> Markdown version of [/jobs/ext/1313774-ai-security-engineer](https://www.wearedevelopers.com/jobs/ext/1313774-ai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI Security Engineer - **Company:** People Ideas & Culture LLC - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $180,000.0 - $195,000.0 - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing Security, Code Generation, Cyber Security, Data Security, Cursor (Graphical User Interface Elements), Identity and Access Management, Python (Programming Language), Key Management, Network Segmentation, OAuth, OpenID, Red Team (Cyber Security), Security Assertion Markup Language (SAML), Secure Coding, Security Information and Event Management, Software Engineering, SQL Databases, Tokenization, TypeScript, Google Cloud, Large Language Models, Multi-Agent Systems, Prompt Engineering, Software Security, Bicep, Hashicorp, Machine Learning Operations, Terraform - **Published:** July 17, 2026 - **Apply:** https://jobs.military.com/career/281532/senior-ai-security-engineer-d-c-dc-washington ## About the Role * Secure coding knowledge across languages commonly produced by AI-driven workflows: Python, TypeScript/JavaScript, SQL, and IaC (Terraform/Bicep).\n * Strong command of identity protocols: OAuth 2.0, OIDC, SAML, SCIM, and their application to non-human identities.\n * Prompt engineering sufficient to construct and evaluate adversarial prompts for testing.\n * Experience with SIEM, CSPM, and runtime application security tools; ability to write detection logic and correlation rules.\n * Data security controls: encryption, tokenization, DLP, and secrets management (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault).\n * Scripting and automation skills for building internal security tooling (Python preferred).\n, * 8+ years of progressive information security experience across architecture, application security, identity, and data domains.\n * Hands-on use of Claude for application development, including system prompt design, tool-use configuration, and multi-agent orchestration.\n * Experience with the Model Context Protocol (MCP) ecosystem and securing MCP server deployments.\n * Red team or adversarial AI testing experience: model evasion, adversarial examples, jailbreak research.\n * Background in a regulated industry with data sensitivity requirements, healthcare a plus. \n * Contributions to AI security open-source projects, published research, or conference presentations (DEF CON AI Village, Black Hat, NeurIPS).\n * Demonstrated success securing AI/ML systems, LLM applications, or agentic AI platforms in a production environment.\n * Demonstrated experience building or securing applications developed substantially through LLM-assisted code generation (Claude, Copilot, Cursor, or equivalent).\n * Cloud-native security experience on at least one major provider (AWS, Azure, GCP), including IAM policy design, network segmentation, and secrets management.\n * Demonstrated success automating adversarial testing infrastructure include jailbreak suites, prompt injection harnesses, and regression pipelines tied to model and prompt changes\n * Relevant certifications: CISSP, CCSP, OSCP, AWS/Azure Security Specialty, or emerging AI security credentials.\n ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [The AI Security Survival Guide: Practical Advice for Stressed-Out Developers](https://www.wearedevelopers.com/videos/1015-the-ai-security-survival-guide-practical-advice-for-stressed-out-developers) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [The day the chatbot asked for sudo](https://www.wearedevelopers.com/videos/100038-the-day-the-chatbot-asked-for-sudo) - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems)