> Markdown version of [/jobs/ext/1408803-principal-application-security-engineer-ai-agentic-systems](https://www.wearedevelopers.com/jobs/ext/1408803-principal-application-security-engineer-ai-agentic-systems). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Application Security Engineer - AI & Agentic Systems - **Company:** CVS Health - **Location:** Concord, NH, United States - **Experience:** Experienced - **Salary:** $144,200.0 - $288,400.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Artificial Intelligence, Amazon Web Services, Applications Architecture, Microsoft Azure, C Sharp (Programming Language), Cyber Security, Computer Programming, Information Leak Prevention, Data Security, Python (Programming Language), Software Vulnerability Management, Enterprise Software Applications, Large Language Models, Multi-Agent Systems, Software Security, Reliability of Systems, Generative AI, AI Platforms, Machine Learning Operations, Virtual Agents, Serverless Computing, Microservices - **Published:** July 23, 2026 - **Apply:** https://dejobs.org/x/x/48BFF440DF474E909CC12E54FD11EF08/job/ ## About the Role * 10+ years of experience designing, building, and securing large-scale applications and platforms. * 7+ years of expertise in application security, including threat modeling, secure design, and vulnerability management. * 7+ years of programming experience in one or more languages such as Python, Java, JavaScript, C#, or Go. * 5+ years of experience of developing and securing AI and ML workloads, with recent experience in generative AI and agentic workloads. * 5+ years of experience public cloud platforms (AWS, Azure, and/or GCP) and modern application architectures. * 3+ years of experience with containerized, serverless, and microservice-based architectures., * Hands-on experience securing AI agents, RAG pipelines, and tool-using LLM systems. * Proven ability to lead complex security initiatives from concept through enterprise-scale adoption. * Familiarity with AI governance, responsible AI principles, and emerging AI security standards. * Experience integrating security controls into CI/CD pipelines for AI and application workloads. * Strong understanding of compliance frameworks (PCI, HIPAA, NIST, HITRUST, CSA). * Experience influencing security strategy beyond a single team, including enterprise or platform-level impact. * Contributions to security research, open-source projects, or industry communities., * Bachelor's degree or equivalent experience (High School Diploma and 4 years relevant experience) ## Description Development, Standards & Secure Design * Lead development and enforcement of application and AI security policies, standards, and guardrails, embedding security-by-design across both traditional and AI-driven systems. * Establish secure design patterns for AI agent frameworks, covering prompt management, tool invocation, memory handling, autonomy boundaries, and escalation controls. * Promote organization-wide awareness of AI-specific risks such as model misuse, prompt injection, data leakage, and unsafe agent behavior. AI & Agentic Security Architecture * Serve as the principal SME for securing AI-enabled applications and agentic system architectures. * Architect and review secure designs for systems leveraging LLMs/foundation models, autonomous and semi-autonomous agents, RAG pipelines, and tool-using or decision-making workflows. * Define identity, authorization, data access, and observability controls specific to agentic environments while partnering closely with AI platform, product, and data teams to ensure responsible AI delivery. Collaboration, Leadership & Influence * Influence engineering and product teams to integrate secure engineering practices and align security with compliance, privacy, and responsible AI initiatives. * Advise senior leadership on AI security implications, architectural decisions, and long-term strategy while shaping roadmaps that anticipate emerging AI threats and regulatory requirements. Testing, Analysis & Risk Management * Lead advanced security testing and risk assessments for AI-enabled systems, including threat modeling of agent workflows, abuse/misuse analysis, and secure design reviews of AI pipelines. * Evaluate and guide adoption of new AI security tools, ensuring protections maintain confidentiality, integrity, availability, and responsible data use. Operational Response & Continuous Improvement * Provide senior technical leadership during incidents involving application or AI systems, guiding response strategies for misuse, data exposure, and autonomous failures. * Translate operational learnings into improved security architecture, controls, and system resilience. Mentorship, Innovation & Strategy * Mentor senior and principal engineers to elevate security maturity across the organization. * Contribute to research and evaluation of emerging AI security practices and play a key role in shaping the long-term application and AI security roadmap, advocating for security as a strategic accelerator for AI adoption. ## Related Videos - [The Private AI Platform: Why Agentic Apps Need a Private Application Platform](https://www.wearedevelopers.com/videos/100162-the-private-ai-platform-why-agentic-apps-need-a-private-application-platform) - [This App Reached 10,000 Users in One Week. Here's How.](https://www.wearedevelopers.com/videos/100329-this-app-reached-10-000-users-in-one-week-here-s-how) - [Microservices: how to get started with Spring Boot and Kubernetes](https://www.wearedevelopers.com/videos/242-microservices-how-to-get-started-with-spring-boot-and-kubernetes) - [Your imaginations is (no longer) the limit: how Generative AI empowers people to be creative](https://www.wearedevelopers.com/videos/741-your-imaginations-is-no-longer-the-limit-how-generative-ai-empowers-people-to-be-creative) - [GenAI Is a Junior Dev With Root Access](https://www.wearedevelopers.com/videos/100191-genai-is-a-junior-dev-with-root-access) - [Supercharge your cloud-native applications with Generative AI](https://www.wearedevelopers.com/videos/950-supercharge-your-cloud-native-applications-with-generative-ai) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [What is Agentic Programming and Why Should Developers Care?](https://www.wearedevelopers.com/magazine/625-what-is-agentic-programming-and-why-should-developers-care) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [From Prototype to Production: Build AI Agents with This Free 4-Course Learning Path](https://www.wearedevelopers.com/magazine/655-from-prototype-to-production-build-ai-agents-with-this-free-4-course-learning-path)