Skip to content

Senior Application Security Engineer, AI and Machine Learning

180k – 220kSan Francisco, CASeattle, WASecurity EngineeringHybrid
Summary

Secures AI/ML systems through threat modeling, architecture reviews, and securing inference pipelines, APIs, and model supply chains. Partners with ML engineers to embed security in training, deployment, and multi-tenant workloads while building automation tooling.

About the role

What You’ll Do

Secure AI and Machine Learning Systems

  • Perform threat modeling across AI platforms, inference services, and ML pipelines
  • Identify risks such as prompt injection, model extraction, adversarial inputs, and data leakage
  • Review model serving architectures and inference pipelines
  • Partner with ML engineers to secure training, fine tuning, and deployment workflows
  • Help design isolation and security controls for multi tenant AI workloads

Application Security Engineering

  • Perform architecture and design security reviews
  • Conduct targeted code reviews for high risk components
  • Identify security gaps in APIs, micro-services, and distributed systems
  • Build secure patterns for authentication, authorization, and service to service communication
  • Help engineering teams implement secure defaults and guardrails

Inference Platform Security

  • Secure customer facing inference APIs and services
  • Protect against abuse, model extraction, and adversarial behavior
  • Design rate limiting, isolation, and workload protection controls
  • Build monitoring and detection for anomalous inference behavior

AI Supply Chain and Model Security

  • Evaluate open source models and dependencies
  • Secure model artifacts and distribution pipelines
  • Implement integrity validation and provenance controls
  • Help secure container images and runtime environments

Security Automation and Tooling

  • Build security automation for AI and application pipelines
  • Integrate security scanning into CI/CD workflows
  • Develop tooling to help engineers detect and fix issues early
  • Improve developer experience with security guardrails

What You'll Need

Required Experience

  • Strong background in application security engineering
  • Experience performing threat modeling and architecture reviews
  • Experience securing APIs and distributed systems
  • Experience working in cloud environments such as AWS, GCP, or Azure
  • Experience with containers and Kubernetes
  • Strong scripting or programming skills such as Python, Go, or similar
  • Experience working closely with engineering teams to implement security improvements

AI and Machine Learning Experience

  • Experience securing ML pipelines, inference systems, or data platforms
  • Familiarity with risks such as prompt injection, model extraction, and adversarial inputs
  • Experience reviewing model serving architectures
  • Understanding of training data security and data leakage risks

It's a Strong Plus If You Have

  • Red team or offensive security experience
  • Experience crafting payloads and evaluating CVEs for exploitability in diverse environments
  • Experience with GPU infrastructure or high performance computing
  • Experience with Hugging Face, PyTorch, TensorFlow, or similar frameworks
  • Experience with LLM systems, RAG pipelines, or agent frameworks
  • Experience building security automation pipelines
  • Experience securing multi tenant infrastructure
Skills
KubernetesAWSGCPAzurePythonGoPyTorchTensorFlowHugging FaceCI/CD
Similar roles at this salary range
All Security Engineering jobs →
DuckDuckGo

Senior Privacy Engineer

Lead privacy engineering projects protecting user data across search, browser, and AI features. Own major privacy components, participate in audits, and mentor engineers using Go, Node.js, Python, or Perl.

179k – 179kUnited StatesSecurity EngineeringRemote5+ YOEGoPerl
Doppel

Product Security Engineer

Product Security Engineer embedding into engineering workflows to conduct architecture reviews, threat modeling, and penetration testing coordination while serving as GCP security SME. Requires 5-7 years experience and strong GCP and Python skills.

175k – 200kUnited StatesSecurity EngineeringRemote5+ YOEGCPIAM
Instacart

Senior Product Security Engineer II

Senior security engineer focused on offensive security testing, penetration testing, and scaling security practices across Instacart's product suite. Requires 7+ years in security engineering or pentesting with experience in mobile, cloud, or AI security.

192k – 243kUnited StatesSecurity EngineeringRemote7+ YOEAI SecurityCloud Security
Crusoe

Staff Software Engineer, Security

Staff Security Software Engineer designing and building scalable security infrastructure, identity systems, and compliance automation platforms. Requires 8+ years software engineering experience with deep Kubernetes, Go/Rust, and cloud platform expertise.

215k – 260kSan Francisco, CASecurity EngineeringOn-site8+ YOEGoGCP
Crusoe

Senior Software Engineer, Security

Design, build, and deploy scalable security services, PKI, and secrets management platforms. Implement automation to eliminate manual security risk remediation across enterprise infrastructure.

175k – 210kSan Francisco, CASecurity EngineeringOn-site5+ YOEGoAWS