AI Systems Security Engineer (Agent Systems), SEAR

Apple Inc.

Cupertino (CA)

On-site

USD 185,000 - 325,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Stock options
Relocation support
Education reimbursement
Comprehensive benefits

Job summary

Apple is seeking an AI Systems Security Engineer to design and deploy security foundations for agentic AI systems. You will own critical security architecture, implement trust boundaries, and build tooling to enforce policy across tools, memory, and data.

The role requires strong expertise in security architecture, risk modeling, and platform-level protections, with collaboration across ML, OS, privacy, and product teams. Base pay includes comprehensive benefits and relocation where applicable.

Qualifications

  • Bachelor’s degree in computer science, computer engineering, security, or related field or equivalent practical experience.
  • Experience designing and shipping security-critical systems or large-scale platforms.
  • Strong understanding of security architecture, trust boundaries, least privilege and defense-in-depth.
  • Ability to translate threat models into production implementations.
  • Experience influencing architecture across organizational boundaries.

Responsibilities

  • Design security architectures for AI agents interacting with tools, APIs, memory, and user data.
  • Build runtime controls for authorization, isolation, and secure tool execution.
  • Define trust boundaries between models, tools, content, and cloud services.
  • Translate security research into production-ready defenses and frameworks.
  • Lead threat modeling and architecture reviews for new agent capabilities.
  • Develop isolation, provenance, and data-flow controls across the stack.
  • Collaborate with ML security researchers, OS engineers, and product teams.

Skills

Security architecture
Threat modeling
Policy engines
Sandboxing
Cross-functional collaboration
Systems programming

Education

Bachelor's degree in CS or related

Job description

AI Systems Security Engineer (Agent Systems), SEAR

Cupertino, California, United States Software and Services

Apple’s Security Engineering & Architecture organization protects the systems and experiences used by people around the world. The ML Security Engineering team brings together machine learning, systems security, and product engineering to help ensure that Apple Intelligence and other AI-powered experiences are secure, private, and trustworthy.We are seeking an AI Systems Security Engineer to design, build, and deploy the security foundations for agentic and tool-using AI systems. You will develop the architectural controls that govern how agents access tools, services, memory, user data, and other privileged capabilities—and ensure those controls remain effective when models encounter malicious, untrusted, or adversarial inputs.You will work closely with ML security researchers, AI/ML platform teams, operating-system engineers, product security, privacy, and product teams. Research will identify emerging attacks and promising defenses; you will translate those findings into robust platform capabilities, reusable frameworks, launch requirements, and production protections. Success in this role is measured by security properties that can be enforced, tested, observed, and maintained across shipping systems.

Description

Agentic AI systems introduce a new security boundary: probabilistic models interpret untrusted content while making decisions that can affect tools, data, and user-visible state. Securing these systems requires more than model-level safeguards. It requires carefully designed trust boundaries, least-privilege interfaces, execution controls, isolation mechanisms, and defense-in-depth across the complete AI system.In this role, you will own critical elements of that security architecture. You will build systems that mediate agent actions, constrain authority, preserve data and instruction provenance, isolate untrusted execution, and prevent compromised model behavior from becoming unauthorized system behavior.You will also develop the infrastructure needed to validate these protections continuously: adversarial integration tests, security invariants, policy conformance checks, telemetry, deployment gates, and tools for investigating failures. The solutions must meet demanding product requirements for latency, reliability, privacy, debuggability, and compatibility across Apple platforms and services.

Responsibilities
  • Design security architectures for AI agents that interact with tools, APIs, applications, memory, external content, and sensitive user data.
  • Build runtime controls for capability authorization, action mediation, least-privilege access, context isolation, data-flow enforcement, and secure tool execution.
  • Establish clear trust boundaries between models, orchestration components, tools, third-party content, local applications, cloud services, and user data.
  • Translate ML security research—including findings related to indirect prompt injection, goal hijacking, tool misuse, privilege escalation, persistence, confused-deputy behavior, and cross-context data leakage—into production-ready defenses.
  • Develop reusable security frameworks and platform primitives that product teams can adopt without implementing bespoke controls for each AI experience.
  • Define and enforce security invariants that remain valid even when model outputs are incorrect, adversarially influenced, or otherwise untrustworthy.
  • Build adversarial testing and validation infrastructure for multi-step agent workflows, including continuous evaluation, regression testing, policy verification, and security-focused launch gates.
  • Harden the agent ecosystem, including tool registration, capability discovery, memory systems, workflow state, model context construction, external integrations, and software supply-chain dependencies.
  • Develop privacy-preserving telemetry and diagnostic mechanisms for detecting policy violations, investigating security failures, and measuring the effectiveness of deployed defenses.
  • Lead threat modeling and architecture reviews for new agent capabilities, translating identified risks into concrete engineering requirements and release criteria.
  • Partner with ML security researchers to productionize promising mitigations and provide system-level feedback that informs future research.
  • Work across product, platform, privacy, and security teams to drive security improvements from initial architecture through deployment and long-term maintenance.
  • Provide technical leadership, establish engineering standards, mentor engineers, and influence the security architecture of agent systems across Apple.
Minimum Qualifications
  • Bachelor’s degree in computer science, computer engineering, security, or a related field, or equivalent practical experience.
  • Significant experience designing and shipping security-critical systems, platform security mechanisms, or large-scale systems software.
  • Strong understanding of security architecture, trust boundaries, least privilege, authorization, isolation, secure execution, and defense-in-depth.
  • Demonstrated ability to convert threat models and security requirements into reliable production implementations.
  • Strong software engineering skills in one or more systems or platform languages, with experience building maintainable, testable, and performance-sensitive software.
  • Experience working across organizational boundaries to influence architecture and deliver security improvements in complex production systems.
Preferred Qualifications
  • Experience securing LLM-based, agentic, tool-using, or other probabilistic AI systems.
  • Experience with capability systems, sandboxing, policy engines, information-flow controls, provenance systems, secure IPC/RPC, or workload isolation.
  • Familiarity with attacks against agent systems, including prompt injection, unauthorized tool use, privilege escalation, data exfiltration, memory poisoning, and multi-stage attacks.
  • Experience building security evaluation infrastructure, fuzzing systems, adversarial test frameworks, runtime monitors, or automated release gates.
  • Experience securing operating systems, distributed systems, application platforms, cloud services, or privacy-sensitive consumer products.
  • Understanding of ML inference systems and the interaction between models, context construction, orchestration layers, retrieval systems, tools, and product code.
  • Ability to evaluate security designs against practical constraints such as latency, availability, privacy, compatibility, and diagnosability.
  • Track record of delivering foundational security mechanisms adopted by multiple products or engineering organizations.
  • Excellent written and verbal communication skills, including the ability to explain subtle security properties to research, engineering, and product audiences.

At Apple, base pay is one part of our total compensation package and is determined within a range. This provides the opportunity to progress as you grow and develop within a role. The base pay range for this role is between $184,700 and $324,800, and your base pay will depend on your skills, qualifications, experience, and location.

Apple employees also have the opportunity to become an Apple shareholder through participation in Apple’s discretionary employee stock programs. Apple employees are eligible for discretionary restricted stock unit awards, and can purchase Apple stock at a discount if voluntarily participating in Apple’s Employee Stock Purchase Plan. You’ll also receive benefits including: Comprehensive medical and dental coverage, retirement benefits, a range of discounted products and free services, and for formal education related to advancing your career at Apple, reimbursement for certain educational expenses — including tuition. Additionally, this role might be eligible for discretionary bonuses or commission payments as well as relocation. Learn more about Apple Benefits

Note: Apple benefit, compensation and employee stock programs are subject to eligibility requirements and other terms of the applicable plan or program.

Apple is an equal opportunity employer that is committed to inclusion and diversity. We seek to promote equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant

At Apple, we believe accessibility is a fundamental human right. You’ll find that idea reflected in everything here — in our culture, our benefits and our digital tools. By welcoming as many perspectives as possible, we help you build a career where you feel like you belong.

Learn about accessibility in Apple’s workplace

Learn about reasonable accommodations for job applicants

Apple accepts applications to this posting on an ongoing basis.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Research Scientist, Applied Machine Learning Security (Agent Systems), SEAR
Research Scientist, Applied Machine Learning Security (Agent Systems), SEAR

Apple Inc. • Cupertino (CA)

On-site
USD 184,700 - 324,800
Stock programs
Medical & dental
Tuition reimbursement
+1
AI Security Architect- ARC, Apple Information Security
AI Security Architect- ARC, Apple Information Security

Apple Inc. • Cupertino (CA)

On-site
USD 172,000 - 259,000
Comprehensive medical and dental coverage
Retirement benefits
Employee stock purchase plan
AI Systems Security Engineer (Agent Systems), SEAR
AI Systems Security Engineer (Agent Systems), SEAR

Socket.dev • Cupertino (CA)

On-site
USD 210,000 - 320,000
Software Engineer, AI Infrastructure
Software Engineer, AI Infrastructure

Apple Inc. • Cupertino (CA)

On-site
USD 184,000 - 325,000
Medical and dental coverage
Retirement benefits
Employee stock purchase plan
+1
Sr Automation & Intelligence Tools Engineer, SEAR
Sr Automation & Intelligence Tools Engineer, SEAR

Apple Inc. • Cupertino (CA), Northern (KY)

Hybrid
USD 216,000 - 325,000
Comprehensive benefits
Stock options
Relocation assistance
AI & Data Security Engineer
AI & Data Security Engineer

Apple Inc. • Cupertino (CA)

On-site
USD 181,000 - 273,000
Comprehensive medical and dental coverage
Retirement benefits
Employee stock programs
+1
ML Agent Engineer
ML Agent Engineer

Apple Inc. • San Francisco (CA)

On-site
USD 150,000 - 278,000
Machine Learning Engineer, Information Security
Machine Learning Engineer, Information Security

Apple Inc. • Seattle (WA)

On-site
USD 139,000 - 259,000
Comprehensive medical and dental coverage
Retirement benefits
Discounted products and services
+2
AI Software and Security Engineer, SEAR
AI Software and Security Engineer, SEAR

Apple Inc. • Cupertino (CA)

On-site
USD 184,700 - 324,800
Medical and dental coverage
Employee stock programs
Relocation assistance
+2
AIML - Machine Learning Engineer, Red Teaming - Responsible AI and Safety
AIML - Machine Learning Engineer, Red Teaming - Responsible AI and Safety

Apple Inc. • San Francisco (CA)

On-site
USD 185,000 - 325,000
Medical & Dental
Retirement benefits
Discounted products
+2