> Markdown version of [/jobs/ext/2056939-ai-security-engineer](https://www.wearedevelopers.com/jobs/ext/2056939-ai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI Security Engineer - **Company:** Dynanet Corporation - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cyber Security, Computer Programming, Python (Programming Language), Node.Js, Open Source Technology, TypeScript, Microsoft Power Automate, Large Language Models, Prompt Engineering, GWAPT, Information Technology - **Published:** August 14, 2026 - **Apply:** https://recruiting.paylocity.com/recruiting/jobs/Apply/4419233/Dynanet-Corporation/AI-Security-Engineer ## About the Role Cloud & AI Platforms * Azure (Azure OpenAI, AI Studio, AKS, Key Vault, Entra ID, Defender), Microsoft Purview, and M365 Copilot governance. * Experience with AWS (Bedrock, SageMaker, KMS) or GCP Vertex AI. LLM/Agent Security * Hands-on guardrail implementation including content filters, safety classifiers, prompt injection defenses, jailbreak prevention, and tool whitelisting. * Securing RAG pipelines and vector databases (Cosmos DB + pgvector/FAISS, Pinecone, Weaviate). Identity & Access * OAuth/OIDC, SAML, SCIM, RBAC/ABAC; secrets management via Key Vault, Parameter Store, or Vault. Data Security * Encryption, tokenization, redaction, differential privacy basics, DLP-based PII/PHI detection. * Experience with data classification, retention, and lineage. Application Security & DevSecOps * STRIDE threat modeling, secure coding, dependency scanning, secret scanning, SAST/DAST. * CI/CD for AI apps (GitHub Actions/Azure DevOps), IaC (Bicep/Terraform), policy-as-code (OPA/Conftest/Azure Policy). Observability & Incident Response * Logging with Azure Monitor/Sentinel, tracing, metrics, and automated AI evaluation pipelines integrated with SIEM/SOAR. Compliance & Governance * Working knowledge of NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, and public sector controls. * Experience documenting controls, audits, and risk assessments. Programming & Frameworks * Proficiency in Python or TypeScript/Node.js. * Experience with agent/orchestration frameworks (LangChain, Semantic Kernel, Guidance, DSPy). Preferred Professional Skills: * 5-8+ years in application/cloud security with 2+ years in AI/ML or LLM security. * Experience enabling enterprise AI use cases or AI agents in regulated environments. * Familiarity with Microsoft Copilot for M365 governance and Microsoft Purview. * Experience with AI red teaming and building evaluation harnesses. * Exposure to privacy regulations (HIPAA, GLBA, GDPR/CCPA) and public-sector compliance. * Contributions to security frameworks or open-source guardrail tools Dynanet Team Requirements and Expectations: * Possess Strong written and verbal communication skills. * Highly organized with the ability to prioritize, balance, and effectively advance multiple competing priorities in a high-volume, fast-paced environment. * Ability to interact in a professional and collaborative manner with fellow Dynanet Teammates and the clients, and business partners that we work with. * Ability and desire to challenge and educate yourself to support and advance IT services delivery in the Federal agencies we serve. * Excellent judgment and creative problem-solving skills. * Respond to team member and client requests via email, MS teams, or other communication means during core business hours. * Active listening skills to understand clients' needs, and collaboration skills to work with other developers and designers. Education/Experience Requirements: * Relevant degree in Computer Science, Engineering, Cybersecurity, or equivalent experience. ## Description * Design reference architectures for secure LLM/AI agent deployments across Azure, AWS, or hybrid environments. * Establish defense-in-depth controls for model endpoints, vector databases, prompt routing, tools/plugins, and orchestration layers. Guardrails & Policy Enforcement * Implement runtime guardrails including prompt injection defenses, output content filtering, PII detection/redaction, jailbreak prevention, and tool use restrictions. * Codify enterprise policies (acceptable use, data residency, retention, secrets handling) into enforceable controls through middleware, gateways, and policy engines. Identity, Access & Data Protection * Integrate Entra ID / Azure AD, OAuth/OIDC, and RBAC/ABAC models. * Apply data security measures including DLP, encryption, key management/HSM, tokenization, and fine-grained data access for RAG pipelines. Secure SDLC for AI * Embed threat modeling, secure coding, dependency scanning, secret scanning, and SAST/DAST into AI app pipelines. * Define AI-specific code review checklists for prompt templates, tool bindings, and agent plans. Risk, Governance & Compliance * Operationalize NIST AI RMF, ISO/IEC 27001 & 42001, SOC 2; align with FedRAMP, FISMA, NIST 800-53, and agency-specific controls. * Maintain model cards, data lineage, evaluation reports, and audit trails for AI decisions and tool calls. AI Red Teaming & Evaluation * Design adversarial tests for jailbreaks, prompt injections, data exfiltration attempts, and toxic outputs. * Build automated evaluation harnesses and metrics such as hallucination rates, sensitive content occurrence, and tool misuse rates. Monitoring & Incident Response * Establish observability for AI systems including privacy-aware logging, policy hits, model drift detection, cost governance, and anomalies. * Define playbooks for AI incidents involving unsafe outputs, data leakage, compromised tools, or model endpoint abuse. Stakeholder Enablement * Partner with Product and Engineering teams to safely accelerate new AI use cases. * Provide training and guidance on responsible AI, secure agent design, and safe prompt engineering., * CISSP, CCSP, Azure Security Engineer (AZ-500), GIAC (GWEB/GWAPT/GXPN), OSCP. * Azure AI Engineer (AI-102), Azure Solutions Architect (AZ-305), AWS Security Specialty. * CISA, ISO 27001 Lead Implementer, Responsible AI certifications ## Related Videos - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) - [Do TypeScript without TypeScript](https://www.wearedevelopers.com/videos/327-do-typescript-without-typescript) - [Stop using Node.js like in 2020! What changed and what you can do today with Node.js](https://www.wearedevelopers.com/videos/100011-stop-using-node-js-like-in-2020-what-changed-and-what-you-can-do-today-with-node-js) - [Agentic employees in world's most downloaded FinTech app](https://www.wearedevelopers.com/videos/100123-agentic-employees-in-world-s-most-downloaded-fintech-app) - [Vuejs and TypeScript- Working Together like Peanut Butter and Jelly](https://www.wearedevelopers.com/videos/127-vuejs-and-typescript-working-together-like-peanut-butter-and-jelly) - [Stop Using Node.js Like It’s 2020! - Alfonso Graziano](https://www.wearedevelopers.com/videos/1863-stop-using-node-js-like-it-s-2020-alfonso-graziano) ## Related Articles - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Graph and AI Trends 2026: Why Is AI Running but Not Yet Delivering?](https://www.wearedevelopers.com/magazine/680-graph-and-ai-trends-2026-why-is-ai-running-but-not-yet-delivering) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [From Prototype to Production: Build AI Agents with This Free 4-Course Learning Path](https://www.wearedevelopers.com/magazine/655-from-prototype-to-production-build-ai-agents-with-this-free-4-course-learning-path) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Exploring AI: Opportunities and Risks for Developers](https://www.wearedevelopers.com/magazine/522-exploring-ai-opportunities-and-risks-for-developers)