AI Security Engineer

TBG | The Bachrach Group

New York (NY)

Hybrid

USD 150,000 - 230,000

Full time

14 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

The Bachrach Group seeks an experienced Artificial Intelligence Security Engineer to lead enterprise defenses for ML systems, frontier models, and generative AI deployments. You will establish technical defenses, monitor model behaviors, vet external services, and ensure compliance with confidentiality mandates and cybersecurity standards.

You will drive risk analyses, incident handling, and adversarial testing while coordinating with legal, risk, and operations teams to enforce data boundaries

Qualifications

  • Minimum 5 years in information security with 2+ years securing ML ecosystems or enterprise AI risk governance.

Responsibilities

  • Lead pre-implementation security, governance, and privacy evaluations for AI platforms.
  • Identify and neutralize ML attack vectors including prompt manipulation and data poisoning.
  • Perform technical due diligence on AI partners and review data retention and hosting policies.
  • Enforce data boundaries to protect attorney-client materials and sensitive data.
  • Direct incident response and forensics for ML endpoints and model exploitation.
  • Design and run adversarial testing against pipelines and external models, translating results into remediation.
  • Produce security guidelines and training for staff on secure AI interaction and risk prevention.
  • Align AI security controls with NIST RMF, EU AI rules, and client addenda.

Skills

AI security
risk analysis
incident handling
red teaming
guidance & enablement
regulatory governance

Education

Bachelor's in Cybersecurity/CS/IT

Tools

Promptfoo
Microsoft PyRIT
NVIDIA Garak
Giskard
Azure OpenAI Service
Microsoft 365 Copilot

Job description

The Artificial Intelligence Security Engineer leads enterprise efforts to protect and govern machine learning systems, frontier models, and generative AI deployments. This practitioner is responsible for establishing technical defenses, continuously analyzing model behaviors, vetting external AI services, and ensuring all automated tools adhere strictly to client confidentiality mandates, statutory obligations, and cybersecurity governance standards.

Key Responsibilities
  • Comprehensive AI Risk Analysis: Lead pre-implementation security, governance, and privacy evaluations for commercial LLM platforms, specialized legal tech, retrieval-augmented workflows, and workplace assistants.
  • Specialized Threat Hunting & Monitoring: Identify and neutralize novel machine learning attack vectors, including indirect prompt manipulation, training data poisoning, model-driven data loss, and unauthorized shadow AI implementations across the enterprise.
  • Third-Party Model & Vendor Assurance: Execute technical due diligence on prospective AI partners, scrutinizing data retention policies, model training boundaries, geographic hosting criteria, and compliance attestations against frameworks like ISO/IEC 42001 and SOC 2 Type II.
  • Information Protection & Governance: Work closely with legal, risk, and operational teams to enforce data boundaries that stop protected work product, attorney-client privileged materials, and sensitive personal data from entering public or unmonitored model architectures.
  • Incident Handling & Forensics: Direct investigation, triage, and mitigation strategies for security events involving machine learning endpoints, compromised service credentials, and model exploitation.
  • Adversarial AI Testing & Red Teaming: Design and run offensive security exercises against internal pipelines and external models, simulating jailbreak strategies, prompt extraction, membership inference, model inversion, and autonomous agent hijacking. Manage third-party penetration testing scopes and translate outcomes into concrete remediation plans.
  • Workforce Enablement & Guidance: Formulate technical guidelines, best practices, and security awareness modules educating personnel on secure AI interaction and risk prevention.
  • Regulatory Governance & Standards: Align internal AI security controls with developing legal and industry benchmarks, including the NIST AI Risk Management Framework, European Union AI legislation, state financial cyber standards, and bespoke client security addenda.
Required Qualifications
  • Minimum 5 years of professional experience in information security, including at least 2 dedicated to securing machine learning ecosystems, LLMs, or enterprise AI risk governance.
  • Proven background conducting offensive AI testing, jailbreak research, and exploit prototyping, with deep familiarity using the MITRE ATLAS matrix and the OWASP Top 10 for Large Language Model Applications.
  • Direct hands-on experience using automated adversarial assessment suites (such as Promptfoo, Microsoft PyRIT, NVIDIA Garak, Giskard, or proprietary testing scripts).
  • Thorough architectural comprehension of transformer pipelines, retrieval-augmented generation (RAG) architectures, vector stores, and autonomous agent execution frameworks.
  • Practical background securing modern workplace productivity assistants and cloud-hosted model APIs (such as Azure OpenAI Service, Claude enterprise environments, and Microsoft 365 Copilot ecosystems).
  • Working proficiency with enterprise identity controls, data loss prevention (DLP), and content labeling systems (e.g., Microsoft Entra ID and Microsoft Purview).
  • Bachelor of Science in Cybersecurity, Computer Science, Information Technology, or an equivalent discipline.
Required Certifications
  • Must hold at least one active credential:
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Prior security engineering or governance background within legal organizations, investment management, banking, or similar high-scrutiny sectors.
  • Documented engagement in public or private AI vulnerability disclosure programs, CTF competitions, or published defensive/offensive ML research.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Specialist
AI Security Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 180,000
Gen AI Security Architect
Gen AI Security Architect

Envision Technology Solutions • United States

On-site
USD 120,000 - 170,000
Principal AI Security Engineer
Principal AI Security Engineer

Capitolis • Atlanta (GA)

On-site
USD 120,000 - 150,000
Information Technology Security Analyst
Information Technology Security Analyst

Tieto • United States

On-site
USD 100,000 - 160,000
Security Architect
Security Architect

Maganti IT Resources, LLC • Dallas (TX)

On-site
USD 180,000 - 260,000
Senior AI Security Engineer
Senior AI Security Engineer

The Intersect Group • Irving (TX)

Hybrid
USD 150,000 - 190,000
AI Security Architect
AI Security Architect

TechDigital Group • Bolingbrook (IL)

On-site
USD 160,000 - 230,000
Senior Security Engineer - AI Focus
Senior Security Engineer - AI Focus

Euna Solutions • Atlanta (GA)

On-site
USD 140,000 - 210,000
Senior Security Engineer (Artificial Intelligence)
Senior Security Engineer (Artificial Intelligence)

Oscar Health • New York (NY)

On-site
USD 180,000 - 230,000
AI Defense Engineer
AI Defense Engineer

Gravity IT Resources • Cincinnati (OH)

On-site
USD 140,000 - 210,000