AI Application Security Engineer
Core
Conduct application security assessments and secure design reviews for AI-powered applications and GenAI solutions, focusing on risks like prompt injection, insecure outputs, and data leakage.
Role type
Senior IC application security engineer (AI/GenAI)
Builds
Secure AI/GenAI applications, APIs, and development workflows
Domain
Cybersecurity, Artificial Intelligence, Generative AI
Deliverable
production ML models | product features
Required skills
AI/ML platform security, API security, secure software development lifecycle, cloud-native security, authentication and authorization, prompt injection mitigation, RAG pipeline security, vector database security, AI attack vector analysis, OWASP Top 10 for LLM Applications, NIST AI RMF, MITRE ATLAS, container security, secrets management
Preferred skills
Advanced degree in AI/ML or cybersecurity, AI/ML or cybersecurity certifications
Technologies
AWS, Azure, LLMs, RAG architectures, vector databases, AI coding assistants
Responsibilities
Conduct application security assessments and secure design reviews for AI-powered applications and GenAI solutions. Review AI integrations involving APIs, plugins, RAG pipelines, vector databases, and enterprise applications. Evaluate risks involving prompt injection, insecure outputs, data leakage, insecure APIs, and retrieval poisoning. Support secure software development lifecycle practices for AI applications and AI-enabled development workflows. Collaborate with engineering teams on secure coding, application-layer controls, authentication, and authorization mechanisms. Support AI application penetration testing, API security testing, and remediation activities. Validate the secure use of AI coding assistants and AI-enabled development tools.
Seniority
Senior, hands-on IC
