Stand out for this role — generate a tailored resume and cover letter in about a minute.
Mastercard Inc. in Ireland is seeking a Lead AI Security Engineer to implement security controls for foundation models and AI use cases. You will translate governance guidance into tested engineering work, ensuring secure data usage and robust API security.
The role focuses on hands-on testing, guardrail development, and collaboration with central security and AI governance teams to maintain high security standards across the platform.
Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Mastercard is seeking a Lead AI Security Engineer to support a strategic AI engineering team focused on foundation model development and AI use case delivery. This role is responsible for the hands‑on implementation of model security, AI product platform security and responsible‑AI practices. Testing models for vulnerabilities, building the guardrails, access controls, API security, secure data usage and mitigations recommended by Mastercard’s central security and AI governance teams, and ensuring those recommendations are actually built into the platform, not just documented. This is an execution‑focused engineering role: Mastercard’s dedicated security and governance teams already own policy, advisory guidance, and formal review. This role is the team’s technical owner for turning that guidance into working, tested implementation.
In this role, you will be responsible for implementing and maintaining the technical controls, tests, and mitigations that keep the platform’s models secure and its AI use responsible in practice. Along with ensuring our developers, data engineers and AI engineers are incorporating security standards into their builds.
Required skills and experience: Hands‑on experience testing ML/AI models for security vulnerabilities. Adversarial robustness testing, membership inference, model inversion, or similar practical red‑teaming of models, not just familiarity with the concepts. Strong applied security engineering skills. Able to build and implement real technical controls (guardrails, filters, access restrictions), not only assess or advise on them. Experience implementing bias/fairness testing or mitigation for ML models. Familiarity with the unique security risks of embeddings and foundation models specifically. How they differ from traditional application security risks, and awareness of current research/attack techniques in this space. Practical experience with access control and audit logging implementation, particularly across distributed or hybrid (cloud and on‑premises) environments. Working knowledge of relevant regulatory context for financial/payment data (e.g., PCI DSS, data protection regulation) sufficient to implement controls correctly. Software engineering fundamentals. Able to build production‑quality tooling and tests, not just one‑off scripts or proofs of concept. Clear, precise communicator, able to work effectively with both hands‑on engineering peers and external specialist/advisory teams. Cloud platform familiarity (AWS preferred; Azure or GCP valuable), particularly within a modern data/AI platform such as Databricks. Comfortable working from external guidance and translating it into engineering work. Takes direction from specialist governance/security partner teams while retaining the technical judgment to implement it correctly for this platform’s specific architecture.
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must: Abide by Mastercard’s security policies and practices; Ensure the confidentiality and integrity of the information being accessed; Report any suspected information security violation or breach, and Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
Everyone wants easier ways to pay; we invent them. Checkout lines are slow; we speed them along. Merchants want more sales; we give them data and insights. People need financial access; we connect them. Corporate purchasing is complicated; we make it simple. Commuters are busy; we speed them on their way. Governments need greater efficiencies; we help create them. Small businesses are virtual; we give them access to a world of buyers. Retailers want to fight fraud; we provide the tools.