Senior AI Platform Engineer - Security

Esko

Bengaluru

Hybrid

INR 1,500,000 - 1,900,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote work
Hybrid work

Job summary

Esko is building shared security foundations for its AI Platform. This hands-on engineering role offers end-to-end ownership of substantial security areas and close collaboration with cloud platform teams, security engineers, compliance specialists, and product engineering teams.

You will design identity, authorization, policy enforcement, auditing controls, and threat-mitigation strategies for AI systems, balancing security with usability and operational practicality.

Qualifications

  • At least 5 years’ experience in software engineering with security focus, including cloud and multi-tenant systems.
  • Strong Python or TypeScript production security experience.
  • Experience with threat modelling and security testing.
  • Experience designing or building systems using LLMs or agents and risk mitigation.
  • Proven ability to design reusable platform controls and APIs.
  • Excellent written and verbal communication with stakeholders.

Responsibilities

  • Shape AI Platform security architecture and own substantial components.
  • Design and implement identity, authorization, policy enforcement, and auditing controls.
  • Secure retrieval, tool use, and execution against AI threats like prompt injection and data leakage.
  • Implement risk-based controls including approvals, isolation, execution limits, recovery.
  • Build audit and monitoring capabilities to trace security-relevant activity.
  • Conduct threat modelling and translate findings into platform controls.
  • Collaborate with cloud, security, compliance, and product teams to implement practical controls.

Skills

Python
TypeScript
Secure production systems
Cloud security
Threat modelling
Agent/LLM security
Platform services
Communication skills

Education

Undergraduate, Master’s, or PhD in Computer Science / Machine Learning / Data Science / Artificial Intelligence

Tools

OAuth / IAM
LLM tooling

Job description

Location: Flexible - remote, hybrid, or based at an Esko location. Worldwide locations considered.

Function: Software Engineering

Reports to: Team Leader, Esko AI

About The Role

Esko's products handle sensitive customer content and support business-critical workflows. AI-powered and agentic systems introduce additional security challenges because they combine access to sensitive data, specialized tools, and potentially consequential actions within those workflows.

We are building shared security foundations for Esko's AI Platform so product teams can develop AI capabilities without implementing critical controls independently. As part of the platform team, you will help shape and build these foundations, taking end-to-end ownership of substantial security areas.

You will collaborate closely with Esko's cloud platform teams, security engineers, compliance specialists, and product engineering teams to develop controls that are secure, practical, and reusable across products. This is a hands‑on engineering role, not a compliance or review position.

This is a hands‑on engineering role. It is not a compliance or review position.

What You Will Do
  • Help shape the AI Platform's security architecture and take end-to-end ownership of substantial security components.
  • Design and build identity, authorization, delegated‑access, and policy‑enforcement controls for AI systems, including tenant-, user-, document-, and tool-level permissions.
  • Secure retrieval, tool use, and execution against prompt injection, unauthorized actions, data leakage, and other AI‑specific threats.
  • Design controls proportionate to the risk of an action, including approval gates, isolation, execution limits, and recovery mechanisms.
  • Build audit and monitoring capabilities so security‑relevant activity is traceable and high‑risk behavior can be detected, investigated, and routed for appropriate review.
  • Conduct threat modelling and adversarial testing, translating findings into shared platform controls and secure defaults for product teams.
  • Work with cloud platform teams, security engineers, compliance specialists, and product engineering teams to integrate controls that satisfy Esko's security obligations while remaining practical to adopt and operate.
What We Are Looking For
  • Strong software engineering experience designing, building, and operating secure production systems in Python, TypeScript, or a similar language.
  • At least 5 years’ experience in a software engineering role with experience securing cloud, distributed, or platform services, including authentication, authorization, policy enforcement, and multi‑tenant isolation.
  • Practical experience with threat modelling, application security testing, and turning identified risks into effective engineering controls.
  • Experience designing or building systems using LLMs, retrieval‑augmented generation, or agents, with an understanding of their distinctive security failure modes.
  • Experience building reusable platform controls, APIs, or shared services used by multiple engineering teams.
  • Sound judgement in balancing security, usability, and operational complexity, including recognizing when stronger isolation or human approval is required.
  • Ability to communicate security decisions and tradeoffs clearly across engineering, security, compliance, and product stakeholders.
  • Undergraduate, Master’s degree or PhD in Computer Science / Machine Learning / Data Science / Artificial Intelligence, or related disciplines.
  • Excellent written and verbal communication, with the ability to work fluently with both technical and business stakeholders alike.
Preferred Experience
  • Multi‑tenant enterprise SaaS platforms.
  • Permission‑aware retrieval systems.
  • Tool‑calling systems or workflow automation.
  • Adversarial testing or security evaluation for AI systems.
  • Sandboxing untrusted files or code.
  • MCP or similar tool‑integration protocols.
  • Document, graphics‑processing, or other content‑centric platforms.
What Success Looks Like
  • Agents operate with scoped permissions.
  • Sensitive actions require appropriate approval.
  • Retrieval respects customer access boundaries.
  • Agent activity is fully auditable.
  • Automated means are in place to detect high‑risk activities which are alerted for further review.
  • Product teams adopt shared security controls.
  • Secure AI features reach production faster.

At Veralto, we value diversity and the existence of similarities and differences, both visible and not, found in our workforce, workplace and throughout the markets we serve. Our associates, customers and shareholders contribute unique and different perspectives as a result of these diverse attributes.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AI Platform Engineer - Security
Senior AI Platform Engineer - Security

Esko-Graphics India Private Limited • India

Hybrid
INR 1,800,000 - 3,200,000
Senior AI Platform Engineer - Knowledge & Reasoning
Senior AI Platform Engineer - Knowledge & Reasoning

Esko-Graphics India Private Limited • India

Hybrid
INR 1,800,000 - 3,000,000
Engineering Manager - Agentic AI
Engineering Manager - Agentic AI

Esko • Bengaluru

Hybrid
INR 3,500,000 - 6,500,000
Staff Security Engineer - Cloud & AI Security
Staff Security Engineer - Cloud & AI Security

Xerox • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Senior Cloud Architect
Senior Cloud Architect

Esko • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Staff Security Engineer - Cloud & AI Security
Staff Security Engineer - Cloud & AI Security

Xerox Corporation • Bengaluru

On-site
INR 2,000,000 - 2,500,000
Senior Security Engineer, AI & Automation
Senior Security Engineer, AI & Automation

F5 • Hyderabad

On-site
INR 3,500,000 - 7,000,000
AI Security Architect
AI Security Architect

TE Connectivity • Bengaluru Urban

On-site
INR 2,500,000 - 3,000,000
AI Security Architect
AI Security Architect

TE Connectivity • Bengaluru

On-site
INR 2,800,000 - 4,800,000
Senior Cloud Architect
Senior Cloud Architect

Esko-Graphics India Private Limited • Bengaluru

On-site
INR 4,000,000 - 7,000,000