AI Security Platform Architect

EY

Buffalo (NY)

Remote

USD 126,000 - 230,000

Full time

11 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical & dental coverage
401(k) plan
Flexible vacation policy

Job summary

EY seeks an AI Security Engineer to own the security posture of its agentic AI platform end to end. You will define threat models, security controls, and policy-based guardrails across cloud-native deployments, including Kubernetes, supply-chain, and isolation.

You will lead red team exercises and produce assurance artefacts for clients and regulators. You will engage with architecture and delivery teams to harden the platform, manage risk, and enable trusted, compliant AI deployments in

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Security, or a related technical field, or demonstrably equivalent depth.
  • 10+ years in security engineering or offensive security with production ownership.
  • Demonstrable depth in cloud-native and Kubernetes security in production environments.
  • Hands-on experience with workload identity, secrets management, PKI and certificate lifecycle.

Responsibilities

  • Own the platform threat model across agent autonomy, tool invocation, and multi-tenancy for cloud-to-air-gapped deployments.
  • Define security engineering and control sets for infrastructure, Kubernetes, identity, secrets, and secure execution.
  • Lead security by default contracts, including templates, sandbox profiles, and network policies.
  • Defend against agentic threat classes including prompt injection, jailbreak, excessive agency, and data exfiltration.
  • Define agent authority models, scope/delegation limits, and non-escalation invariants.
  • Own sandboxing standards for code execution and ensure containment boundaries.
  • Secure the model and knowledge supply chain with provenance, SBOM, and attestation.
  • Implement policy-as-code across Kyverno and OPA; enforce signature verification and stand up guardrails.
  • Lead AI red teaming and adversarial testing; drive cadence for guardrails and authorities.
  • Own end-to-end supply-chain integrity, signing, SBOM, vulnerabilities, and licenses.
  • Manage admission control, network policy, and workload isolation across platforms.
  • Provide client-facing security reviews and artefacts to CISOs and regulators.
  • Drive detection and response for agentic misbehavior with telemetry and playbooks.

Skills

Cloud-native security
AI threat models
Zero-trust & workload identity
Policy-as-code
Software supply-chain security
Offensive security mindset
Executive communication
Risk-based decision making

Education

Bachelor’s or Master’s degree in Computer Science, Security, or related field

Tools

SPIFFE/SPIRE
PKI and certificate lifecycle

Job description

EY seeks an AI Security Engineer to own the security posture of its agentic AI platform end to end. You will define threat models, security controls, and policy-based guardrails across cloud-native deployments, including Kubernetes, supply-chain, and isolation.

You will lead red team exercises and produce assurance artefacts for clients and regulators. You will engage with architecture and delivery teams to harden the platform, manage risk, and enable trusted, compliant AI deployments in

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Architect – Agentic Platform Defense
AI Security Architect – Agentic Platform Defense

EY • Palo Alto (CA)

On-site
USD 157,000 - 262,000
AI Security Platform Lead
AI Security Platform Lead

EY • City of Albany (NY)

Remote
USD 140,000 - 225,000
Medical and dental coverage
401(k) plan
Flexible vacation policy
+1
Senior AI Security Engineer - Platform Defense & Threats
Senior AI Security Engineer - Platform Defense & Threats

EY • Tampa (FL)

On-site
USD 125,000 - 231,000
Senior AI Security Engineer — Platform & Agentic Defense
Senior AI Security Engineer — Platform & Agentic Defense

EY • Kansas City (MO)

Hybrid
USD 126,000 - 262,000
Medical and dental coverage
Pension and 401(k)
Flexible vacation policy
+1
Senior AI Security Engineer - Platform Threat & Defense
Senior AI Security Engineer - Platform Threat & Defense

EY • Philadelphia

Remote
USD 126,000 - 262,000
Senior AI Security Architect for Agentic Platforms
Senior AI Security Architect for Agentic Platforms

EY • Houston (TX)

On-site
USD 126,000 - 230,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off
Senior AI Security Architect
Senior AI Security Architect

EY • Hartford (CT)

Remote
USD 150,000 - 230,000
Medical and dental coverage
Total Rewards package
Flexible vacation policy
Principal AI Security Engineer
Principal AI Security Engineer

EY • Chantilly (VA)

Remote
USD 125,000 - 230,000
Principal AI Security Engineer — Platform Defense
Principal AI Security Engineer — Platform Defense

EY • Rogers (AR)

Remote
USD 126,000 - 262,000
Medical and dental coverage
Pension and 401(k)
Flexible vacation policy
Senior AI Security Engineer - Platform & Threat Defense
Senior AI Security Engineer - Platform & Threat Defense

EY • Pittsburgh

On-site
USD 151,000 - 251,000
Competitive compensation
Medical and dental coverage
Paid time off
+1