AI Information Security Engineer

Tenable

Boston (MA)

Hybrid

USD 150,000 - 230,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Hybrid or remote opportunities
Professional development and tuition

Job summary

Tenable is seeking an AI Security Engineer to advance security for Tenable's AI-enabled products and enterprise deployments. You will design controls across the AI/ML lifecycle, conduct safety assessments, and build tooling to raise security posture.

The role requires deep expertise in AI security risks, model internals, and secure software practices, with collaboration across engineering and product teams.

Qualifications

  • 5+ years of information security or application security experience with at least 1–2 years in securing AI/ML systems.
  • Experience inspecting AI model internals and safety risks (adversarial inputs, data poisoning)
  • Strong understanding of ML/AI lifecycle security risks and mitigations
  • Hands-on with AI red teaming, adversarial prompt testing, or LLM security assessments
  • Familiarity with OWASP LLM Top 10 and NIST AI RMF guidance

Responsibilities

  • Design, implement, and maintain end-to-end security controls across the AI/ML lifecycle
  • Perform AI safety assessments and threat modeling for AI/ML systems
  • Develop security reference architectures for AI deployment patterns
  • Deploy controls to ensure model integrity, governance, and access control across models and feature stores
  • Collaborate with engineers and product teams to embed security into AI development and deployment
  • Drive SSDLC and DevSecOps practices for AI-powered products, including threat modeling and security testing

Skills

AI security
Threat modeling
SSDLC
DevSecOps
Python
Go
Security architecture
Communication

Education

Master's degree in Computer Science, Cybersecurity, Data Science, or related field

Tools

PyTorch
Hugging Face Transformers
TensorFlow

Job description


  • As an AI Security Engineer on Tenable’s Information Security team, you will help shape and mature our approach to securing AI both within Tenable’s products and across the enterprise. AI introduces a new class of risk at the intersection of application security, cloud risk, and data governance, and you will be on the front lines of defining how we assess, test, and address it

  • You will apply hands-on AI engineering experience alongside deep product security and application security skills to design security controls for AI systems, lead assessments, and help engineering teams ship AI features securely

  • You will establish security standards for responsible AI use, influence decisions across the organization, and build tooling that raises our security posture

  • Design, implement, and maintain end-to-end security controls across the AI/ML lifecycle

  • Conduct safety research, inspecting model internals (e.g., detecting hidden deception, latent knowledge, or unwanted concepts across layers) as a core methodology

  • Perform AI safety assessments and threat modeling for AI/ML systems, identifying risks such as data poisoning, model evasion, model extraction, adversarial inputs, and integrity attacks

  • Design and implement robust security guardrails, controls, and boundary mechanisms for Large Language Models (LLMs), Small Language Models (SLMs), and open-source models

  • Act as a subject matter expert in AI safety research by inspecting model internals to detect hidden deception, latent knowledge, or unwanted concepts, ensuring highly transparent and aligned AI outputs

  • Continuously monitor the AI landscape for novel vulnerabilities and attack techniques, applying deep engineering experience to proactively defend enterprise AI deployments

  • Develop security reference architectures for AI deployment patterns, including MCP servers and agentic AI workflows and harnesses

  • Deploy controls to ensure model integrity, governance, and proper access control across models and feature stores

  • Build AI-driven tooling to strengthen cybersecurity posture across identity, incident management, vulnerability management, third-party risk, and emerging AI threat vectors

  • Perform AI safety, security assessments, threat modeling for AI/ML systems, identifying risks such as data poisoning, model evasion, model extraction, adversarial inputs, and integrity attacks

  • Collaborate with software engineers, and product teams to integrate security best practices into AI development, training, validation, and deployment processes

  • Drive Secure Software Development Lifecycle (SSDLC) and DevSecOps practices for AI-powered products, including threat modeling, security testing, penetration testing, and CI/CD pipeline security automation

  • Create security guidance, documentation, and training for internal engineering and development teams; develop metrics that drive desired security behaviors and outcomes

  • Research emerging trends in AI security and contribute to innovative solutions that support Tenable’s AI initiatives


Benefits


  • Health: Comprehensive benefits to support physical and mental wellbeing and family-forming plans

  • Work/Life Balance: Generous paid time off with hybrid or remote opportunities available for most positions

  • Financial Savings and Security: Retirement plans, employee stock purchase plan (ESPP), equity incentives, life and disability insurance

  • Professional Development: Customizable opportunities, including learning courses, mentorship, leadership programs and tuition reimbursement


This role is ideal for a practitioner who has spent real time building with AI systems, looking under the hood of model internals, and wants to channel that experience into a security specialtyExperience using specialized interpretability and probing tools/libraries such as TransformerLens, NNsight, Captum, or LIT (\"Learning Interpretability Tool\")Strong understanding of the ML/AI lifecycle and the security risks associated with each stageKnowledge of application security architecture best practices and patterns, including modern web applications, Docker, and microservicesStrong written and verbal comAAmunication skills; able to clearly translate complex AI security risks for both technical and non-technical audiencesKnowledge of data security principles, including encryption, masking, and tokenization5 or more years of professional experience in information security or application security, with at least 1–2 years focused on securing AI/ML systemsSelf-motivated and effective working independently and across distributed teamsAbility to work cross-functionally across engineering, product, and business teamsDeep understanding of AI-specific security threats, including adversarial ML, data poisoning, prompt injection, model inversion, model evasion, and inference attacksFamiliarity with mechanistic & Architectural Concepts: inspecting internal model states, residual streams, attention patterns, activation steering, Sparse Autoencoders (SAEs), or feature attributionMaster’s Degree in Computer Science, Cybersecurity, Data Science, or a related field preferred; advanced degree preferredStrong problem-solving skills, attention to detail, and ability to lead projects with end-to-end ownershipKnowledge of cloud security platforms: AWS, Azure, or GCP including AI/ML-related servicesStrong coding experience in Python and/or GoKnowledge of SSDLC, DevSecOps, and security testing practices, including SAST, DAST, SCA, and threat modelingExperience with frameworks & libraries such as PyTorch, Hugging Face Transformers, TensorFlow or similarFamiliarity with AI governance frameworks (EU AI Act, NIST AI RMF, etc)Hands-on experience with AI red teaming, adversarial prompt testing, or LLM security assessmentsFamiliarity of AI security frameworks and standards, including OWASP LLM Top 10 and the NIST AI Risk Management FrameworkExperience with application security assessment tools (Burp Suite, ZAP, Tenable WAS, etc)Background in cloud security or large-scale SaaS product environmentsSecurity certifications: CISSP, CSSLP, SANS GIAC, CEH, or AI-focused security certifications are a plus, but not necessary

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Engineer
AI Security Engineer

Remote Jobs • Boston (MA), Columbia (MD)

Hybrid
USD 123,000 - 163,000
AI Security Engineer
AI Security Engineer

TBG | The Bachrach Group • New York (NY)

Hybrid
USD 150,000 - 230,000
AI Information Security Engineer
AI Information Security Engineer

Tenable, Inc. • Boston (MA), Columbia (MD)

Hybrid
USD 170,000 - 230,000
Hybrid work model
AI Information Security Engineer
AI Information Security Engineer

Tenable • Columbia (MD)

On-site
USD 123,000 - 163,000
Medical insurance
Dental insurance
401(k) with company match
+1
Senior Security Engineer - AI Focus
Senior Security Engineer - AI Focus

Euna Solutions • Atlanta (GA)

On-site
USD 140,000 - 210,000
Senior AI Security Engineer
Senior AI Security Engineer

World Wide Technology, Inc. • Northern (KY)

On-site
USD 140,000 - 210,000
AI Defense Engineer
AI Defense Engineer

Gravity IT Resources • Cincinnati (OH)

On-site
USD 140,000 - 210,000
Principal AI Security
Principal AI Security

Urbint • Austin (TX)

On-site
USD 180,000 - 280,000
Paid maternity & paternity leave
Paid holidays & sick time
Volunteer time off
+4
Senior AI Security Engineer
Senior AI Security Engineer

The Intersect Group • Irving (TX)

Hybrid
USD 150,000 - 190,000
Senior Security Engineer (Artificial Intelligence)
Senior Security Engineer (Artificial Intelligence)

Oscar Health • New York (NY)

On-site
USD 180,000 - 230,000