Remote AI Security Engineer – Agentic Platform Defense

EY

Indianapolis (IN)

On-site

USD 126,000 - 230,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Total rewards package
Healthcare and retirement plans
Flexible vacation policy
Tuition reimbursement

Job summary

EY is seeking an AI Security Engineer to own the security posture of EY’s Agentic AI platform end to end. You will define threat models, build hardened controls, and defend against prompt injection, tool abuse, and advanced attacks across the stack.

The role spans from silicon-level attestation to policy enforcement, with red-teaming, supply-chain integrity, and audit-grade evidence. Strong cloud-native and AI security expertise are expected.

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Security, or a related technical field
  • 10+ years in security engineering, security engineering, or offensive security, including hands-on production ownership
  • Demonstrable depth in cloud-native and Kubernetes security: admission control, network policy, workload isolation, and runtime security in production
  • Practical experience securing AI or ML systems in production, including familiarity with LLM and agentic attack surfaces such as prompt injection, tool abuse, excessive agency, and data supply-chain risk

Responsibilities

  • Own the platform threat model: covering agent autonomy, tool invocation, delegated authority, model and data supply chain, multi-tenancy, across all deployment targets
  • Define the security engineering and control set for every platform layer: infrastructure, Kubernetes, identity, secrets, secure execution, telemetry
  • Set the secure-by-default contract so platform capabilities arrive hardened with templates, sandbox profiles, and network policies
  • Own defense against agentic threat classes including prompt injection, jailbreak, excessive agency, and authority escalation
  • Define agent authority model: delegated and on-behalf-of authority, scope and delegation-depth limits, consent boundaries
  • Own the sandboxing security standard for agent-generated code execution: isolation, scope, and tests
  • Secure the model and knowledge supply chain: provenance, SBOM, intake governance
  • Secure agent-to-agent and tool protocols: discovery trust, tool registration, schema validation, authorization
  • Lead AI red teaming and adversarial testing with guardrails, sandboxes, authority boundaries
  • Own supply-chain integrity end-to-end: Sigstore/Cosign, SBOM, provenance, CVE management
  • Own admission and runtime policy: policy-as-code across Kyverno and OPA
  • Define Kubernetes and infrastructure hardening baselines: CIS-aligned config, network deny, secrets handling
  • Own tenant isolation assurance and cross-tenant leakage testing
  • Serve as security authority in client engagements: security reviews, regulator responses, assurance artefacts
  • Drive security detection and response: telemetry, alerts, playbooks, post-incident reviews

Skills

Cloud-native security
Kubernetes security
AI threat models
Policy-as-code
SBOM/provenance
Threat modelling
Red teaming
Supply-chain security
Agentic security

Education

Bachelor’s or Master’s degree in Computer Science, Security, or related field

Tools

SPIFFE/SPIRE
Vault
PKI tooling

Job description

EY is seeking an AI Security Engineer to own the security posture of EY’s Agentic AI platform end to end. You will define threat models, build hardened controls, and defend against prompt injection, tool abuse, and advanced attacks across the stack.

The role spans from silicon-level attestation to policy enforcement, with red-teaming, supply-chain integrity, and audit-grade evidence. Strong cloud-native and AI security expertise are expected.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AI Security Engineer: Agentic Platform Defense
Senior AI Security Engineer: Agentic Platform Defense

EY • Jacksonville (FL)

On-site
USD 170,000 - 250,000
Medical and dental coverage
Pension and 401(k)
Paid time off
Senior AI Security Engineer – Agentic Platform Defense
Senior AI Security Engineer – Agentic Platform Defense

EY • Oklahoma City (OK)

Remote
USD 126,000 - 230,000
Senior AI Security Engineer - Agentic Platform Defenses
Senior AI Security Engineer - Agentic Platform Defenses

EY • Milwaukee (WI)

On-site
USD 126,000 - 230,000
Medical and dental coverage
401(k)
Paid time off
+1
AI Security Architect – Agentic Platform Defense
AI Security Architect – Agentic Platform Defense

EY • Palo Alto (CA)

On-site
USD 157,000 - 262,000
Lead AI Security Engineer – Agentic Platform
Lead AI Security Engineer – Agentic Platform

Ernst & Young Oman • Carson City (NV)

Remote
USD 150,000 - 210,000
Senior AI Security Engineer - Platform Defense & Threats
Senior AI Security Engineer - Platform Defense & Threats

EY • Tampa (FL)

On-site
USD 125,000 - 231,000
Senior AI Security Engineer — Platform & Agentic Defense
Senior AI Security Engineer — Platform & Agentic Defense

EY • Kansas City (MO)

Hybrid
USD 126,000 - 262,000
Medical and dental coverage
Pension and 401(k)
Flexible vacation policy
+1
Senior AI Security Architect for Agentic Platforms
Senior AI Security Architect for Agentic Platforms

EY • Houston (TX)

On-site
USD 126,000 - 230,000
Medical and dental coverage
Pension and 401(k) plans
Paid time off
Senior AI Security Architect for Agentic Platform
Senior AI Security Architect for Agentic Platform

EY • Hoboken (NJ)

On-site
USD 126,000 - 251,000
Medical & dental coverage
401(k) plan with match
Flexible vacation policy
Senior AI Security Engineer for Agentic Platform
Senior AI Security Engineer for Agentic Platform

EY • Tallahassee (FL)

On-site
USD 126,000 - 230,000
Medical and dental coverage
401(k) plan
Flexible vacation policy
+2