> Markdown version of [/jobs/ext/420852-genai-security-engineer](https://www.wearedevelopers.com/jobs/ext/420852-genai-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # GenAI Security Engineer - **Company:** Capital Group - **Location:** Paris, France - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Adobe InDesign, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Architectural Patterns, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Computer Networks, Data Security, Key Management, Lex (Software), Linux System Administration, Machine Learning, Network Protocols, OAuth, Open Web Application Security, Openid Connect, Ansible, Azure Machine Learning, Security Assertion Markup Language (SAML), TCP/IP, Software Vulnerability Management, Load Balancing, Cloud Platform System, Large Language Models, Software Security, Cloudformation, Containerization, AI Platforms, Kubernetes, Information Technology, Machine Learning Operations, Software Coding, Terraform, Network Server, Serverless Computing, AWS EKS, Docker, Vulnerability Analysis, Programming Languages - **Published:** June 14, 2026 - **Apply:** https://fr.indeed.com/viewjob?jk=1dfd50ced321f653 ## About the Role * Proficiency in LLM architecture, embeddings, vector databases, RAG and inference. Hands-on experience with securing MCP servers, skills and agentic coding tools (e.g. Claude Code). * Expert in the corresponding OWASP Top 10 for LLMs and OWASP Top 10 for Agentic Applications. * Exposure to MLOps pipelines and frameworks for deploying machine learning models. Experience with cloud-based AI/ML services - for example, AWS SageMaker, AWS AI Services (Bedrock, Rekognition, Lex, etc.), Google Vertex AI, or Azure Machine Learning - and knowledge of how to secure data and models on these platforms. * Bachelor's degree (or equivalent practical experience) in Computer Science, Information Security, or a related field. * A minimum of 4 years of hands-on experience in application security, with proven expertise securing modern architectures-including cloud environments, containerized applications, serverless platforms, and APIs. * Ability to design, configure, implement, and maintain these tools as part of production CI/CD pipelines, ensuring accurate vulnerability detection, low noise, and minimal impact on deployment speed and stability. * Proficiency in Linux environments, networking protocols (TCP/IP, UDP, HTTP, HTTPS, SSH). * Expert on authentication and authorization protocols including but not limited to SAML, OAuth2, OpenID Connect. * Strong coding skills in at least one programming language with the ability to read, analyze, and communicate code vulnerabilities to both technical and non-technical audiences. * Clear understanding of cloud architecture fundamentals like load balancers, gateways, compute, storage, serverless, etc. Familiarity with containerization (Docker) and orchestration (Kubernetes, AWS EKS/ECS) security concerns. Knowledge of image vulnerability scanning, Kubernetes network policies, and secrets management in containerized environments is a plus. * Excellent written and verbal communication skills, with proven ability to transform complex technical concepts into clear business and security recommendations. Preferred Qualifications: * Expertise in cloud security with either AWS, GCP, or Azure, and extensive experience ensuring a cohesive security posture across all environments. * Strong background in implementing and managing Infrastructure as Code (IaC) and automation tools (e.g., Terraform, Ansible, CloudFormation). * A passion for staying informed about the latest AI security research, tools, and adversarial tactics, techniques and procedures - and applying that knowledge to improve enterprise security. * Experience with threat modeling or conducting comprehensive security audits is a plus. ## Description Are you passionate about application security and ready to serve as a subject matter expert in AI security? In this role, you'll be instrumental in protecting our low-latency processing systems and trading platforms across diverse environments. Reporting directly to the Director of Application Security, you will work collaboratively with development, infrastructure, and operations teams to embed security into every phase of our process and in the company culture., * Serve as the internal point of reference and Subject Matter Expert on AI security and cloud applications security. * Design, implement, and maintain the essential tools to secure our AI and agentic systems with robust security controls including sandboxes, guardrails, compliance checks, and vulnerability management. * Support our development teams in addressing identified findings in our cloud infrastructure (including infrastructure as code), ensuring compliance with secure cloud practices to align with industry standards, and promote a culture of ongoing security enhancement. * Participate in design reviews, threat modeling, and architecture assessments to proactively identify and mitigate security risks in new and existing solutions. * Establish best practices and policies regarding AI security and communicate them across the company to foster its security culture and to empower our teams to develop cutting hedge AI solutions. * Work with our Core and Architecture team to deploy solutions for managing agents' identities, agent authentication, and access control (role- and attribute-based), both on premises and in cloud environments. * Develop, monitor, and report indicators to track security performance and drive continuous improvement. ## Related Videos - [How to Avoid LLM Pitfalls - Mete Atamel and Guillaume Laforge](https://www.wearedevelopers.com/videos/1328-how-to-avoid-llm-pitfalls-mete-atamel-and-guillaume-laforge) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [What Are Large Language Models?](https://www.wearedevelopers.com/magazine/304-what-are-large-language-models) - [From Prototype to Production: Build AI Agents with This Free 4-Course Learning Path](https://www.wearedevelopers.com/magazine/655-from-prototype-to-production-build-ai-agents-with-this-free-4-course-learning-path) - [Dev Digest 196: AI Killed DevOps, LLM Political Bias & AI Security](https://www.wearedevelopers.com/magazine/659-dev-digest-196-ai-killed-devops-llm-political-bias-ai-security)