equity options.
• Comprehensive benefits program.
• Competitive salary.
• Opportunities for career advancement.
• Commitment to equal opportunity employment.
• Reasonable accommodations for qualified employees with protected disabilities.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.