Lead AI Cloud Security Engineer

Manulife

Boston (MA)

On-site

USD 127,330 - 236,470

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Career growth
Flexible environment
Global team

Job summary

Manulife is seeking a Lead AI Cloud Security Engineer in Boston to drive hands-on security leadership across cloud and AI platforms. You will build and automate security controls, embed security into CI/CD and MLOps, and enforce governance for enterprise AI initiatives.

You will implement AI SPM, secure AI workloads, monitor model usage, and integrate telemetry with SIEM/SOAR for rapid responses. The role emphasizes secure-by-default architectures, policy-as-code and compliance with NIST/ISO/CIS

Qualifications

  • 8–10+ years IT industry experience.
  • 5+ years in cloud and security engineering, with hands-on Azure or similar cloud experience.
  • Experience with PRISMA AIRS, MS AI Defender, AI Foundry, or Zenity.
  • Experience in AI Security and AI SPM (Security Posture Management).
  • Experience with CSPM, CWP, and IaC and secure cloud architectures.
  • Strong DevSecOps: CI/CD security, SAST/DAST, IaC scanning, automation (Python/PowerShell).
  • Experience developing and enforcing policy-as-code aligned with NIST/ISO/CIS.
  • Knowledge of SIEM/SOAR, security monitoring, and incident response for cloud and AI environments.
  • Experience with security testing, threat modeling, and risk assessments.
  • Strong collaboration and communication across cloud, AI, and security teams.

Responsibilities

  • Implement and operate AI SPM solutions across AI and cloud environments.
  • Secure AI workloads, including model pipelines, data, and inference APIs.
  • Embed security into CI/CD and MLOps pipelines with automated controls.
  • Develop and maintain policy-as-code frameworks (e.g., Azure Policy).
  • Engineer monitoring and response with SIEM/SOAR for centralized visibility.
  • Perform security testing and validation across cloud, applications, APIs, and AI layers.
  • Automate security operations with scripting (Python/PowerShell).
  • Collaborate with AI teams and security stakeholders for secure-by-design architectures.
  • Triage findings from security tools and drive remediation across cloud and AI environments.

Skills

Cloud Security
AI posture management
AI Runtime Security
AI Model Security
AI Agent Security
Cloud Configuration Management
Risk Management
Security Monitoring
Security Frameworks
Encryption Techniques
Network Security
Regulatory Compliance

Education

Bachelor's degree or higher

Job description

A Lead AI Cloud Security Engineer is an individual contributor Director, who is a hands‑on Engineering leader, responsible for building, automating, and enforcing security controls across cloud infrastructure and AI platforms. This role focuses on engineering secure‑by‑default systems, integrating security into development workflows, and protecting enterprise AI initiatives.

Work Location and Arrangement

Work location: Toronto - Canada or Boston - USA

Work arrangement: Hybrid - 3 days in office, 2 days from Home

Remote working option: not available.

Position Responsibilities
  • Implement and operate AI Security Posture Management (AI SPM) solutions, including Cloud security posture management to continuously assess, detect, and remediate risks across AI and cloud environments

  • Secure AI and Generative AI workloads, including model pipelines, training data, inference APIs, and LLM integrations against threats such as prompt injection, data leakage, model abuse, and adversarial attacks

  • Design and implement AI SPM controls to provide visibility into AI assets, monitor model usage and access patterns, enforce security guardrails, and manage AI risks across the full lifecycle

  • Embed security into CI/CD and MLOps pipelines (DevSecOps) using automated controls such as SAST/DAST, IaC scanning, secrets detection, and compliance enforcement gates

  • Develop and maintain security policies and policy‑as‑code frameworks (e.g., Azure Policy) to enforce governance, regulatory compliance, and responsible AI usage

  • Engineer monitoring, detection, and response capabilities for cloud and AI systems, integrating telemetry with SIEM/SOAR platforms for centralized visibility and automated response

  • Perform security testing and validation across cloud, application, API, and AI layers, including AI‑specific scenarios such as prompt injection and model misuse prior to production deployment

  • Automate security operations through scripting and tooling (e.g., Python, PowerShell) to improve efficiency, scalability, and consistency of controls

  • Conduct risk assessments, threat modeling, and security reviews for cloud infrastructure and AI systems to identify vulnerabilities and implement mitigation strategies

  • Collaborate with AI teams, and security stakeholders to drive secure‑by‑design architectures and enable scalable, governed AI adoption

  • Additional Engineering responsibilities:
  • Triage and analyze findings from security tools including AI SPM platforms, IaC scanners, CSPM, and vulnerability management tools, ensuring timely prioritization and remediation across cloud and AI environments

  • Research and stay current on emerging security standards, AI security trends, threat vectors, and vulnerabilities, including risks specific to Generative AI, LLMs, and ML systems

  • Hands‑on Experience With AI security tools, and Understanding of LLM and AI‑specific threats.

  • Develop, document, and disseminate security guidelines, remediation playbooks, and hardened baselines for both cloud and AI systems

  • Collaborate with Penetration Testing teams to perform security assessments across cloud platforms and AI systems, including adversarial testing, prompt injection simulations, and AI misuse scenarios

  • Partner with Security Operations (SOC) and Incident Response teams to ensure effectiveness of preventive, detective, and responsive controls for cloud and AI environments

  • Implement and tune monitoring and detection controls for cloud infrastructure and AI systems, and support response to AI‑related threats such as model abuse or data leakage

  • Build and maintain automation to streamline security tasks, testing, validation workflows, and remediation processes across cloud and AI pipelines

  • Configure, integrate, and maintain security tools and technologies, for AI SPM solutions, Model and Agent security solution, ensuring comprehensive coverage across cloud and AI workloads

  • Continuously evaluate and recommend proactive security improvements based on evolving cloud and AI threat landscapes, including enhancements to AI governance and security posture

  • Provide guidance to engineering and AI teams on secure AI development practices, responsible AI usage, and compliance with AI governance frameworks

Required Qualifications
  • Minimum 8-10+ years IT industry experience
  • 5+ years of experience in cloud and security engineering, with strong hands‑on expertise in Azure or similar cloud platforms
  • Must have any of the following: PRISMA AIRS , MS AI defender , AI foundry , Zenity
  • Required experience in AI Security and AI SPM (Security Posture Management), including securing AI and Generative AI systems and managing risks such as prompt injection, data leakage, and model abuse
  • Proven experience with CSPM, CWP, and IaC and implementing secure cloud architectures
  • Strong understanding of DevSecOps practices, including CI/CD security, SAST/DAST, IaC scanning, and automation (Python/PowerShell)
  • Experience developing and enforcing security policies and policy‑as‑code frameworks aligned with standards like NIST, ISO, and CIS
  • Knowledge of security monitoring, SIEM/SOAR, and incident response for cloud and AI environments
  • Experience with security testing, threat modeling, and risk assessments
  • Strong collaboration and communication skills, with the ability to work across cloud, AI, and security teams
  • Skills:
  • Cloud Security
  • AI posture management
  • AI Runtime Security
  • AI Model Security
  • AI Agent Security
  • Cloud Configuration Management
  • Risk Management
  • Security Monitoring
  • Security Frameworks
  • Encryption Techniques
  • Network Security
  • Regulatory Compliance
Preferred Qualifications
  • Bachelor's degree or higher education is desired but not a must
Benefits
  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well‑being and inclusion are more than just words.
  • As part of our global team, we’ll support you in shaping the future you want to see.
Salary Range

Boston - USA: Base Salary range is $127,330 USD - $181,900 USD (mid-point) - 236,470 USD.

Toronto, Ontario: $113,260.00 CAD - $210,340.00 CAD.

Equal Opportunity Employer

Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite manulife.com. Manulife es un empleador que ofrece igualdad de oportunidades. En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanía, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, características genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente. Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con los solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las políticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envíenos un mensaje a hr@manulife.com .

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior AI Cloud Security Engineer
Senior AI Cloud Security Engineer

United States Digital Space LLC • United States

Hybrid
USD 107,000 - 200,000
Health benefits
Dental coverage
Mental health support
+4
Lead AI Cloud Security Engineer
Lead AI Cloud Security Engineer

United States Digital Space LLC • United States

Hybrid
USD 127,000 - 182,000
AVP, AI
AVP, AI

John Hancock • Boston (MA)

Hybrid
USD 94,000 - 174,000
Health insurance
Dental insurance
Mental health benefits
+5
AI Engineer - Hybrid
AI Engineer - Hybrid

Manulife Financial • Boston (MA)

Hybrid
USD 90,000 - 167,000
Senior Cloud Engineer
Senior Cloud Engineer

Manulife • Boston (MA)

On-site
USD 107,000 - 200,000
Senior AI Engineer
Senior AI Engineer

Manulife Financial • Boston (MA)

Hybrid
USD 107,000 - 200,000
Health and dental insurance
401(k) savings plans
Generous paid time off program
AI Engineer - Hybrid
AI Engineer - Hybrid

Manulife • Boston (MA)

Hybrid
USD 90,000 - 167,000
Health, dental, vision
Retirement plans
Paid time off
Senior Cloud Engineer
Senior Cloud Engineer

John Hancock • Boston (MA)

Hybrid
USD 107,000 - 200,000
AI Engineer - Hybrid
AI Engineer - Hybrid

Manulife Insurance Malaysia • Boston (MA)

Hybrid
USD 90,000 - 167,000
Health insurance
Dental insurance
Vision insurance
+6
Solution Architect - Hybrid
Solution Architect - Hybrid

John Hancock • Boston (MA)

Hybrid
USD 90,000 - 167,000