AI Systems Engineer: Secure Execution & Trust

EY

Irvine (CA)

Hybrid

USD 128,000 - 201,000

Full time

5 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Competitive compensation
Paid time off

Job summary

EY is seeking an AI Systems Engineer to own the security and trust fabric of EY's AI-native platform, spanning identity, secrets, cryptography, and attestation across cloud, on-prem, edge, and air-gapped environments.

You will drive workload identity, confidential compute, and attestation policies, collaborating with Enterprise Security and SRE to ensure audit-readiness in regulated client contexts.

Qualifications

  • Bachelor's or Master’s degree in Computer Science, Security, or related technical field, or equivalent experience.
  • 8+ years in security engineering, identity/PKI, or trust infrastructure, with hands-on production ownership.
  • Deep, hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets management (OpenBao/Vault).
  • Strong grounding in PKI, X.509 certificate lifecycle (cert-manager), key management, and transit encryption.
  • Working experience with confidential compute and hardware attestation (TDX, SEV-SNP, SGX, NVIDIA CC, or equivalents) and secure boot (Intel TXT).
  • Experience delivering identity and secrets consistently across multi-tenant, multi-environment (cloud/on-prem/edge/air-gapped) platforms.
  • Proven track record operating under compliance, security, or regulatory constraints with audit-grade evidence requirements.
  • Ability to define clean ownership boundaries and consumption contracts with platform, data, and runtime teams.

Responsibilities

  • Own workload identity and secrets management across diverse environments.
  • Build confidential compute environments with trusted hardware and secure boot.
  • Establish a platform-wide identity model for end-to-end verifiable identity.
  • Own the cryptographic lifecycle: issuance, rotation, revocation, expiry.
  • Enforce attestation policy for nodes, enclaves, and workloads.
  • Collaborate with Enterprise Security / Cloud Platform / SRE for audit readiness.

Skills

Workload identity
Secrets management
PKI
Cryptographic lifecycle
Confidential compute
Attestation/verification
Security-first mindset
Auditability
Cross-environment operations

Education

BS/MS in CS or security

Tools

SPIRE/SPIFFE
Keycloak/Entra ID
OpenBao/Vault
cert-manager
TDX/SEV-SNP/SGX/TrustZone
DOCA

Job description

EY is seeking an AI Systems Engineer to own the security and trust fabric of EY's AI-native platform, spanning identity, secrets, cryptography, and attestation across cloud, on-prem, edge, and air-gapped environments.

You will drive workload identity, confidential compute, and attestation policies, collaborating with Enterprise Security and SRE to ensure audit-readiness in regulated client contexts.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Philadelphia

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
Pension and 401(k)
+1
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • McLean (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Total rewards package (medical/dental,
Flexible vacation policy
AI Systems Engineer – Secure Execution & Trust
AI Systems Engineer – Secure Execution & Trust

EY • Birmingham (AL)

Hybrid
USD 107,000 - 177,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Southfield (MI)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
Pension and 401(k)
+2
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Austin (TX)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Flexible vacation policy
Competitive compensation
AI Systems Engineer: Secure Execution & Trust Fabric
AI Systems Engineer: Secure Execution & Trust Fabric

EY • City of Albany (NY)

Hybrid
USD 107,000 - 177,000
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Jacksonville (FL)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
401(k) / pension and generous PTO
AI Systems Security & Trust Engineer
AI Systems Security & Trust Engineer

EY • Richmond (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Salary and benefits
Paid time off
+1
AI Trust & Secure Execution Engineer
AI Trust & Secure Execution Engineer

EY • Phoenix (AZ)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical & dental coverage
Pension and 401(k)
AI Systems Security Engineer — Trust & Attestation Architect
AI Systems Security Engineer — Trust & Attestation Architect

EY • Alpharetta (GA)

On-site
USD 107,000 - 177,000
Hybrid work model?"We have a flexible,