AI Systems Engineer: Secure Execution & Trust Fabric

EY

City of Albany (NY)

Hybrid

USD 107,000 - 177,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

EY seeks AI Systems Engineers to own the security fabric of EY's AI-native platform across cloud, on-prem, edge, and air-gapped environments. You will enforce identity, secrets, and attestation to prove workloads are trusted and auditable.

You will collaborate with Enterprise Security, Cloud Platform, and SRE to ensure compliance and audit readiness in regulated client contexts, building scalable, provable security controls.

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Security, or related field or equivalent experience.
  • 8+ years in security engineering, identity/PKI, or trust infrastructure with production ownership.
  • Hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets (OpenBao/Vault).
  • Strong PKI, X.509 lifecycle (cert-manager), key management, and transit encryption knowledge.
  • Experience with confidential compute, hardware attestation (TDX, SEV-SNP, SGX, NVIDIA CC) and secure boot (Intel TXT).
  • Experience delivering identity and secrets across multi-tenant, multi-environment platforms.
  • Proven track record operating under compliance with audit-grade evidence requirements.
  • Ability to define clear ownership boundaries and contracts with platform/data/runtime teams.

Responsibilities

  • Own workload identity and secrets management across environments.
  • Build confidential compute environments to isolate and attest workloads.
  • Establish a platform-wide identity model across telemetry and policy enforcement.
  • Own the cryptographic lifecycle including issuance, rotation, and revocation.
  • Enforce attestation policy for nodes, enclaves, and workloads with audit capture.
  • Partner with Enterprise Security / Cloud Platform / SRE for audit readiness.

Skills

workload identity
secrets management
PKI
cryptographic lifecycle
confidential compute
trusted execution environments
remote attestation
security-first mindset
infrastructure security

Education

Bachelor’s or Master’s degree in Computer Science, Security, or related technical field
equivalent experience

Tools

SPIRE
SPIFFE
Keycloak
Entra ID
OpenBao / Vault
cert-manager
TDX / SEV-SNP / SGX
Intel TXT
DOCA / Confidential Compute

Job description

EY seeks AI Systems Engineers to own the security fabric of EY's AI-native platform across cloud, on-prem, edge, and air-gapped environments. You will enforce identity, secrets, and attestation to prove workloads are trusted and auditable.

You will collaborate with Enterprise Security, Cloud Platform, and SRE to ensure compliance and audit readiness in regulated client contexts, building scalable, provable security controls.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Systems Engineer: Secure Execution & Trust Fabric
AI Systems Engineer: Secure Execution & Trust Fabric

EY • St. Louis (MO)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Healthcare and pension benefits
Generous paid time off
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Philadelphia

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
Pension and 401(k)
+1
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Irvine (CA)

Hybrid
USD 128,000 - 201,000
Hybrid work model
Competitive compensation
Paid time off
AI Systems Engineer: Secure Execution & Trust Platform
AI Systems Engineer: Secure Execution & Trust Platform

EY • City of Rochester (NY)

On-site
USD 107,000 - 177,000
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • Jacksonville (FL)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
401(k) / pension and generous PTO
AI Systems Engineer: Secure Execution & Trust
AI Systems Engineer: Secure Execution & Trust

EY • McLean (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Total rewards package (medical/dental,
Flexible vacation policy
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Southfield (MI)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Medical and dental coverage
Pension and 401(k)
+2
AI Systems Engineer: Secure Execution & Identity Trust
AI Systems Engineer: Secure Execution & Identity Trust

EY • Austin (TX)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Flexible vacation policy
Competitive compensation
AI Systems Security & Trust Engineer
AI Systems Security & Trust Engineer

EY • Richmond (VA)

Hybrid
USD 107,000 - 177,000
Hybrid work model
Salary and benefits
Paid time off
+1
AI Systems Engineer – Secure Execution & Trust
AI Systems Engineer – Secure Execution & Trust

EY • Birmingham (AL)

Hybrid
USD 107,000 - 177,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off