Lead AI Cloud Security Engineer

United States Digital Space LLC

United States

Hybrid

USD 127,000 - 181,900

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

United States Digital Space LLC seeks a Lead AI Cloud Security Engineer, an individual contributor Director who blends hands‑on engineering with security leadership. You will build, automate and enforce security controls across cloud and AI platforms, embedding security into development workflows to protect enterprise AI initiatives.

The role requires deep experience in AI security, CSPM, IaC, and DevSecOps, with a hybrid work model in Boston, USA, and Toronto, Canada.

Qualifications

  • Minimum 8–10+ years IT industry experience.
  • 5+ years cloud and security engineering with hands‑on Azure or similar cloud platforms.
  • Experience in AI Security and AI SPM, securing AI/Generative AI systems and risks like prompt injection.
  • Proven CSPM, IaC and secure cloud architectures experience.
  • Strong DevSecOps understanding with CI/CD security, SAST/DAST, IaC scanning and automation.
  • Experience with policy‑as‑code and standards like NIST, ISO, CIS.
  • Knowledge of SIEM/SOAR, incident response for cloud and AI environments.

Responsibilities

  • Implement and operate AI Security Posture Management across AI and cloud environments.
  • Secure AI workloads including pipelines, data, APIs and LLM integrations.
  • Design AI SPM controls to monitor assets, usage and access patterns.
  • Embed security into CI/CD and MLOps pipelines with automated controls.
  • Develop and maintain security policies and policy‑as‑code frameworks.
  • Engineer monitoring, detection and response for cloud and AI systems with SIEM/SOAR integration.
  • Perform security testing and validation across cloud, app, API and AI layers.
  • Automate security operations with scripting to improve efficiency and scalability.
  • Conduct risk assessments, threat modeling and security reviews for cloud and AI systems.
  • Collaborate with AI teams and security stakeholders for secure‑by‑design architectures.

Skills

Cloud Security
AI Security
AI Posture Mgmt
Model Security
Agent Security
Security Monitoring
CI/CD Security
Regulatory Compliance
Encryption
Network Security

Education

Bachelor’s degree or higher

Tools

Azure

Job description

A Lead AI Cloud Security Engineer is an individual contributor Director, who is a hands‑on Engineering leader, responsible for building, automating, and enforcing security controls across cloud infrastructure and AI platforms. This role focuses on engineering secure‑by‑default systems, integrating security into development workflows, and protecting enterprise AI initiatives.

Work location: Toronto - Canada or Boston - USA

Work arrangement: Hybrid - 3 days in office, 2 days from Home; Remote working option is not available.

Position Responsibilities
  • Implement and operate AI Security Posture Management (AI SPM) solutions, including Cloud security posture management to continuously assess, detect, and remediate risks across AI and cloud environments
  • Secure AI and Generative AI workloads, including model pipelines, training data, inference APIs, and LLM integrations against threats such as prompt injection, data leakage, model abuse, and adversarial attacks
  • Design and implement AI SPM controls to provide visibility into AI assets, monitor model usage and access patterns, enforce security guardrails, and manage AI risks across the full lifecycle
  • Embed security into CI/CD and MLOps pipelines (DevSecOps) using automated controls such as SAST/DAST, IaC scanning, secrets detection, and compliance enforcement gates
  • Develop and maintain security policies and policy‑as‑code frameworks (e.g., Azure Policy) to enforce governance, regulatory compliance, and responsible AI usage
  • Engineer monitoring, detection, and response capabilities for cloud and AI systems, integrating telemetry with SIEM/SOAR platforms for centralized visibility and automated response
  • Perform security testing and validation across cloud, application, API, and AI layers, including AI‑specific scenarios such as prompt injection and model misuse prior to production deployment
  • Automate security operations through scripting and tooling (e.g., Python, PowerShell) to improve efficiency, scalability, and consistency of controls
  • Conduct risk assessments, threat modeling, and security reviews for cloud infrastructure and AI systems to identify vulnerabilities and implement mitigation strategies
  • Collaborate with AI teams, and security stakeholders to drive secure‑by‑design architectures and enable scalable, governed AI adoption
Additional Engineering Responsibilities
  • Triage and analyze findings from security tools including AI SPM platforms, IaC scanners, CSPM, and vulnerability management tools, ensuring timely prioritization and remediation across cloud and AI environments
  • Research and stay current on emerging security standards, AI security trends, threat vectors, and vulnerabilities, including risks specific to Generative AI, LLMs, and ML systems
  • Hands‑on Experience With AI security tools, and Understanding of LLM and AI‑specific threats.
  • Develop, document, and disseminate security guidelines, remediation playbooks, and hardened baselines for both cloud and AI systems
  • Collaborate with Penetration Testing teams to perform security assessments across cloud platforms and AI systems, including adversarial testing, prompt injection simulations, and AI misuse scenarios
  • Partner with Security Operations (SOC) and Incident Response teams to ensure effectiveness of preventive, detective, and responsive controls for cloud and AI environments
  • Implement and tune monitoring and detection controls for cloud infrastructure and AI systems, and support response to AI‑related threats such as model abuse or data leakage
  • Build and maintain automation to streamline security tasks, testing, validation workflows, and remediation processes across cloud and AI pipelines
  • Configure, integrate, and maintain security tools and technologies, for AI SPM solutions, Model and Agent security solution, ensuring comprehensive coverage across cloud and AI workloads
  • Continuously evaluate and recommend proactive security improvements based on evolving cloud and AI threat landscapes, including enhancements to AI governance and security posture
  • Provide guidance to engineering and AI teams on secure AI development practices, responsible AI usage, and compliance with AI governance frameworks
Required Qualifications
  • Minimum 8-10+ years IT industry experience
  • 5+ years of experience in cloud and security engineering, with strong hands‑on expertise in Azure or similar cloud platforms
  • Must have any of the following: PRISMA AIRS, MS AI defender, AI foundry, Zenity
  • Required experience in AI Security and AI SPM (Security Posture Management), including securing AI and Generative AI systems and managing risks such as prompt injection, data leakage, and model abuse
  • Proven experience with CSPM, CWP, and IaC and implementing secure cloud architectures
  • Strong understanding of DevSecOps practices, including CI/CD security, SAST/DAST, IaC scanning, and automation (Python/PowerShell)
  • Experience developing and enforcing security policies and policy‑as‑code frameworks aligned with standards like NIST, ISO, and CIS
  • Knowledge of security monitoring, SIEM/SOAR, and incident response for cloud and AI environments
  • Experience with security testing, threat modeling, and risk assessments
  • Strong collaboration and communication skills, with the ability to work across cloud, AI, and security teams
  • Skills:
  • Cloud Security
  • AI posture management
  • AI Runtime Security
  • AI Model Security
  • AI Agent Security
  • Cloud Configuration Management
  • Risk Management
  • Security Monitoring
  • Security Frameworks
  • Encryption Techniques
  • Network Security
  • Regulatory Compliance
Preferred Qualifications
  • Bachelor's degree or higher education is desired but not a must
When you join our team
  • We’ll empower you to learn and grow the career you want.
  • We’ll recognize and support you in a flexible environment where well‑being and inclusion are more than just words.
  • As part of our global team, we’ll support you in shaping the future you want to see.

For hiring in Boston - USA, Base Salary range is $127,330 USD - $181,900 USD (mid-point) - 236,470 USD

The role being advertised is an existing vacancy.

About the company and John Hancock

the company Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit https://www.the company.com/en/about/our-story.html.

Equal Opportunity Employer

At the company/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy‑related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.

It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and the company/John Hancock policies. To request a reasonable accommodation in the application process, contact hr@unitedstatesdigital.space.

Referenced Salary Location

Toronto, Ontario

Working Arrangement

Hybrid

Salary Range

$113,260.00 CAD - $210,340.00 CAD employees also have the opportunity to participate in incentive programs and earn incentive compensation tied to business and individual performance. The actual salary will vary depending on local market conditions, geography and relevant job‑related factors such as knowledge, skills, qualifications, experience, and education/training. If you are applying for this role outside of the primary location, please contact hr@unitedstatesdigital.space for the salary range for your location.

the company offers eligible employees a wide array of customizable benefits, including health, dental, mental health, vision, short‑ and long‑term disability, life and AD&D insurance coverage, adoption/surrogacy and wellness benefits, and employee/family assistance plans. We also offer eligible employees various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources. Our generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence. If you are applying for this role in the U.S., please contact hr@unitedstatesdigital.space for more information about U.S.-specific paid time off provisions.

We use data and analytics technologies, such as artificial intelligence (AI), and automated processing tools, to analyze and process the information you provide to us or third parties in the application process. For more information, please refer to our personal information collection statement.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior AI Cloud Security Engineer
Senior AI Cloud Security Engineer

United States Digital Space LLC • United States

Hybrid
USD 107,000 - 200,000
Health benefits
Dental coverage
Mental health support
+4
Solution Architect - Hybrid
Solution Architect - Hybrid

John Hancock • Boston (MA)

Hybrid
USD 90,000 - 167,000
AI Engineer - Hybrid
AI Engineer - Hybrid

Manulife Financial • Boston (MA)

Hybrid
USD 90,000 - 167,000
Lead AI Cloud Security Engineer
Lead AI Cloud Security Engineer

Manulife • Boston (MA)

On-site
USD 127,000 - 237,000
Career growth
Flexible environment
Global team
Senior AI Engineer
Senior AI Engineer

Manulife Financial • Boston (MA)

Hybrid
USD 107,000 - 200,000
Health and dental insurance
401(k) savings plans
Generous paid time off program
AI Engineer - Hybrid
AI Engineer - Hybrid

Manulife • Boston (MA)

Hybrid
USD 90,000 - 167,000
Health, dental, vision
Retirement plans
Paid time off
AVP, AI
AVP, AI

John Hancock • Boston (MA)

Hybrid
USD 94,000 - 174,000
Health insurance
Dental insurance
Mental health benefits
+5
Senior Cloud Engineer
Senior Cloud Engineer

John Hancock • Boston (MA)

Hybrid
USD 107,000 - 200,000
Full Stack Data Engineer (Analytics + ETL + Reporting)
Full Stack Data Engineer (Analytics + ETL + Reporting)

United States Digital Space LLC • United States

Hybrid
USD 61,000 - 97,000
Data Engineer
Data Engineer

Manulife Financial • California (MO)

Hybrid
USD 90,000 - 167,000
Health benefits
401(k) plan with company match
Remote work option