AI Cyber Engineer

Ampcus Inc
Fairfax County, VA, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Kubernetes Security Java (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Software System Penetration Testing Automation of Tests Microsoft Azure C Sharp (Programming Language) Cloud Computing Cloud Computing Security Cloud Engineering
+29 more
Cyber Security System Configuration Identity and Access Management Python (Programming Language) Network Security Pattern Recognition Zero Trust Network Access Secure Coding Security Information and Event Management Software Engineering Software Vulnerability Management Google Cloud Cloud Platform System Large Language Models Multi-Agent Systems Software Security Infrastructure Automation Frameworks Information Technology Machine Learning Operations Hardware Infrastructure Virtual Agents Terraform Data Pipelines Devsecops Static Application Security Testing Vulnerability Analysis Golang Microservices Dynamic Application Security Testing

Job description

The AI Cyber Engineer is a senior technical role responsible for implementing and operating AI-driven cybersecurity capabilities to continuously detect, prioritize, and remediate vulnerabilities across the enterprise IT environment. This role combines cybersecurity engineering, artificial intelligence, software development, and automation to move beyond traditional reactive security into proactive and autonomous remediation. The engineer will leverage advanced AI models, agentic frameworks, and security tooling to:

  • Continuously Client vulnerabilities across infrastructure, applications, and AI systems.
  • Generate prioritized remediation strategies.
  • Automatically develop fixes, where feasible (e.g., patches, configuration updates, code changes).
  • Integrate findings into enterprise DevSecOps and SOC workflows.

Key Responsibilities:

  • AI-Driven Vulnerability Detection & Analysis
  • Design and deploy AI-powered vulnerability discovery pipelines across: o Cloud (AWS, Azure, GCP) o On-prem infrastructure o Applications, APIs, and microservices o AI/LLM systems and data pipelines.

  • Leverage AI techniques for: o Pattern recognition in logs, telemetry, and attack signals o Behavioral anomaly detection o Identification of zero-day and emerging threats. o Perform AI-assisted attack simulation and adversarial testing to proactively identify weaknesses.

  • Intelligent Risk Prioritization
  • Leverage and build-on AI models and scoring mechanisms to: o Correlate vulnerabilities with threat intelligence, exploitability, and business impact o Reduce false positives and alert fatigue.

  • Implement contextual risk evaluation incorporating: o Asset criticality o Identity exposure (human and non-human identities) o Data sensitivity and regulatory impact.

  • Align prioritization with frameworks such as: o NIST CSF/AI RMF o MITRE Telecommunication&CK/ATLAS.

  • Automated & Assisted Remediation
  • Develop and maintain: o Automated patching pipelines o Infrastructure-as-Code (IaC) remediation templates o Secure code transformation scripts (e.g., Python, Java, Terraform). o Build AI agents to perform repeatable, permissible tasks. o Collaborate with engineering teams to ensure safe deployment of automated remediation.

  • Secure AI & Application Ecosystem Engineering
  • Secure enterprise AI systems, including: o LLMs, RAG pipelines, AI agents, and copilots.

  • Implement protections against: o Prompt injection, data exfiltration, adversarial attacks, AI model integrity risk, and more.

  • Build and enforce: o AI guardrails and runtime controls o Secure model deployment pipelines o Data protection and governance practices.

  • DevSecOps & Continuous Security Integration
  • Embed AI-driven security controls across: o CI/CD pipelines and MLOps workflows.

  • Implement: o Shift-left security scanning and validation o Automated policy enforcement o Continuous compliance monitoring.

  • Ensure vulnerabilities are automatically: o Detected pre-production and remediated (or blocked) before release.

  • Cross-Functional Collaboration
  • Work closely with: o AI Program teams o Cloud Platform and Cloud Engineering teams o Software engineering teams o Security operations and GRC teams

  • Translate security findings into developer-friendly remediation actions
  • Provide guidance on secure coding and vulnerability remediation.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field
  • 8 years in cybersecurity, software engineering, or cloud security
  • 3 years working with AI/ML systems or AI security
  • Security certifications (e.g., CISSP, OSCP, CCSP, AWS Security Specialty)
  • Technical Skills
  • Cybersecurity o Vulnerability management, penetration testing, threat modeling o Security tools: SAST, DAST, SCA, SIEM, SOAR, CNAPP, CSPM o Zero Trust architecture, IAM/PAM, network security

  • Experience applying: o MITRE Telecommunication&CK/ATLAS o NIST AI Risk Management Framework o AI & Emerging Security o AI and model fundamentals o AI security risks o Experience with LLMs, RAG, and agentic AI systems o Experience with autonomous agents or multi-agent AI systems o Experience configuring and using AI-driven security tools or platforms

  • Software Engineering & Automation o Programming: Python (required), plus one or more (Java, Go, C#, etc.)

  • Experience writing: o Secure code o Automation scripts o Infrastructure as Code (Terraform, etc.) o Experience generating or validating automated code fixes

  • Cloud & Infrastructure o AWS, Azure, and/or GCP security services o Containers and Kubernetes security o API security and microservices architecture

  • Key Competencies
  • Strong problem-solving and systems thinking
  • Ability to translate security issues into practical solutions
  • Deep curiosity about emerging threats and AI capabilities
  • Balance between automation and risk control
  • Excellent communication with both technical and non-technical stakeholders.

About the company

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:33 min

Case study on adopting Kubernetes and Golang effectively

Andrew Holway · LIVE

1:55 min

Current state of security in AI applications

Deepu Deepu · WWC 2025

Videos

See all

Related articles

See all