AI Systems Engineer: Secure Execution & Trust

EY

Philadelphia (Philadelphia County)

Hybrid

USD 107,000 - 177,000

Full time

44 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Medical and dental coverage
Pension and 401(k)
Paid time off

Job summary

EY seeks AI Systems Engineers to own the security and trust fabric of EY's AI-native platform. You will manage workload identity, secrets, PKI, and attestation across cloud, on-prem, edge, and air-gapped environments, ensuring trust and auditability in regulated contexts.

You will collaborate across teams to enforce policy, drive cryptographic lifecycle, and shape secure, compliant infrastructure for enterprise AI workloads.

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Security, or related field.
  • 8+ years in security engineering, identity/PKI, or trust infrastructure with production ownership.
  • Hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets management (OpenBao/Vault).
  • Strong grounding in PKI, X.509 lifecycle (cert-manager), key management, and transit encryption.
  • Experience with confidential compute, hardware attestation (TDX/SEV-SNP/SGX/NVIDIA CC) and secure boot (Intel TXT).
  • Experience delivering identity and secrets across multi-tenant, multi-environment platforms.
  • Proven track record under compliance with audit-grade evidence requirements.
  • Ability to define ownership boundaries with platform, data, and runtime teams.

Responsibilities

  • Own workload identity and secrets management across all environments.
  • Build confidential compute environments with TEEs and secure boot to keep systems isolated and auditable.
  • Establish a platform-wide identity model for verifiable, propagated identity across telemetry and policy enforcement.
  • Own the cryptographic lifecycle: certificates, keys, and roots with zero manual secret sprawl.
  • Enforce attestation policy and capture evidence for audit in runtime and boot.
  • Partner with Enterprise Security / Cloud Platform / SRE to ensure audit readiness in regulated contexts.

Skills

Security engineering
Identity management
PKI
Cryptography

Education

Bachelor's or Master's in CS or related field

Tools

SPIRE/SPIFFE
Keycloak/Entra ID
OpenBao
cert-manager

Job description

EY seeks AI Systems Engineers to own the security and trust fabric of EY's AI-native platform. You will manage workload identity, secrets, PKI, and attestation across cloud, on-prem, edge, and air-gapped environments, ensuring trust and auditability in regulated contexts.

You will collaborate across teams to enforce policy, drive cryptographic lifecycle, and shape secure, compliant infrastructure for enterprise AI workloads.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Irvine (CA)

Hybrid
USD 128,000 - 201,000
Hybrid work model
Competitive compensation
Paid time off
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • McLean (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Total rewards package (medical/dental,
Flexible vacation policy
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Jacksonville (FL)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
401(k) / pension and generous PTO
AI Systems Engineer: Secure Execution & Trust Fabric
AI Systems Engineer: Secure Execution & Trust Fabric

EY • City of Albany (NY)

Hybrid
USD 107,000 - 177,000
AI Systems Engineer – Secure Execution & Trust
AI Systems Engineer – Secure Execution & Trust

EY • Birmingham (AL)

Hybrid
USD 107,000 - 177,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Austin (TX)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Flexible vacation policy
Competitive compensation
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Southfield (MI)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
Pension and 401(k)
+2
AI Systems Engineer: Secure Execution & Trust Fabric
AI Systems Engineer: Secure Execution & Trust Fabric

EY • St. Louis (MO)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Healthcare and pension benefits
Generous paid time off
AI Systems Security & Trust Engineer
AI Systems Security & Trust Engineer

EY • Richmond (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Salary and benefits
Paid time off
+1
AI Trust & Secure Execution Engineer
AI Trust & Secure Execution Engineer

EY • Phoenix (AZ)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical & dental coverage
Pension and 401(k)