> Markdown version of [/jobs/ext/2591396-principal-ai-security-analyst](https://www.wearedevelopers.com/jobs/ext/2591396-principal-ai-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal AI Security Analyst - **Company:** Waters - **Location:** Milford, MA, United States - **Experience:** Experienced - **Salary:** $120,500.0 - $200,500.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cyber Security, Python (Programming Language), Machine Learning, AI Infrastructure, Large Language Models, Rate Limiting, Containerization, Palo Alto Networks, Data Management, Machine Learning Operations - **Published:** August 24, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18062035?backUrl=%2Fcareer%2F18062035%2FPrincipal-Ai-Security-Analyst-Massachusetts-Milford ## About the Role * 8+ years in cybersecurity with 3+ years focused on AI/ML security * Hands-on experience with Palo Alto Networks AIRS or AI Access Security * Deep understanding of LLM architectures and common vulnerability classes * Proficiency in Python; ability to review model code and ML pipelines * Experience with threat modeling frameworks (STRIDE, PASTA, or similar) * Track record driving cross-functional security programs at scale * Cloud-native environment experience (AWS, GCP, or Azure) PREFERRED * Palo Alto Networks certifications (PCNSE, PCCSE, or equivalent) * Experience deploying AI gateways (Portkey, Kong AI, or similar) * Published research or CVEs related to AI/ML security * Familiarity with differential privacy or model watermarking * CISSP, OSCP, or equivalent certifications ## Description As a Principal AI Security Analyst, you will be the organization's deepest subject-matter expert at the intersection of artificial intelligence and cybersecurity. You will lead the security review of AI/ML systems, manage our AI security toolchain, identify emerging threats unique to large-scale models, and build the frameworks that keep our AI infrastructure resilient against adversarial attacks. This is a high-visibility, high-autonomy role that shapes how the company thinks about AI risk. Responsibilities Own end-to-end threat modeling for AI and ML systems, including LLMs, training pipelines, and inference infrastructure * Administer and tune Palo Alto Networks AI Runtime Security (AIRS) to detect and block adversarial inputs, prompt injection, and model abuse in real time * Manage AI Access Security policies to govern employee use of third-party AI applications - enforcing DLP, acceptable-use rules, and shadow-AI visibility * Integrate an AI gateway layer to apply rate limiting, access controls, and observability across LLM API traffic * Research and operationalize defenses against adversarial attacks - model extraction, data poisoning, jailbreaking, and membership inference * Lead red-team exercises targeting AI systems and synthesize findings into actionable security roadmaps * Define and maintain security standards, policies, and controls specific to AI model development and deployment * Partner with ML engineering, platform, and product teams to embed security requirements from design through production * Evaluate third-party AI tools, APIs, and vendors for supply-chain and data-handling risk * Work with other security team members in AI governance discussions, including compliance with EU AI Act and NIST AI RMF * Mentor other team members; set technical direction for the AI security practice ## Related Videos - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [How we built an AI-powered code reviewer in 80 hours](https://www.wearedevelopers.com/videos/1511-how-we-built-an-ai-powered-code-reviewer-in-80-hours) ## Related Articles - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [MLOps And AI Driven Development](https://www.wearedevelopers.com/magazine/82-mlops-and-ai-driven-development) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Dev Digest 233: Strip AI Watermarks, Hacked Homelabs & Designing with Code](https://www.wearedevelopers.com/magazine/754-dev-digest-233-strip-ai-watermarks-hacked-homelabs-designing-with-code)