AI Security Engineer (Remote in the U.S.)

GuidePoint Security LLC

United States

Remote

USD 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote workforce primarily (U.S. based
Medical Insurance
Dental Insurance
FTO / holidays
Phone & internet allowance
Retirement plan

Job summary

GuidePoint Security is seeking an AI Security Engineer for remote work in the United States. You will design, implement, and securely operate generative AI solutions, including governance assessments, threat modeling, and architecture reviews across enterprise platforms.

Responsibilities include advising on secure AI integration, data controls, and agentic workflows, with a focus on delivering professional client-facing artifacts and risk mitigation guidance.

Qualifications

  • 3+ years of security engineering with cloud/app focus.
  • Hands-on experience with enterprise AI security solutions.
  • Familiarity with AI-focused cloud services (AWS, Azure, Google).
  • Understanding of LLM security, prompt injection and data protection.
  • Ability to produce client-facing deliverables and reports.
  • Strong written and verbal communication skills.

Responsibilities

  • Conduct AI security architecture reviews and assessments of enterprise AI platforms.
  • Lead threat modeling for AI workloads and data protection controls.
  • Evaluate AI coding tools and development environments for security risks.
  • Advise on secure integration of SaaS AI services into enterprise apps.
  • Develop AI security governance, matrices, and reference architectures.

Skills

Security engineering
Cloud security
Agentic AI security
LLM security concepts
Threat modeling AI systems
Client-facing deliverables
Strong communication

Tools

Claude Code
OpenAI Codex
Cursor
MCP servers

Job description

AI Security Engineer (Remote in the U.S.)

Remote

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

General Description

The GuidePoint Security North Central region is seeking a skilled AI Security Engineer to join our growing AI Security Services team within the Automation and AI Practice. You will assist customers in the design, implementation, security, and operational management of generative AI security solutions — including AI governance assessments, LLM and agent security testing, shadow AI discovery, agentic workflow development, and architecture reviews.

About the North Central AI Security Practice

You will work closely with peers across multiple domains including AppSec, Cloud Security, and Identity and Access Management to deliver holistic and secure solutions adhering to industry best practices. This role offers the opportunity to contribute directly to the continued growth of our AI security practice and its expanding service portfolio.

Roles and Responsibilities:

  • AI Security Architecture & Assessment: Conduct secure configuration reviews and security assessments of enterprise AI platforms (e.g., Anthropic Claude Enterprise, OpenAI ChatGPT Enterprise, Microsoft Copilot) against established control domains — including identity and provisioning, network and access enforcement, data protection and retention, and audit and compliance — identifying vulnerabilities, attack surfaces, and gaps against industry frameworks (e.g., OWASP LLM Top 10, MITRE ATLAS)
  • Threat Modeling for AI Systems: Lead threat modeling exercises specific to AI workloads, covering prompt injection, model inversion, data poisoning, supply chain risks, excessive agency, privilege escalation through tool chaining, and unauthorized cross-application data movement across SaaS, self-hosted, and local AI deployments
  • AI Coding Tool & Development Environment Security: Assess AI coding tools and development environments — including Claude Code, OpenAI Codex, Open Code, Cursor, and MCP servers — for sandbox isolation, plugin allowlisting, secrets access, network egress controls, and CI/CD pipeline security
  • Secure AI Integration Guidance: Advise client teams on securely integrating SaaS AI services and APIs (e.g., OpenAI, Azure OpenAI, AWS Bedrock) into enterprise applications, including safe handling of credentials, outputs, and user data
  • Data Security & Privacy Controls: Evaluate and recommend controls for data ingestion pipelines, RAG architectures, and vector databases to prevent unauthorized data exposure, leakage through model outputs, or non-compliant data processing — including zero data retention enforcement, sensitivity labeling, data classification, and encryption key management
  • Shadow AI Discovery: Conduct shadow AI discovery engagements to inventory unsanctioned AI tool usage and assess associated data exposure risks across client environments
  • Security Controls & Guardrails Evaluation: Evaluate security controls and guardrails across AI platforms, including identity and access management, DLP integration, conditional access policies, SIEM and logging configurations, human-in-the-loop mechanisms, and AI-specific runtime protections
  • Agentic Workflow Development: Design, build, and deploy AI agent workflows including use‑case design, agent architecture, and integration with security tooling and automation platforms
  • Security Architecture Reviews: Perform security architecture reviews for organizations deploying AI agents that connect to tools, data sources, or other agents via MCP or agentic frameworks, delivering reference architectures and recommendations
  • Security Documentation & Deliverables: Develop and deliver engagement artifacts including secure configuration review reports, prioritized findings registers, AI security control matrices, reference architectures, risk assessments, control frameworks, and secure enablement roadmaps
  • Strategic AI Security Roadmap: Contribute to the development of long‑term AI security strategies for clients, including prioritized remediation roadmaps, capability maturity assessments, and investment recommendations
  • Collaboration & Stakeholder Engagement: Serve as a trusted security advisor bridging business stakeholders, AI/ML engineers, IT operations, and information security teams — conducting stakeholder interviews and facilitating knowledge transfer sessions covering AI platform administration, troubleshooting, and operational runbooks
  • AI Threat Landscape Monitoring: Continuously track emerging AI security research, adversarial techniques, regulatory developments, and vendor security advisories (e.g., Anthropic, OpenAI, Microsoft feature releases) to keep client guidance relevant and proactive

Required Experience and Education:

  • 3+ years of experience in security engineering with a significant focus on cloud security and/or application security
  • Hands‑on experience implementing, managing, securing, and supporting agentic AI solutions within an enterprise context, including enterprise AI platforms such as Anthropic Claude (Enterprise, Desktop, Cowork, Code), OpenAI (ChatGPT Enterprise, Codex, API), or Microsoft Copilot
  • Familiarity with major cloud service provider AI‑focused services such as AWS Bedrock, AWS SageMaker, Azure AI Foundry, or Google Vertex
  • Solid understanding of generative AI concepts, Large Language Models (LLMs), context engineering, agentic tool usage, and foundational AI/ML principles
  • Operational experience in the usage of agentic coding assistants such as Claude Code, Open Code, Cursor, or Codex
  • Understanding of AI‑specific security challenges including prompt injection, data poisoning, supply chain security, model extraction attacks, excessive agency, and privilege escalation through tool chaining
  • Ability to produce professional client‑facing deliverables including assessment reports, findings registers, control matrices, and reference architecture documentation
  • Strong written and verbal communication skills with the ability to explain complex technical concepts to both technical and non‑technical audiences
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes

Preferred Experience and Education

  • Certifications such as AWS Certified AI Practitioner, AWS Certified Machine Learning Engineer, Azure AI Engineer Associate, or Claude Certified Architect
  • Understanding or experience with model fine‑tuning techniques
  • Experience with policy as code languages like Cedar or Rego and Infrastructure as Code (IaC) tools like AWS CloudFormation, Terraform, OpenTofu, or equivalent technologies
  • Experience designing and implementing agentic AI architectures that balance security and autonomy
  • Familiarity with MCP client/server architecture vs. agentic skills and the associated security risks of each
  • Experience with AI security tooling categories such as AI Security Posture Management (AISPM), AI runtime protection, or AI control plane platforms
  • Prior experience in a consulting, professional services, or managed services delivery model with direct client engagement

Travel Requirements:

  • Up to 10% travel

Physical Requirements:

  • Sedentary work
  • Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
  • Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day

Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on‑site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
Voluntary Self‑Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.

As set forth in GuidePoint Security’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service‑connected disability.

A "recently separated veteran" means any veteran during the three‑year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cloud Security Automation & AI Engineer- Remote (Anywhere in the U.S.)
Senior Cloud Security Automation & AI Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security LLC • United States

Remote
USD 180,000 - 240,000
Remote workforce
Group Medical Insurance
Group Dental Insurance
+3
Account Executive (Northwest - Bay Area)
Account Executive (Northwest - Bay Area)

GuidePoint Security LLC • San Jose (CA)

Remote
USD 90,000 - 150,000
Remote workforce
Medical insurance options
Dental insurance
+4
AI Security Engineer (Remote in the U.S.)
AI Security Engineer (Remote in the U.S.)

GuidePoint Security, LLC • United States

Remote
USD 120,000 - 180,000
Remote work
Health insurance
Dental insurance
+3
Director, OT/IoT Security Services- Remote (Anywhere in the U.S.)
Director, OT/IoT Security Services- Remote (Anywhere in the U.S.)

GuidePoint Security LLC • United States

Remote
USD 180,000 - 240,000
Remote work (US-based)
Group medical and dental insurance
Flexible time off and holidays
Account Executive (New York Metro)
Account Executive (New York Metro)

GuidePoint Security LLC • New York (NY)

Remote
USD 90,000 - 140,000
Remote work option
Medical insurance
Dental insurance
+3
Application Security Consultant- Remote (Anywhere in the U.S.)
Application Security Consultant- Remote (Anywhere in the U.S.)

GuidePoint Security, LLC • United States

Remote
USD 110,000 - 170,000
Remote work
Medical insurance
Dental insurance
+4
Vulnerability Management Engineer (ServiceNow) - Mid-Atlantic region (Remote)
Vulnerability Management Engineer (ServiceNow) - Mid-Atlantic region (Remote)

GuidePoint Security LLC • United States

Remote
USD 95,000 - 135,000
Remote workforce (U.S. based)
Group Medical Insurance options
Group Dental Insurance
+4
Azure Security Engineer- Remote (Anywhere in the U.S.)
Azure Security Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security, LLC • United States

Remote
USD 130,000 - 180,000
Remote workforce (U.S. based)
Health insurance
Retirement plan
+1
Security Operations AI Engineer, Contract New Remote, United States
Security Operations AI Engineer, Contract New Remote, United States

66degrees • Northern (KY)

Hybrid
USD 83,000 - 165,000
Azure Security Engineer- Remote (Anywhere in the U.S.)
Azure Security Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security • United States

Remote
USD 120,000 - 180,000
Remote workforce US-based
Medical Insurance options
Dental Insurance
+3