We are partnering with a large financial services organization that is continuing to invest in its AI engineering and security capabilities.
They are looking for an experienced security engineer to help shape how Generative AI applications and supporting platforms are securely built and deployed across the business.
This is a hands on engineering role working across AI, security and platform teams. You will focus on developing practical security solutions for modern AI applications, particularly where AI systems interact with enterprise data, internal services, APIs and other applications.
The role offers the opportunity to influence security standards for an emerging area of technology while remaining closely involved in the engineering and implementation of those controls.
What You'll Be Doing
- 5 years of experience across security engineering, cybersecurity, application security, cloud security or security architecture.
- Design and implement security patterns for Generative AI applications and supporting technology platforms.
- Define how AI applications and autonomous services securely authenticate and interact with enterprise systems.
- Develop authorization approaches that ensure AI services only have access to the tools, applications and information required to perform their intended functions.
- Design security controls around APIs, service-to-service communication and integrations with internal systems.
- Apply strong identity, access management and least-privilege principles across AI environments.
- Work with engineering teams to secure AI applications that interact with internal and sensitive data.
- Assess potential vulnerabilities introduced by LLM-powered applications and develop appropriate technical controls.
- Address risks associated with malicious inputs, unintended data disclosure, excessive permissions and unauthorized actions.
- Secure AI applications that use enterprise search, retrieval and knowledge-management capabilities.
- Ensure access permissions remain appropriately enforced as information moves between source systems, retrieval services and AI applications.
- Perform threat modelling and security reviews for new AI capabilities and architectures.
- Develop technical safeguards that allow engineering teams to deploy AI solutions safely into production.
- Improve security visibility across AI services through appropriate logging, monitoring and auditing.
- Evaluate emerging AI security risks and determine where additional controls or engineering standards may be required.
- Create reusable security patterns and guidance that can be adopted by engineering teams across the organization.
- Partner with AI engineers, software engineers, platform teams, architects and cybersecurity specialists throughout the development lifecycle.
What We're Looking For
- Significant experience within security engineering, application security, cloud security or security architecture.
- Strong knowledge of identity, authentication, authorization and access management concepts.
- Experience securing APIs, distributed applications and service-to-service communication.
- Understanding of modern authentication and authorization technologies and enterprise identity platforms.
- Experience applying least privilege and zero trust principles within large technology environments.
- Strong understanding of application and platform security within cloud or distributed architectures.
- Experience protecting applications and platforms that process sensitive or restricted information.
- Knowledge of encryption, data protection and access control practices.
- Experience conducting threat modelling and identifying potential attack paths within complex applications.
- Understanding of security monitoring, logging and audit requirements within production systems.
- Ability to translate security requirements into practical engineering solutions.
- Comfortable working across engineering, infrastructure, architecture and cybersecurity teams.