AI Security Architect - Agentic Platform Defender

Ernst & Young Oman

Hartford (CT)

Remote

USD 140,000 - 210,000

Full time

10 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

EY is seeking an AI Security Engineer to own the security posture of its Agentic AI platform end to end. The role covers threat modeling, secure-by-default contracts, sandboxing, and defense against agentic threats across cloud-to-air-gapped deployments.

You will drive risk-based controls, governance, and assurance for regulated client environments. The ideal candidate brings depth in cloud-native security, AI threat modeling, and policy-as-code, with experience defending complex agented systems

Responsibilities

  • Own the platform threat model, covering agent autonomy, tool invocation, delegated authority, model and data supply chain, multi-tenancy, and every deployment target from cloud to air-gapped.
  • Define the security engineering and control set for every platform layer: infrastructure and boot chain, Kubernetes and cluster fabric, identity and secrets, secure execution and sandboxing, gateway and egress, data and state, delivery pipeline, and telemetry.
  • Set the secure-by-default contract so that platform capabilities arrive hardened, including agent templates, Helm charts, sandbox profiles, and network policy ship with correct controls rather than requiring teams to add them.
  • Own defense against agentic threat classes including direct and indirect prompt injection, jailbreak and instruction hijacking, excessive agency, confused-deputy and authority-escalation attacks, tool and function-call abuse, memory and context poisoning, and retrieval-augmented data exfiltration.
  • Work with the architecture team to help define the agent authority model: delegated and on-behalf-of authority, scope and delegation-depth limits, consent boundaries, and the non-escalation invariant that an agent never exceeds the authority of its initiating principal at any hop.
  • Own the sandboxing security standard for agent-generated code execution: isolation boundaries, filesystem and credential scope, egress restriction, resource containment, and the escape-test suite that proves the boundary holds.
  • Secure the model and knowledge supply chain: model provenance and integrity, upstream registry governance, poisoning and backdoor risk, embedding and vector-store integrity.
  • Secure agent-to-agent and tool protocols including MCP and A2A surfaces: discovery trust, tool registration and approval, schema validation, and authorization of inter-agent calls.
  • Lead AI red teaming and adversarial testing: build the offensive capability and the

Job description

EY is seeking an AI Security Engineer to own the security posture of its Agentic AI platform end to end. The role covers threat modeling, secure-by-default contracts, sandboxing, and defense against agentic threats across cloud-to-air-gapped deployments.

You will drive risk-based controls, governance, and assurance for regulated client environments. The ideal candidate brings depth in cloud-native security, AI threat modeling, and policy-as-code, with experience defending complex agented systems

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Engineer: Agentic Platform Defense
AI Security Engineer: Agentic Platform Defense

Ernst & Young Oman • Milwaukee (WI)

Remote
USD 140,000 - 190,000
AI Security Architect – Agentic Platform Defense
AI Security Architect – Agentic Platform Defense

EY • Palo Alto (CA)

On-site
USD 157,000 - 262,000
Senior AI Security Engineer - Agentic Platform Defenses
Senior AI Security Engineer - Agentic Platform Defenses

EY • Milwaukee (WI)

On-site
USD 126,000 - 230,000
Medical and dental coverage
401(k)
Paid time off
+1
Senior AI Security Architect for Agentic Platforms
Senior AI Security Architect for Agentic Platforms

EY • Houston (TX)

On-site
USD 126,000 - 230,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off
Senior AI Security Architect for Agentic Platform
Senior AI Security Architect for Agentic Platform

Ernst & Young Oman • Richmond (VA)

Remote
USD 150,000 - 190,000
Senior AI Security Architect for Agentic Platform
Senior AI Security Architect for Agentic Platform

Ernst & Young Oman • San Jose (CA)

Remote
USD 140,000 - 190,000
Lead AI Security Architect | Defender of Agentic Platforms
Lead AI Security Architect | Defender of Agentic Platforms

Ernst & Young Oman • Palo Alto (CA)

Remote
USD 150,000 - 190,000
Lead AI Security Engineer: Defender of Agentic Platform
Lead AI Security Engineer: Defender of Agentic Platform

Ernst & Young Oman • San Mateo (CA)

Remote
USD 140,000 - 190,000
Lead AI Security Engineer: Defend the Agentic AI Platform
Lead AI Security Engineer: Defend the Agentic AI Platform

EY • Denver (CO)

On-site
USD 126,000 - 230,000
Medical and dental coverage
401(k) with company match
Flexible vacation policy
Lead AI Security Engineer: Platform Threat & Defense
Lead AI Security Engineer: Platform Threat & Defense

Ernst & Young Oman • Cleveland (OH)

Remote
USD 150,000 - 190,000