AI Security & Compliance Engineer (AI/ML Security / GenAI Risk / Cloud Security / DevSecOps)

United Software Group, Inc.
Jersey City, NJ, United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$145,600.0 - $160,160.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Software System Penetration Testing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration Information Leak Prevention Data Security Identity and Access Management
+21 more
Information Systems Security Architecture Professional Key Management Network Segmentation Open Source Technology Systems Development Life Cycle Azure Machine Learning Software Vulnerability Management Data Logging Cloud Platform System Delivery Pipeline Large Language Models Software Security Generative AI AI Platforms Kubernetes Machine Learning Operations Virtual Agents Terraform Devsecops Vulnerability Analysis Microservices

Job description

seeking an AI Security & Compliance Engineer to ensure AI and GenAI systems on AIRP (AI Ready Platform) are designed, deployed, and operated securely and in compliance with enterprise technology, cybersecurity, privacy, and regulatory standards. The role covers emerging LLM risks as well as traditional AWS cloud, application, data-security, DevSecOps, and IaC controls. Client-Specific Emphasis

  • Security must cover AWS-hosted AIRP, Terraform/IaC templates, CI/CD pipelines, cloud engineering patterns, AI applications, and model/data access controls.
  • The role must help create reusable controls that work across multiple business AI use cases and can support the broader cloud-agnostic blueprint.
  • Power Platform / Copilot Studio governance, data-loss prevention, connector controls, and citizen-development oversight are valuable plus areas.

Primary Ownership

  • Security architecture and control implementation for AI platforms, LLM applications, RAG pipelines, model-serving environments, and agentic systems.
  • Threat modeling, AI red teaming, vulnerability assessment, risk remediation, and secure production approvals.
  • Security evidence, control documentation, and compliance support for AIRP releases, Terraform/IaC, and DevOps pipelines., * Design and review secure architectures for AI/ML platforms, LLM applications, RAG pipelines, model-serving environments, and agentic AI workflows.
  • Conduct threat modeling for prompt injection, jailbreaks, insecure tool use, model inversion, data leakage, retrieval poisoning, adversarial inputs, unauthorized access, and third-party model risk.
  • Implement controls for AWS IAM, encryption, key management, secrets management, network segmentation, API security, logging, secure data handling, and data-loss prevention.
  • Embed security into MLOps, LLMOps, CI/CD, container security, infrastructure-as-code, Terraform modules, and deployment pipelines.
  • Review cloud-agnostic IaC templates and AWS-specific deployments for least privilege, secure defaults, segregation of duties, policy compliance, and auditability.
  • Review third-party models, APIs, open-source packages, AI tools, and vendor platforms for security, privacy, model supply-chain, and compliance risks.
  • Build monitoring and alerting for suspicious AI usage, anomalous access, policy violations, unsafe interactions, and potential data leakage.
  • Support AI red teaming, penetration testing, vulnerability management, incident response, remediation planning, and production-readiness reviews.
  • Maintain audit-ready documentation for controls, testing, risk acceptance, remediation, and production approvals., Distinguished AI Engineer (Agentic AI Platform) At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an i…
  • 1 day ago +

Requirements

  • Strong background in cybersecurity, cloud security, application security, DevSecOps, or technology risk.
  • Experience securing cloud-native platforms, APIs, microservices, containers, Kubernetes, CI/CD pipelines, and infrastructure-as-code.
  • Strong AWS cloud security exposure or comparable hyperscaler security depth, including IAM, encryption, network controls, logging, secrets, and secure deployment patterns.
  • Understanding of AI/ML and GenAI-specific risks such as prompt injection, adversarial attacks, data leakage, model misuse, retrieval poisoning, model supply-chain risk, and unsafe tool use.
  • Familiarity with threat modeling, vulnerability management, security testing, incident response, secure SDLC, DevSecOps, and Terraform/IaC controls.
  • Ability to work directly with engineering teams to implement practical, risk-based controls.

Preferred Experience

  • Experience securing AI/ML platforms or GenAI applications in production.
  • Financial-services security, technology risk, regulatory, compliance, privacy, or audit experience.
  • Familiarity with AI red teaming, secure RAG design, LLM gateways, Power Platform governance, Copilot Studio controls, data-loss prevention, and privacy-by-design controls.

Benefits & conditions

  • $70.00-77.00 per hour Join a leading digital health technology company’’s engineering team to help build and secure the cloud infrastructure behind software that connects hospitals, clinicians, and pati…

  • 15 days ago + *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

1:29 min

Managing security vulnerabilities and data privacy compliance issues

Sergej Reznik Sergej Reznik · Europe 2026 Virtual

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

4:15 min

Security integration and AI skepticism in developer tooling

Chris Heilmann +2 · LIVE

Videos

See all

Related articles

See all