Lead AI Application Security Engineer

GXO Logistics
United States
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Artificial Intelligence Amazon Web Services Software Applications Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration Information Engineering Information Leak Prevention
+22 more
Identity and Access Management Machine Learning Open Web Application Security Azure Machine Learning Secure Coding Strategies of Testing AI Infrastructure Data Logging Google Cloud Large Language Models Snowflake Software Security HybridCloud Amazon Virtual Private Cloud (VPC) AI Platforms Kubernetes Information Technology Machine Learning Operations Checkmarx Virtual Agents Oracle Cloud Infrastructure Devsecops

Job description

As the Lead AI Application Security Engineer, you will serve as the technical lead for securing GXO’s Enterprise AI Platform and AI-powered applications. You will define AI security architecture, testing methodologies, and secure development standards while partnering with application, cloud, data, and security teams to ensure AI solutions are designed, deployed, and operated securely across GXO’s global technology environment. Pay, benefits and more. We are eager to attract the best, so we offer competitive compensation and a generous benefits package, including full health insurance (medical, dental and vision), 401(k), life insurance, disability and the opportunity to participate in a company incentive plan. What you’ll do on a typical day:

  • Lead security testing and AI red teaming for GXO’s AI applications, including LLMs, agentic AI systems, ML models, and the Enterprise AI Platform, identifying risks across prompt injection, model manipulation, data leakage, RAG pipelines, and AI supply chains
  • Design, implement, and maintain AI-aware DevSecOps practices by integrating AI security controls into CI/CD pipelines, cloud infrastructure, model deployments, and runtime environments
  • Develop and maintain secure AI development standards, threat models, and security architecture for AI/ML workloads, ensuring alignment with industry frameworks and GXO security policies
  • Evaluate, implement, and manage AI security tooling, including AI firewalls, prompt injection detection, runtime protections, model scanning, and AI security automation while supporting build-versus-buy decisions
  • Partner with application, cloud, infrastructure, data engineering, and Information Security teams to integrate AI security into enterprise architecture, platform development, incident response, governance, and continuous improvement initiatives

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or equivalent related work or military experience, along with relevant AI, cloud, or application security certifications
  • 7+ years of experience in application security, DevSecOps, cloud security engineering, or security engineering with progressive technical leadership responsibilities
  • Hands-on experience securing AI/ML platforms, LLM applications, agentic AI systems, or enterprise AI infrastructure
  • Strong expertise in application security, secure CI/CD pipelines, Kubernetes, container security, API security, Infrastructure-as-Code, cloud security, and DevSecOps practices
  • Experience with Google Cloud Platform security, including Vertex AI, GKE, IAM, KMS, VPC Service Controls, Cloud Logging, and cloud-native AI workloads
  • Deep understanding of AI security frameworks and methodologies, including OWASP Top 10 for LLMs, OWASP Agentic Applications, MITRE ATLAS, NIST AI RMF, AI threat modeling, prompt injection defense, model supply chain security, and AI red teaming

It’d be great if you also have:

  • Experience securing AWS, Azure, OCI, or hybrid cloud environments, including enterprise identity and access management platforms and Snowflake security
  • Experience with AI security tooling such as NVIDIA Garak, Microsoft PyRIT, Promptfoo, Wiz, Checkmarx, Invicti, or similar AI security platforms
  • Knowledge of EU AI Act requirements, AI governance, model lifecycle security, MLOps/LLMOps, Lean automation, and enterprise AI compliance frameworks

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance
  • Vision insurance
  • Dental insurance
  • Life insurance

About the company

At GXO, we’re constantly looking for talented individuals at all levels who can deliver the caliber of service our company requires. You know that a positive work environment creates happy employees, which boosts productivity and dedication. On our team, you’ll have the support to excel at work and the resources to build a career you can be proud of., GXO is a leading provider of cutting-edge supply chain solutions to the most successful companies in the world. We help our customers manage their goods most efficiently using our technology and services. Our greatest strength is our global team - energetic, innovative people of all experience levels and talents who make GXO a great place to work.

We are proud to be an Equal Opportunity employer including Disabled/Veterans.

GXO adheres to CDC, OSHA and state and local requirements regarding COVID safety. All employees and visitors are expected to comply with GXO policies which are in place to safeguard our employees and customers.

All applicants who receive a conditional offer of employment may be required to take and pass a pre-employment drug test.

The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of personnel so classified. All employees may be required to perform duties outside of their normal responsibilities from time to time, as needed. Review GXO’s candidate privacy statement here.

You must create an Indeed account before continuing to the company website to apply

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:00 min

Top security vulnerabilities for AI applications

Deepu Deepu · WWC 2025

1:33 min

Integrating internal APIs and maintaining data sovereignty

Mahran Meißner Mahran Meißner · WWC Europe 2026

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:08 min

Essential engineering roles in the generative AI space

Mary Grygleski Mary Grygleski · LIVE

2:46 min

Transforming data architecture from on-premise to cloud

Sandhya Menon Sandhya Menon · WWC Europe 2026

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all