> Markdown version of [/jobs/ext/2172729-sr-ai-security-engineer](https://www.wearedevelopers.com/jobs/ext/2172729-sr-ai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. AI Security Engineer - **Company:** WIDENET CONSULTING, LLC - **Location:** Seattle, WA, United States - **Experience:** Expert - **Salary:** $176,800.0 - $197,600.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Audit Trail, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Computing Security, Data Control, Information Leak Prevention, Extract Transform Load (ETL), Data Mining, Python (Programming Language), Key Management, OAuth, Open Web Application Security, Red Team (Cyber Security), Zero Trust Network Access, Microsoft Power Automate, Office365, Large Language Models, Generative AI, GPT - **Published:** August 21, 2026 - **Apply:** https://widenet-consulting.com/openings/7017/#apply-now ## About the Role 7+ years in security engineering, with 2+ years securing AI, ML, or generative AI systems in production - Hands-on experience deploying or operating an AI gateway, LLM proxy, or equivalent centralized AI control plane - Demonstrated understanding of LLM and agent attack surface: prompt injection, data leakage through model output, insecure tool use, supply chain risk in models and dependencies - Practical familiarity with OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF - Strong cloud security background, Azure preferred, including identity, network, and workload controls - Python proficiency and comfort working with model APIs, SDKs, and evaluation tooling - Experience partnering with engineering and data teams as an advisor rather than a gatekeeper Preferred - Experience with Microsoft 365 Copilot security posture, including oversharing remediation and sensitivity label enforcement - Familiarity with AI red team tooling such as PyRIT or Garak - Experience with MCP architecture and tool authorization patterns - Experience with Microsoft Defender for Cloud Apps, Purview, or an equivalent DSPM platform in an AI context - Working knowledge of ISO/IEC 42001 or the EU AI Act - Certifications: CISSP, AZ-500, SC-100, CCSP ## Description This position will support AI workloads across our client and reduce AI risk through stronger infrastructure hygiene, in partnership with zero trust engineering. Responsibilities AI workload protection: - Design, implement, and operate security controls for foundation model usage across Claude, ChatGPT, and Microsoft Copilot - Support deployment and hardening of the enterprise AI gateway, including model allowlists, per-team keys, rate and budget limits, and centralized audit logging - Engineer input and output guardrails covering prompt injection, sensitive data egress, credential and secret leakage, and unsafe output - Integrate inline DLP and content inspection at the gateway so AI traffic is subject to the same data controls as other egress paths - Establish security requirements for RAG architectures, including source grounding, index access control, and prevention of oversharing through model responses Agentic and MCP security: - Define and enforce governance for MCP servers and agent tooling, including registry, approval, and runtime policy enforcement - Implement identity and authorization patterns for agents and other non-human identities: OAuth-based access, token lifecycle management, scoped tool permissions, and least privilege - Assess and mitigate agentic risk classes including excessive agency, capability chaining, tool and memory poisoning, and unsafe autonomous action Zero trust integration: - Extend zero trust controls to AI workloads across identity, device, network, application, and data pillars - Partner with identity engineering on conditional access, workload identity, and privileged access for AI systems and service principals - Reduce AI risk through infrastructure hygiene: configuration baselines, egress control, secrets management, and dependency and supply chain integrity Detection, testing, and assurance: - Build monitoring and detection content for AI systems covering prompt behavior, tool invocation patterns, anomalous output, and data movement - Conduct AI red team and adversarial testing, including direct and indirect prompt injection, jailbreak, and data extraction scenarios - Perform shadow AI discovery and inventory of unsanctioned AI applications and browser extensions - Conduct security reviews of AI applications, third-party AI vendors, and AI features in existing SaaS Governance: - Map controls to recognized frameworks including the OWASP Top 10 for LLM Applications, MITRE ATLAS, and the NIST AI Risk Management Framework - Contribute to AI security standards, acceptable use guidance, architecture review criteria, and enablement material for engineering teams ## Related Videos - [ Evaluating AI models for code comprehension](https://www.wearedevelopers.com/videos/1462-evaluating-ai-models-for-code-comprehension) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Streaming AI Responses in Real-Time with SSE in Next.js & NestJS](https://www.wearedevelopers.com/videos/1630-streaming-ai-responses-in-real-time-with-sse-in-next-js-nestjs) - [WWC24 - Chris Wysopal, Helmut Reisinger and Johannes Steger - Fighting Digital Threats in the Age of AI](https://www.wearedevelopers.com/videos/926-wwc24-chris-wysopal-helmut-reisinger-and-johannes-steger-fighting-digital-threats-in-the-age-of-ai) ## Related Articles - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [MLOps And AI Driven Development](https://www.wearedevelopers.com/magazine/82-mlops-and-ai-driven-development) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud)