> Markdown version of [/jobs/ext/3553748-ai-security-engineer](https://www.wearedevelopers.com/jobs/ext/3553748-ai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI Security Engineer - **Company:** INTERRA HEALTH - **Location:** Boston, MA, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Data Analysis, Microsoft Azure, Cloud Computing, Code Review, Cyber Security, Data Governance, Information Leak Prevention, Data Security, Systems Analysis, Python (Programming Language), Machine Learning, Open Web Application Security, Wi-Fi Technology, Scripting, Google Cloud, Large Language Models, Software Security, Generative AI, Cyber Threat Analysis, Data Analytics, Data Management, Machine Learning Operations, Data Pipelines, Promptfoo, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** October 2, 2026 - **Apply:** https://www.careerbuilder.com/job-details/ai-security-engineer-boston-ma--df9c8988-1fb5-40da-8552-58f02fa9e9d2 ## About the Role * Bachelor's degree and 5+ years in security engineering or application security, including hands-on experience securing AI/ML systems or LLM-based applications * Deep knowledge of AI/ML security risks (including the OWASP Top 10 for LLMs, adversarial ML, and data poisoning) and proven ability to test for and mitigate them * Hands-on experience with security tooling, including SAST/DAST and vulnerability scanning, and comfort scripting in Python or a similar language * Understanding of cloud infrastructure (AWS, Azure, or GCP) and how AI/ML workloads are deployed and secured within it * Clear communicator who can translate technical risk into terms non-security stakeholders understand * Comfort operating in a fast-paced, post-merger environment where systems, priorities, and structures are still evolving, * Experience securing systems in a regulated healthcare or life sciences environment (e.g., HIPAA, HITRUST) * Familiarity with LLM security frameworks and tools, such as MITRE ATLAS, Garak, or promptfoo * Security certifications such as OSCP, GCIH, or CISSP * Experience red-teaming or penetration-testing AI/ML systems specifically Pre-Employment Drug Screening: This position is subject to a pre-employment drug screening, where permitted by applicable law. Any required screening will be conducted after a conditional offer of employment and in accordance with applicable federal, state, and local laws., Access Control, Amazon Web Services (AWS), Application Programming Interface (API), Applications Security, Artificial Intelligence (AI), Biology, Cloud Computing, Code Reviews, Communication Skills, Computer Security, Cryptography, Data Analysis, Data Collection, Data Management, Data Modeling, Environmental Sciences, GCP (Good Clinical Practices), Genetics, HIPAA (Health Insurance Portability and Accountability Act), Healthcare, Incident Response, Injections, Leadership, Machine Learning, Machine Tool, Medications, Microsoft Windows Azure, Pharmacy, Pricing, Product Lifecycle, Production Systems, Python Programming/Scripting Language, Reimbursement, Risk, Risk Analysis, Scripting (Scripting Languages), Security Analysis, Security Attacks, Systems Analysis, Test Tools, Threat Modeling, Vulnerability Scanners, Wi-Fi ## Description Who We Are:Interra Health is a fast-growing healthcare technology company transforming how providers and patients navigate the prescription journey. Formed through the merger of DoseSpot, Arrive Health, and pVerify, Interra Health delivers trusted eligibility, real-time coverage and pricing insights, prescribing tools, and pharmacy transparency at the point of care-helping providers make informed decisions and patients access the right medications with greater clarity and affordability. Backed by strong market momentum and a bold vision for the future of connected care, Interra Health offers the chance to join an innovative, mission-driven team working at the intersection of software and healthcare to reduce friction, improve access, and make the healthcare experience better for everyone. Interra Health is expanding its use of artificial intelligence and machine learning across a fast-moving, highly regulated healthcare market. As an AI Security Engineer on the Security Engineering team, reporting to the Lead Security Engineer, you will help secure the models, data pipelines, and AI solutions. This role is hands-on and technical: you will assess AI systems for vulnerabilities, build guardrails against risks like prompt injection and data leakage, and partner with Engineering and Data & Analytics to bake security into how AI is designed and shipped. You will independently assess and resolve AI security risks across multiple workflows, escalating complex or high-impact issues to senior security leadership as appropriate. The right person is genuinely curious about how AI systems can fail, and wants to build the guardrails before something goes wrong, not after. WHAT YOU'LL DO * Lead security assessments of AI/ML models, data pipelines, and AI-enabled applications, identifying vulnerabilities such as prompt injection, model inversion, data poisoning, and adversarial inputs * Partner with Data & Analytics and Engineering to embed security requirements and threat modeling into the AI development lifecycle, from data collection through model deployment * Build and maintain guardrails, monitoring, and detection controls for AI systems in production, flagging anomalous model behavior and unauthorized data access * Conduct security reviews of third-party AI tools, APIs, and vendors, such as LLM providers, before they are integrated into Interra Health * Lead incident response for AI-related security events, including investigating suspicious model outputs or unexpected data exposure * Design and advise on standards for the secure, responsible use of AI, including data handling practices for training and inference * Test and validate access controls, encryption, and data segmentation for AI systems * Use AI tools to accelerate security testing, code review, and threat research, while modeling responsible AI use for the broader engineering organization * Stay current on the evolving AI threat landscape and translate emerging risks, such as jailbreaks and model-supply-chain risks, into practical mitigations * Document findings, risk assessments, and remediation plans clearly for both technical and non-technical stakeholders ## Related Videos - [Prompt Injection, Poisoning & More: The Dark Side of LLMs](https://www.wearedevelopers.com/videos/1563-prompt-injection-poisoning-more-the-dark-side-of-llms) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [API, MCP or MCP App? Choosing the right surface for AI agents](https://www.wearedevelopers.com/videos/100305-api-mcp-or-mcp-app-choosing-the-right-surface-for-ai-agents) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) - [Beyond the Benchmark: How to Evaluate AI Agents in the Real World](https://www.wearedevelopers.com/videos/100269-beyond-the-benchmark-how-to-evaluate-ai-agents-in-the-real-world) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 196: AI Killed DevOps, LLM Political Bias & AI Security](https://www.wearedevelopers.com/magazine/659-dev-digest-196-ai-killed-devops-llm-political-bias-ai-security) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this) - [MLOps And AI Driven Development](https://www.wearedevelopers.com/magazine/82-mlops-and-ai-driven-development) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship)