AI Security Analyst
Core
Front-line analyst detecting, investigating, and containing risks across AI tools, agents, and models within the enterprise environment.
Role type
AI Security Analyst
Builds
Evidence base for ISO 42001 certification and AI risk posture
Domain
Enterprise Security / AI Governance
Deliverable
production ML models | dashboards & analysis | client delivery
Required skills
SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle), DLP/CASB tooling, AI/LLM risk concepts (prompt injection, data exfiltration, shadow AI), non-human identity security, threat detection logic (MITRE ATT&CK, OWASP LLM Top 10), log/API telemetry analysis, scripting/querying (Python, SQL, SPL/KQL), cloud environments (AWS, Azure, GCP)
Preferred skills
AI governance frameworks (ISO 42001, NIST AI RMF, EU AI Act), audit evidence collection, agentic AI frameworks (LangChain, AutoGen, CrewAI), browser extension monitoring, ML-based anomaly detection
Technologies
Splunk, Microsoft Sentinel, Google Chronicle, CASB, DLP, GitHub Copilot, Claude Code, Codex, LangChain, AutoGen, CrewAI
Responsibilities
Monitor CASB/SWG and endpoint telemetry to discover unsanctioned AI tools; investigate alerts related to autonomous agents and AI-powered workflows; monitor DLP and AI usage logs for data exfiltration; monitor developer-facing AI tools for policy compliance; maintain and validate AI activity logging and data retention controls; analyze false positive/negative trends to recommend detection tuning; partner with cross-functional teams to align findings with incident response processes
Seniority
Mid-level, hands-on IC