> Markdown version of [/jobs/ext/3095597-sr-ai-ml-security-engineer](https://www.wearedevelopers.com/jobs/ext/3095597-sr-ai-ml-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr AI/ML Security Engineer - **Company:** TEK INC - **Location:** Dallas, TX, United States (Remote available) - **Experience:** Expert - **Salary:** $73,450.0 - $132,775.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Continuous Integration, Information Leak Prevention, Data Security, Distributed Systems, Failover, Identity and Access Management, Intrusion Detection and Prevention, Information Systems Security Architecture Professional, Python (Programming Language), Key Management, Network Segmentation, OAuth, Open Web Application Security, Role-Based Access Control, Openid Connect, Cloud Services, Zero Trust Network Access, Azure Machine Learning, Security Information and Event Management, Software Engineering, SSL Certificate Management, Data Logging, Cloud Platform System, Istio, System Availability, Large Language Models, Software Security, Generative AI, Apigee, Rate Limiting, Containerization, AI Platforms, Kubernetes, Virtual Agents, Api Gateway, Restful APIs, Api Management, Golang - **Published:** September 26, 2026 - **Apply:** https://www.careerjet.com/jobad/usa4dc576ed7fa30b241166b761e70f558 ## About the Role * 10+ years of security (cyber security, platform security, etc.) engineering experience using tools such as SIEM, IAM/PAM, RBAC/ABAC, etc. * 3+ years of AI Security engineering experience with specific focus on AI/ML platforms, generative AI/LLM technologies, and/or model-serving ecosystems * Hands on experience with Kong, LiteLLM, or similar API gateway/LLM proxy technologies (e.g. Apigee, Portkey, etc.) * Hands on experience with AWS (preferred), Azure, or GCP cloud services * Hands on platform engineering experience with IaC, CI/CD security, and other operational tasks * Hands on experience with threat modeling, AI/LLM/Agentic system guardrails, identity verification and authorization * Strong communication and documentation experience * Experience with AI/LLM platform engineering is a strong plus (e.g. RAG, AI Agents, LangChaing, LangGraph, MCP ecosystems, A2A communications, etc.) * Security certifications such as CISSP, OSCP, CEH, CASP+, CISM are highly desired, * 7+ years of experience in cybersecurity, cloud security, application security, platform security, or security engineering. * 3+ years working with AI/ML platforms, generative AI technologies, LLM applications, or model-serving ecosystems. * Hands-on experience with Kong, LiteLLM, or comparable API gateway and LLM proxy technologies. * Experience with Kubernetes, containers, REST APIs, service-to-service communication, and cloud platforms such as AWS or Azure. * Strong knowledge of OAuth 2.0, OpenID Connect, secrets management, workload identity, and authorization models. * Experience threat modeling distributed systems, APIs, AI applications, and cloud-native architectures. * Strong software engineering or automation experience using Python, Go, Java, or a similar language. * Experience with infrastructure as code, CI/CD security, logging, monitoring, and operational support. Preferred Qualifications * Experience securing LLM applications, AI agents, LangChain, LangGraph, MCP ecosystems, RAG pipelines, and autonomous workflows. * Experience implementing AI guardrails, runtime policy engines, DLP integrations, content inspection, and AI governance platforms. * Familiarity with NIST AI RMF, ISO/IEC 42001, OWASP guidance for LLM and GenAI applications, MITRE ATLAS, and Zero Trust Architecture. * Experience operating enterprise API management, service mesh, model routing, or multi-provider AI platforms. * Background supporting regulated or large-scale enterprise AI initiatives. ## Description AI Gateway Architecture & Engineering * Design and implement enterprise AI gateway solutions using Kong AI Gateway, LiteLLM, and related technologies. * Establish secure routing patterns for LLM traffic across internal, third-party, and cloud-hosted foundation models. * Develop standardized onboarding patterns for applications, agents, copilots, and autonomous systems using centralized gateway controls. * Define scalable gateway architectures supporting high availability, failover, token management, model routing, provider abstraction, rate limiting, and policy enforcement. * Create security standards for AI API management, service-to-service authentication, gateway plugins, and runtime governance. AI Runtime Security Controls * Engineer and deploy runtime controls governing prompts, responses, tool usage, memory access, retrieval operations, model calls, and agent actions. * Integrate AI guardrail solutions with gateway enforcement layers for inline inspection and policy decisions. * Design controls to detect and prevent prompt injection, jailbreak attacks, data exfiltration, sensitive data leakage, malicious tool invocation, agent privilege escalation, and unsafe autonomous actions. * Implement policy-driven outcomes including allow, detect, block, redact, modify, quarantine, and human approval workflows. * Define anti-bypass controls that reduce direct-to-model access outside approved enterprise pathways. Agentic AI & Identity Security * Develop security architectures for AI agents, agent-to-agent communication, MCP servers, plugins, tools, and autonomous workflows. * Design identity-aware enforcement using OAuth 2.0, OpenID Connect, workload identity, machine identities, just-in-time authorization, RBAC, and ABAC. * Establish delegated authorization patterns that constrain agent actions based on user authority, application risk, tool sensitivity, and business context. * Define standards for tool registration, access governance, privilege boundaries, approval gates, and kill-switch capabilities. API, Cloud & Platform Security * Secure AI-facing APIs, gateway plugins, MCP integrations, model endpoints, and service-to-service communication. * Perform threat modeling and security design reviews for AI platforms, applications, and distributed runtime architectures. * Partner with cloud and platform engineering teams to implement Zero Trust patterns, network segmentation, secrets management, certificate management, and secure workload authentication. * Drive secure deployment patterns across AWS, Azure, Kubernetes, container platforms, and cloud-native AI services. * Embed security testing and policy validation into CI/CD and infrastructure-as-code workflows. Monitoring, Detection & Response * Build centralized observability across AI gateways and runtime enforcement points. * Integrate gateway, guardrail, identity, application, and model telemetry into enterprise SIEM and detection engineering platforms. * Develop detections for prompt attacks, policy violations, data leakage, unauthorized model usage, anomalous token consumption, excessive permissions, and agent misuse. * Define operational metrics for control coverage, control efficacy, false positives, false negatives, bypass resistance, latency, availability, and failure modes. * Create incident response playbooks for AI security events, gateway failures, guardrail bypasses, compromised identities, and unsafe autonomous behavior. Strategic & Technical Leadership * Serve as the AI gateway and runtime security subject matter expert. * Partner with architecture, platform engineering, application security, identity, data security, and AI governance teams on enterprise AI strategy. * Evaluate emerging AI security technologies, frameworks, gateway capabilities, and vendor solutions through structured technical assessments and proofs of concept. * Define reusable reference architectures, engineering standards, implementation patterns, operational runbooks, and control requirements. * Mentor engineers and help advance organizational AI security maturity. ## Related Videos - [Beyond the Hype: Building Trustworthy and Reliable LLM Applications with Guardrails](https://www.wearedevelopers.com/videos/1594-beyond-the-hype-building-trustworthy-and-reliable-llm-applications-with-guardrails) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Rate-limiting using eBPF and Istio: How to protect your SaaS customers from themselves](https://www.wearedevelopers.com/videos/100220-rate-limiting-using-ebpf-and-istio-how-to-protect-your-saas-customers-from-themselves) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [MLOps And AI Driven Development](https://www.wearedevelopers.com/magazine/82-mlops-and-ai-driven-development) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [What Are Large Language Models?](https://www.wearedevelopers.com/magazine/304-what-are-large-language-models) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity)