Security Engineer
The Security Engineer will secure AWS and Google Cloud environments, monitor infrastructure, and assess AI/LLM deployments, MCP integrations, and agentic workflows. The role requires 5+ years of security engineering experience, including 2+ years in AI/ML security, plus cloud security and compliance expertise.
About the job
Responsibilities
- Assess and secure AI/LLM deployments and integrations, including Model Context Protocol (MCP) and other LLM connectors, through threat modeling, guardrail design, and risk assessment.
- Perform daily security monitoring across cloud and infrastructure using CSPM, SIEM, log analysis, cloud-native threat detection, database activity monitoring, and SOAR.
- Analyze security alerts generated by cloud infrastructure and applications in real time.
- Own security across AWS and Google Cloud environments, including IAM, compute, storage, networking, workload configurations, security baselines, and vulnerability remediation.
- Participate in incident management, change management, security policy management, and incident response.
- Contribute to SOC 2, PCI DSS, and ISO 27001 compliance programs.
Requirements
- Bachelor's degree in Computer Science, Information Security, or a related technical field.
- 5+ years of security engineering experience, including at least 2 years focused on AI/ML security.
- Hands-on experience securing AWS and Google Cloud environments, including IAM, EC2, S3, VPC, Compute Engine, Cloud Storage, and equivalent services.
- Experience with CSPM for continuous detection and remediation of cloud misconfigurations.
- Experience securing AI/LLM deployments, including foundation models such as Claude on Amazon Bedrock, with guardrails, input/output filtering, prompt-injection defense, output validation, and data-egress controls.
- Experience assessing MCP and LLM connector integrations against OWASP guidance, including prompt injection, cross-connector chaining, OAuth scope minimization, tool-access boundaries, and untrusted-content handling.
- Working knowledge of NIST AI RMF, OWASP LLM Top 10, OWASP guidance for MCP and agentic systems, and MITRE ATLAS.
- Ability to threat-model and risk-assess AI systems, agentic workflows, and third-party AI integrations.
- Understanding of cryptography, authentication, authorization, security protocols, vulnerability classes, web application security, and cloud service security.
- Understanding of common security vulnerabilities, risks, countermeasures, and compensating controls.
- Knowledge of IPv4/IPv6, TCP/UDP, DHCP, HTTPS, FTP, and similar IP networking protocols.
Compensation & Benefits
- Salary range: USD 120,000–150,000 per year.
- Total compensation includes base salary, performance bonuses, and equity options.
- Comprehensive medical, dental, and vision insurance.
- 401(k) retirement savings plan.
- Discretionary paid time off and paid holidays.
Skills
AWS, GCP, IAM, Amazon Ec2, Amazon S3, Amazon Vpc, Google Compute Engine, Google Cloud Storage, Cspm, SIEM, Soar, Amazon Bedrock, Model Context Protocol, Threat Modeling, Nist Ai Rmf
Similar jobs
Security Engineering jobsThe Security Engineer will lead application security across the SDLC, integrating DevSecOps controls, conducting threat modeling and secure code reviews, and managing application vulnerabilities. The role requires 3+ years of application security experience plus hands-on expertise with AWS, Kubernetes, IaC, CI/CD, and mobile or web security.
Conducts end-to-end security risk assessments for vendors, customers, and partners while maintaining risk tiering, remediation, reassessments, and reporting. The role also matures third-party risk processes and uses AI-assisted workflows to scale assessment operations.
The Security GRC Analyst will manage security risks, policies, audits, control testing, and compliance reporting while partnering with technical and business stakeholders. The role requires 4+ years of GRC or security assurance experience and familiarity with major security frameworks.
Own network engineering and government cybersecurity compliance for on-site and field-deployed aerospace systems. The role requires 5+ years of experience, end-to-end IATT/ATO experience, strong networking skills, and familiarity with DoD security frameworks and tactical communications.
Develops machine-level safety cases, hazard analyses, and safety requirements for autonomous mining and industrial equipment. The role requires hands-on system safety experience, knowledge of ISO 26262, and collaboration across hardware, software, controls, and validation teams.