Director, Application & AI Security
Core
Director owning end-to-end application and AI security for a specialty care platform, enabling safe AI adoption and protecting PHI.
Role type
Director, Application & AI Security
Builds
Secure SDLC pipelines, AI golden paths, automated security tooling, and a security team.
Domain
Healthcare / AI Security / Application Security
Deliverable
production ML models | product features | infrastructure
Required skills
Application security leadership, AI/ML security ownership, security architecture, DevSecOps, threat modeling, team building, API security, secure SDLC implementation, risk-based triage
Preferred skills
Healthcare domain experience, AI golden path setup, cryptographic standards ownership, AI red-teaming, product security
Technologies
SAST/DAST/SCA/IAST, WAF, API gateways, OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, Snyk, GitHub Advanced Security, Wiz, Garak, PyRIT, Promptfoo
Responsibilities
Lead application security across the development lifecycle including SAST/DAST/SCA/IAST, code and dependency security, API security, and runtime protections.
Responsibilities
Own AI and ML security covering model and agent security, prompt-injection risk, tool-use risk, and data-egress controls for third-party models.
Responsibilities
Own security architecture and threat modeling, including secure-by-design reviews and cryptographic standards.
Responsibilities
Own DevSecOps and pipeline security with scanning as default in CI/CD and MLOps/LLMOps pipelines.
Responsibilities
Own the security-review intake as a single front door with risk-based triage to accelerate business delivery.
Responsibilities
Own the application and AI security tool stack and the secure-design standards behind it.
Seniority
Director, strategic leadership with hands-on technical depth