Senior AI Security Engineer - Guard AI Gateways & Data

Plaster Group, LLC

Seattle (WA)

On-site

USD 150,000 - 190,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Plaster Group, LLC is seeking an experienced security engineer to safeguard AI workloads and reduce AI risk by strengthening infrastructure hygiene. You will design and operate security controls for foundation models, integrate zero-trust measures, and work with enterprise AI gateways across multiple platforms including Claude, ChatGPT, and Copilot.

The role emphasizes hands-on deployment of AI gateways, guardrails for prompt injection, data leakage, and governance across MCP servers and

Qualifications

  • 7+ years in security engineering, with 2+ years securing AI, ML, or generative AI systems in production.
  • Hands-on experience deploying or operating an AI gateway, LLM proxy, or equivalent centralized AI control plane
  • Demonstrated understanding of LLM and agent attack surface: prompt injection, data leakage through model output, insecure tool use, supply chain risk in models and dependencies
  • Practical familiarity with OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF
  • Strong cloud security background, Azure preferred, including identity, network, and workload controls
  • Python proficiency and comfort working with model APIs, SDKs, and evaluation tooling
  • Experience partnering with engineering and data teams as an advisor rather than a gatekeeper

Responsibilities

  • Design, implement, and operate security controls for foundation model usage across Claude, ChatGPT, and Microsoft Copilot
  • Support deployment and hardening of the enterprise AI gateway, including model allowlists, per-team keys, rate and budget limits, and centralized audit logging
  • Engineer input and output guardrails covering prompt injection, sensitive data egress, credential and secret leakage, and unsafe output
  • Integrate inline DLP and content inspection at the gateway so AI traffic is subject to the same data controls as other egress paths
  • Establish security requirements for RAG architectures, including source grounding, index access control, and prevention of oversharing through model responses
  • Define and enforce governance for MCP servers and agent tooling, including registry, approval, and runtime policy enforcement
  • Implement identity and authorization patterns for agents and other non-human identities: OAuth-based access, token lifecycle management, scoped tool permissions, and least privilege
  • Assess and mitigate agentic risk classes including excessive agency, capability chaining, tool and memory poisoning, and unsafe autonomous action
  • Extend zero trust controls to AI workloads across identity, device, network, application, and data pillars
  • Partner with identity engineering on conditional access, workload identity, and privileged access for AI systems and service principals
  • Reduce AI risk through infrastructure hygiene: configuration baselines, egress control, secrets management, and dependency and supply chain integrity
  • Build monitoring and detection content for AI systems covering prompt behavior, tool invocation patterns, anomalous output, and data movement
  • Conduct AI red team and adversarial testing, including direct and indirect prompt injection, jailbreak, and data extraction scenarios
  • Conduct security reviews of AI applications, third-party AI vendors, and AI features in existing SaaS
  • Map controls to recognized frameworks including the OWASP Top 10 for LLM Applications, MITRE ATLAS, and the NIST AI Risk Management Framework
  • Contribute to AI security standards, acceptable use guidance, architecture review criteria, and enablement material for engineering teams

Skills

Security engineering
AI security
Python
Cloud security
Identity & access management

Tools

AI gateway
LLM proxy
Model APIs
SDKs

Job description

Plaster Group, LLC is seeking an experienced security engineer to safeguard AI workloads and reduce AI risk by strengthening infrastructure hygiene. You will design and operate security controls for foundation models, integrate zero-trust measures, and work with enterprise AI gateways across multiple platforms including Claude, ChatGPT, and Copilot.

The role emphasizes hands-on deployment of AI gateways, guardrails for prompt injection, data leakage, and governance across MCP servers and

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior AI Security Engineer
Senior AI Security Engineer

Plaster Group, LLC • Seattle (WA)

On-site
USD 150,000 - 190,000
Senior AI Security Engineer – Guardrails, IaC & Cloud
Senior AI Security Engineer – Guardrails, IaC & Cloud

Jobtailor • Charlotte (NC)

On-site
USD 110,000 - 160,000
Principal AI Security Architect - Azure & Guardrails
Principal AI Security Architect - Azure & Guardrails

SCAN Health Plan • Long Beach (CA)

On-site
USD 125,000 - 182,000
Bonus program
Wellness program
Generous PTO & holidays
+2
Principal AI Security Architect — Azure Guardrails Lead
Principal AI Security Architect — Azure Guardrails Lead

GRP SCAN Group • City of Long Beach (NY)

On-site
USD 125,000 - 182,000
Wellness Program
PTO (paid time off)
11 holidays per year
+4
Sr. AI Security Engineer
Sr. AI Security Engineer

WideNet Consulting Group • Seattle (WA)

Hybrid
USD 117,000 - 131,000
Health & Medical Benefits
401K
Employee Assistance Program
+1
Senior AI Security Engineer, Agentic Platform Guardrails
Senior AI Security Engineer, Agentic Platform Guardrails

United States Digital Space LLC • Washington

Hybrid
USD 180,000 - 248,000
Equity
Bonus
Health insurance
+4
Senior AI Security Engineer — Guarding AI & Student Data
Senior AI Security Engineer — Guarding AI & Student Data

Panorama Education, LLC • United States

On-site
USD 170,000 - 250,000
401K with employer match
Health, dental, vision, life insurance
Disability coverage
+6
Staff AI Security Engineer - Platform Guardrails
Staff AI Security Engineer - Platform Guardrails

National Geographic • United States

Remote
USD 160,000 - 201,000
AI Cloud Security Engineer: GenAI Guardrails & Defense
AI Cloud Security Engineer: GenAI Guardrails & Defense

Qualizeal • Dallas (TX)

Hybrid
USD 120,000 - 160,000
AI Security Engineer: Guard AI & SaaS Risk
AI Security Engineer: Guard AI & SaaS Risk

Menlo Ventures • Palo Alto (CA)

On-site
USD 155,000 - 180,000
Competitive compensation with equity
Comprehensive healthcare with dental and vision coverage
Flexible paid time off
+2