Senior Technical Consultant - Forward Deployed AI Security Engineer

Thinkahead

Gurugram District

On-site

INR 1,800,000 - 3,200,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Comprehensive health coverage
Paid time off and holidays
Flexible work arrangements
Learning and development opportunities
Retirement benefits

Job summary

AHEAD helps enterprises deliver digital transformation by embedding AI security into client environments. The Forward Deployed AI Security Engineer role sits with security, platform, and AI engineering teams to assess runtime behavior and deploy robust security controls that endure production load.

You will author precise assessment reports, design guardrails, and train operators, ensuring the control plane operates seamlessly while minimizing risk for the client.

Qualifications

  • Outstanding written and spoken English with ability to produce precise assessment reports and briefings.
  • 5+ years in cybersecurity engineering, security architecture, or technical consulting.
  • Experience with cloud, application, or AI/LLM security.
  • Strong integration skills across identity, endpoints, network, and cloud platforms.
  • Willingness to travel and embed with customers for deployments.

Responsibilities

  • Perform AI runtime assessments of assets, flows, prompts, and tool calls.
  • Deploy, integrate, and harden AI security tools in client environments.
  • Design and operationalize the AI security control plane and policies.
  • Integrate telemetry with SIEM/XDR and other security stacks.
  • Red team and validate defenses, translating findings into guardrails.
  • Own customer outcomes and drive workshops, playbooks, and knowledge transfer.
  • Communicate findings and risk with executives and engineers in clear English.

Skills

English proficiency
Cybersecurity engineering
Security architecture
AI security
Cloud security
Red team & adversarial testing

Education

Bachelor's degree or equivalent

Tools

Palo Alto Prisma AIRS
Koi Agentic Endpoint Security
Onyx Security
Zenity
Zscaler AI Security
CrowdStrike Falcon AIDR

Job description

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.

AtAHEAD, we prioritize creating a culture of belonging,where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.

We are an equal opportunity employer,anddo not discriminatebased onan individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, maritalstatus,or any other protected characteristic under applicable law, whether actual or perceived.

We embraceall candidatesthatwillcontribute to the diversification and enrichment of ideas andperspectives atAHEAD.

The Forward Deployed AI Security Engineer is a customer-facing technical operator who lives inside client environments, not behind a ticket queue. You will sit with security, platform, and AI engineering teams to assess how generative and agentic systems actually behave at runtime, then design, deploy, tune, and operationalize AI security controls that hold up under production load.

You will install, configure, integrate, and defend tools in live estates: Palo Alto Prisma AIRS, Koi Agentic Endpoint Security, Onyx, Zenity, Zscaler AI Security, and CrowdStrike Falcon AIDR. You will write the findings, brief executives, train operators, and stay until the control plane is working — not until the workshop ends.

Because you represent the company in high-stakes rooms, written and spoken English must be exceptional. You will produce assessment reports, architecture decisions, runbooks, and executive briefings that are precise, defensible, and free of ambiguity.

Responsibilities
  • Perform AI runtime assessments. Inventory AI applications, models, agents, copilots, MCP servers, plugins, and data flows. Evaluate prompt/response paths, tool-calling behavior, identity chains, and attack surface. Produce scored findings covering prompt injection, jailbreaks, data leakage, model and agent misuse, shadow AI, and unsafe autonomous actions.
  • Deploy and operationalize AI security tools. Stand up, integrate, and harden Palo Alto Prisma AIRS (runtime firewall, API intercept, model security, agent security, red teaming, posture), Koi Agentic Endpoint Security, Onyx Secure AI Control Plane / Guardian Agent, Zenity (observability, AISPM, exposure management, runtime boundaries), Zscaler AI Security (AI Guard, asset management, zero-trust access to GenAI), and CrowdStrike Falcon AIDR and related Falcon modules.
  • Design the control plane. Map traffic through AI gateways, inline intercepts, endpoint agents, SaaS connectors, and identity providers. Define allow/block/human-in-the-loop policies for prompts, tool use, MCP calls, package and extension installs, and agent actions.
  • Integrate with the existing stack. Wire AI security telemetry into SIEM/SOAR, EDR/XDR, SSE/Zero Trust, IAM, CSPM, and ticketing. Correlate AI events with endpoint, identity, and network signals so detections are actionable, not noisy.
  • Red team and validate. Run adversarial testing against LLMs, agents, and copilots. Convert findings into enforceable guardrails. Re-test after deployment and prove residual risk is accepted or closed.
  • Own customer outcomes. Embed with the account. Drive architecture workshops, implementation sprints, policy workshops, and knowledge transfer. Leave behind runbooks, detection content, and an operating model the customer can run without you.
  • Communicate with precision. Write assessment reports, risk memos, architecture decision records, and board-ready summaries. Brief CISOs, AI platform owners, legal/privacy, and engineers in clear, idiomatic English. Escalate risk without inflating it.
  • Feed product and practice. Return field patterns, integration gaps, and detection ideas to product, threat research, and delivery teams. Help standardize playbooks for repeatable AI security deployments.
Requirements
  • Exceptional written and spoken English. You can write a 20-page technical assessment, a one-page CISO brief, and a customer email with equal clarity. Grammar, tone, structure, and technical precision are non-negotiable. Candidates will be evaluated on writing samples and live briefing quality.
  • Hands-on deployment experience with multiple of the following platforms in production or customer environments: Palo Alto Prisma AIRS, Koi Agentic Endpoint Security, Onyx Security, Zenity, Zscaler AI Security, and CrowdStrike (Falcon AIDR, Falcon XDR/NG-SIEM, or adjacent Falcon modules used to secure AI runtime).
  • Demonstrated ability to perform AI runtime assessments: discovering AI assets, inspecting prompt and tool-call traffic, identifying prompt injection / jailbreak / data-exfiltration / agent-abuse paths, and translating findings into controls.
  • 5+ years in cybersecurity engineering, security architecture, or technical consulting, with at least 2 years focused on cloud, application, or AI/LLM security.
  • Working fluency with modern AI architecture: LLMs and SLMs, RAG, agents and multi-agent systems, MCP servers and tools, copilots (e.g., Microsoft 365 Copilot, GitHub Copilot, Cursor, Claude Code), model gateways, and common cloud AI platforms (AWS Bedrock, Azure AI Foundry / OpenAI, Google Vertex AI).
  • Strong integration skills across identity (Okta, Entra ID), endpoints, network/SSE, APIs, Kubernetes or container platforms, and logging pipelines.
  • Ability to operate independently on-site: debug failed connectors, certificates, proxies, agents, and policy conflicts without waiting for a back-office engineer.
  • Willingness to travel extensively and embed with customers for multi-day or multi-week deployments.
  • Bachelor's degree in Computer Science, Cybersecurity, Engineering, or equivalent practical experience.
Preferred
  • Prior forward-deployed, professional-services, or resident-engineer experience (Palantir-style FDE, vendor PS, or Big Four cyber delivery).
  • Vendor certifications or deep product credentials in Palo Alto Networks, Zscaler, CrowdStrike, or adjacent SSE/XDR platforms.
  • Experience with AI red teaming methodologies, OWASP Top 10 for LLM Applications, OWASP Top 10 for Agentic Applications, MITRE ATLAS, and NIST AI RMF.
  • Scripting and automation in Python and one of Bash, PowerShell, or Go. Comfort reading application and infrastructure-as-code.
  • Familiarity with DLP, DSPM, secrets detection, model scanning, and software supply-chain controls as they apply to AI artifacts (models, packages, extensions, MCP servers).
  • Experience in regulated industries (financial services, healthcare, government) where AI use must be auditable.
  • Public speaking, workshop facilitation, or published technical writing on AI security.
Products & Platforms
  • Palo Alto Prisma AIRS: AI runtime security (network and API intercept), model security, agent security, AI red teaming, posture management, and AI gateway controls.
  • Koi Agentic Endpoint Security: Discovery and risk scoring of endpoint-resident AI software, packages, extensions, local models, agents, and MCP servers; install governance and session-aware AIDR.
  • Onyx: Secure AI control plane — continuous AI asset discovery, session capture, identity-aware attribution, and Guardian Agent enforcement (allow, redirect, require approval, or block).
  • Zenity: AI agent observability, AI security posture management (AISPM), exposure management, runtime boundaries, and coverage across SaaS copilots, custom agents, and coding agents.
  • Zscaler: Zero Trust access to GenAI, AI asset management, AI Guard runtime inspection of prompts and responses, and correlation of AI-event telemetry with the Zero Trust Exchange.
  • CrowdStrike: Falcon AIDR for runtime detection and response across endpoint, SaaS, and cloud AI use; integration with Falcon XDR / Next-Gen SIEM for investigation and automated response.
Why AHEAD

Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.

We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.

Benefits
  • Comprehensive health insurancecoverage for employees, with options to extend coverage to dependents
  • Paid time off and company holidays, along with additional leave benefits as per policy
  • Flexible work arrangements, supporting work-life balance
  • Learning and development opportunitiesto support continuous growth and upskilling
  • Employee wellness initiativesand programs focused on physical and mental well-being
  • Retirement and statutory benefitsin line with India regulations
  • Inclusive and people-first culture, with a strong focus on collaboration and ownership
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Technical Consultant - Forward Deployed AI Security Engineer
Senior Technical Consultant - Forward Deployed AI Security Engineer

Lever, Inc. • Gurugram District

On-site
INR 3,500,000 - 7,500,000
Comprehensive health insurance
Paid time off and holidays
Flexible work arrangements
+3
Senior Technical Consultant - Forward Deployed AI Security Engineer
Senior Technical Consultant - Forward Deployed AI Security Engineer

Gohyred • Haryana

On-site
INR 3,500,000 - 7,000,000
Comprehensive health insurance
Paid time off and holidays
Flexible work arrangements
+4
Senior Technical Consultant - Forward Deployed AI Security Engineer
Senior Technical Consultant - Forward Deployed AI Security Engineer

AHEAD • Gurugram District

On-site
INR 3,500,000 - 6,000,000
Comprehensive health insurance
Paid time off
Flexible work arrangements
+2
Principal Technical consultant-AI
Principal Technical consultant-AI

Ahead • Gurugram District

On-site
INR 3,000,000 - 5,500,000
Comprehensive health insurance
Paid time off and holidays
Flexible work arrangements
+4
Senior Technical Consultant - AI Platform Engineer
Senior Technical Consultant - AI Platform Engineer

AHEAD • India

On-site
INR 3,500,000 - 7,500,000
Health insurance
Paid time off
Flexible work arrangements
+4
Senior Engineer – AWS (FinOps)
Senior Engineer – AWS (FinOps)

AHEAD • Gurugram District

On-site
INR 4,000,000 - 7,000,000
Comprehensive health insurance
Paid time off and holidays
Flexible work arrangements
+4
Cloud Engineer - Azure
Cloud Engineer - Azure

AHEAD • Gurugram District

On-site
INR 800,000 - 1,200,000
Health insurance
Paid time off
Flexible work arrangements
+3
Cloud Engineer - Azure
Cloud Engineer - Azure

Lever, Inc. • Gurugram District

On-site
INR 1,500,000 - 2,100,000
Comprehensive health insurance
Paid time off & holidays
Flexible work arrangements
+2
Technical Consultant, Modern Apps
Technical Consultant, Modern Apps

Thinkahead • India

On-site
INR 1,800,000 - 2,800,000
Health insurance
Paid time off
Flexible work arrangements
+4
Technical Consultant, Modern Apps
Technical Consultant, Modern Apps

Lever, Inc. • India

Remote
USD 120,000 - 160,000
Health insurance
Flexible work arrangements
Learning & development
+2