Senior AI Security Engineer

TELEION, LLC
Seattle, WA, United States
1 day ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$155,000.0 - $200,000.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Audit Trail Automation of Tests Microsoft Azure Cloud Computing Cloud Computing Security Information Leak Prevention Extract Transform Load (ETL) Data Mining Python (Programming Language) Network Control
+7 more
OAuth Open Web Application Security Red Team (Cyber Security) Zero Trust Network Access Large Language Models Deployment Automation Key Vault

Job description

Teleion is seeking a Senior AI Security Engineer to help clients safeguard their AI workloads, agentic systems, and enterprise AI deployments. This is a hands-on, client-facing contract role at the frontier of a rapidly emerging discipline - securing large language models, AI gateways, agentic pipelines, and the zero trust infrastructure that surrounds them. The ideal candidate has direct production experience securing AI systems, understands the adversarial attack surface against LLMs and agents, and can design and implement the technical controls that manage risk across the full AI stack., * Assess and address the AI and LLM attack surface in production environments: prompt injection (direct and indirect), data leakage through model output, insecure tool use, jailbreaking, and model supply chain risk.

  • Deploy, configure, and operate AI gateways and LLM proxy layers with centralized control: model allowlists, per-team API keys, rate and budget limits, centralized audit logging, and inline input/output guardrails covering prompt injection, sensitive data egress, credential leakage, and unsafe output.
  • Design and implement governance frameworks for agentic systems and MCP (Model Context Protocol) tooling: registries, approval workflows, runtime policy enforcement, and identity and authorization patterns for non-human identities.
  • Implement OAuth-based access, token lifecycle management, and scoped tool permissions for AI agents operating with least-privilege principles.
  • Extend zero trust controls to AI workloads across identity, device, network, application, and data pillars - with Azure preferred (Entra ID, Defender for Cloud, Key Vault, Purview, Conditional Access).
  • Build monitoring and detection for AI systems: prompt behavior analysis, tool invocation patterns, anomalous output detection, and data movement.
  • Conduct AI red team and adversarial testing using PyRIT, Garak, or equivalent tooling to identify vulnerabilities before adversaries do.
  • Lead shadow AI discovery programs to identify unsanctioned AI applications and browser extensions across the enterprise.
  • Perform third-party AI vendor security reviews and assess M365 Copilot security posture including oversharing remediation and sensitivity label enforcement.
  • Advise clients on AI governance frameworks including OWASP Top 10 for LLM Applications, MITRE ATLAS, NIST AI RMF, and relevant compliance standards.
  • Perform tasks as assigned

Requirements

  • 7 or more years of security engineering experience, with at least 2 years directly securing AI, ML, or GenAI systems in production environments.
  • Demonstrated hands-on experience with LLM and agent attack surfaces: prompt injection, jailbreaking, data extraction, capability chaining, and supply chain risk.
  • Experience deploying or operating an AI gateway, LLM proxy, or centralized AI control plane with production-grade input/output guardrails and audit logging.
  • Familiarity with agentic AI risk classes: excessive agency, capability chaining, tool and memory poisoning, and unsafe autonomous action.
  • Experience implementing identity and authorization patterns for non-human identities in an AI or service-oriented context.
  • Strong cloud security background with Azure preferred - Entra ID, Defender for Cloud, Key Vault, Purview, and Conditional Access.
  • AI red team experience using PyRIT, Garak, or equivalent adversarial testing tools.
  • Proficiency in Python with experience working with LLM APIs (OpenAI, Anthropic, Azure OpenAI) and security evaluation tooling.
  • Knowledge of OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF.
  • Certifications preferred: CISSP, AZ-500, SC-100, or CCSP. Familiarity with ISO/IEC 42001 or EU AI Act is a plus.

About the company

Teleion offers full benefits, PTO, holiday, 401(k). See how other employees have reviewed us on Glassdoor. We are excited to announce we have made in on Seattle Business Magazines “Washingtons Best Place to Work” for the 6th year in a row. (https://seattlebusinessmag.com/100-best-companies-work/100-best-companies-work-midsize)

Teleion is minority owned and an Equal Opportunity Employer - We welcome all races, sexual orientations, gender identities, veterans, religions and disabilities.

Salary range: $155,000 - $200,000 - Based on experience

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:00 min

Top security vulnerabilities for AI applications

Deepu Deepu · World Congress 2025

2:31 min

Data mining literary works for language patterns

Jen Looper Jen Looper · Europe 2026 Virtual

4:55 min

Centralizing credentials management using Azure Key Vault resource integration

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:09 min

Securing AI agents against internal and external threat vectors

Julia Kordick Julia Kordick · World Congress 2026 Europe

4:25 min

Analyzing web accessibility data at scale

Karl Groves Karl Groves · LIVE

Videos

See all

Related articles

See all