> Markdown version of [/jobs/ext/1265806-senior-ai-security-engineer](https://www.wearedevelopers.com/jobs/ext/1265806-senior-ai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior AI Security Engineer - **Company:** Council For Affordable Quality Healthcare, Inc. - **Location:** Washington, DC, United States (Remote available) - **Experience:** Expert - **Salary:** $180,000.0 - $195,000.0 - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Artificial Intelligence, Amazon Web Services, Audit Trail, Microsoft Azure, Cloud Computing Security, Code Generation, Cyber Security, Databases, Continuous Integration, Extract Transform Load (ETL), Data Security, Cursor (Graphical User Interface Elements), Identity and Access Management, Information Systems Security Architecture Professional, Python (Programming Language), Key Management, Network Segmentation, OAuth, OpenID, Open Web Application Security, Systems Development Life Cycle, Red Team (Cyber Security), Security Assertion Markup Language (SAML), Secure Coding, Security Information and Event Management, Software Engineering, SQL Databases, Tokenization, TypeScript, AI Infrastructure, Google Cloud, Cloud Platform System, Data Ingestion, Large Language Models, Multi-Agent Systems, Prompt Engineering, Software Security, Backend, Bicep, Hashicorp, Build Process, Machine Learning Operations, Front End Software Development, Virtual Agents, Terraform, Web Api - **Published:** July 14, 2026 - **Apply:** https://www.disabledperson.com/jobs/73653712-senior-ai-security-engineer ## About the Role * Secure coding knowledge across languages commonly produced by AI-driven workflows: Python, TypeScript/JavaScript, SQL, and IaC (Terraform/Bicep). * Strong command of identity protocols: OAuth 2.0, OIDC, SAML, SCIM, and their application to non-human identities. * Prompt engineering sufficient to construct and evaluate adversarial prompts for testing. * Experience with SIEM, CSPM, and runtime application security tools; ability to write detection logic and correlation rules. * Data security controls: encryption, tokenization, DLP, and secrets management (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault). * Scripting and automation skills for building internal security tooling (Python preferred). * Custom CI/CD security gate development - policy checks written from scratch, not scanner configuration * Vector database internals (pgvector, Pinecone, Weaviate) - access controls, audit logging, poisoning detection. * Red team automation for LLMs - adversarial prompt generation and evasion testing at scale * Deep familiarity with AI orchestration frameworks (LangChain, LangGraph, AutoGen, Claude Agent SDK, or similar) and their security characteristics. * Engineer programmatic agent kill-switch and rollback mechanisms triggered by behavioral thresholds * Track record delivering security architecture artifacts: threat models, reference architectures, security requirements, and control frameworks. * Build secure memory and context management layers for multi-agent systems - encryption, access scoping, and TTL enforcement, * 8+ years of progressive information security experience across architecture, application security, identity, and data domains. * Hands-on use of Claude for application development, including system prompt design, tool-use configuration, and multi-agent orchestration. * Experience with the Model Context Protocol (MCP) ecosystem and securing MCP server deployments. * Red team or adversarial AI testing experience: model evasion, adversarial examples, jailbreak research. * Background in a regulated industry with data sensitivity requirements, healthcare a plus. * Contributions to AI security open-source projects, published research, or conference presentations (DEF CON AI Village, Black Hat, NeurIPS). * Demonstrated success securing AI/ML systems, LLM applications, or agentic AI platforms in a production environment. * Demonstrated experience building or securing applications developed substantially through LLM-assisted code generation (Claude, Copilot, Cursor, or equivalent). * Cloud-native security experience on at least one major provider (AWS, Azure, GCP), including IAM policy design, network segmentation, and secrets management. * Demonstrated success automating adversarial testing infrastructure include jailbreak suites, prompt injection harnesses, and regression pipelines tied to model and prompt changes * Relevant certifications: CISSP, CCSP, OSCP, AWS/Azure Security Specialty, or emerging AI security credentials. ## Description The Senior AI Security Engineer is the organizational authority on securing AI-driven technology. As end-to-end application delivery has shifted to large language model (LLM)-driven development, the traditional SDLC security model no longer applies. This role designs and enforces security across the full AI delivery surface: model configuration and risk, prompt pipelines, agentic workflows, data ingestion and ETL, cloud-native infrastructure, and the identity and access controls that underpin all of it. The AI Security Engineer embeds security into the build process itself, partners across engineering and data teams, and translates AI-specific threat knowledge into practical, enforceable controls. The Senior AI Security Engineer is a full-time, remote, exempt position and reports to the Sr. Director, Security Architecture and Operations. Specific Responsibilities This role spans the full security lifecycle for AI systems from architecture and identity design through build, runtime, and incident response. * Threat modeling and risk assessment: Lead threat modeling for AI capabilities, agentic features, and integrations. Maintain a living threat model aligned to OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI RMF, and translate findings into prioritized, actionable controls. * Secure architecture: Own and maintain the AI security reference architecture covering model hosting, orchestration, tool use, MCP server deployments, and observability. Establish security patterns for new capabilities before they reach production. * AI model and pipeline security: Evaluate foundation models for data-leakage risk and supply-chain provenance. Harden prompt pipelines against injection, jailbreaking, and context poisoning. Secure fine-tuning pipelines, RAG architectures, and embedding stores with appropriate access controls and poisoning detection. * Agentic AI security: Define trust boundaries, tool call authorization, privilege scoping, and human-in-the-loop escalation policies for multi-agent systems. Ensure agents operate under least-privilege identities with revocable, short-lived credentials. * AI-generated code and build security: Establish review, testing, and gating processes for AI-generated code across frontend, backend, IaC, and CI/CD. Embed security requirements and policy-as-code checks directly into Claude system prompts and project instructions used for development. Enforce SCA/SBOM generation, dependency allowlisting, and secrets management for all LLM-driven build outputs. * Identity and access management: Define and enforce identity patterns for both human and non-human (agent) identities. Apply zero-trust principles to all model API calls, vector store queries, and external tool invocations. Every request must be authenticated, authorized, and logged. Architect OAuth/OIDC delegation patterns for agentic flows with bounded scopes and session limits. * Data protection and ETL security: Classify and control data flowing into LLM context windows, vector databases, and training pipelines. Secure ETL and ingestion pipelines against poisoning and schema drift. Enforce masking, tokenization, and access controls to prevent regulated data (PII, PHI, PCI) from appearing in model inputs, outputs, or logs. Extend DLP coverage to LLM prompt submissions and completions. * Detection, monitoring, and response: Instrument AI infrastructure with behavioral telemetry. Write detection rules for prompt injection attempts, anomalous agent behavior, and data exfiltration through LLMs. Serve as SME for AI-related security incidents, including model abuse, pipeline compromise, and agentic runaway actions. * Compliance and audit: Support SOC 2, HIPAA, ISO 27001, and NIST AI RMF compliance as applied to AI systems. Maintain control mappings, evidence, and audit documentation. Evaluate and deploy AI-specific security tooling (LLM firewalls, guardrail frameworks, agent monitoring) and integrate with SIEM/SOAR. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [The day the chatbot asked for sudo](https://www.wearedevelopers.com/videos/100038-the-day-the-chatbot-asked-for-sudo) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) ## Related Articles - [From Prototype to Production: Build AI Agents with This Free 4-Course Learning Path](https://www.wearedevelopers.com/magazine/655-from-prototype-to-production-build-ai-agents-with-this-free-4-course-learning-path) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this) - [What is Agentic Programming and Why Should Developers Care?](https://www.wearedevelopers.com/magazine/625-what-is-agentic-programming-and-why-should-developers-care) - [9 Claude Code Skills to Speed Up Your Workflow](https://www.wearedevelopers.com/magazine/740-9-claude-code-skills-to-speed-up-your-workflow)