Staff Information Security Engineer - AI First

8 hours, 45 minutes ago
Full-time
Lead
Artificial Intelligence and Machine Learning
Rithum

Rithum

End to End E Commerce Solutions for Brands & Retailers | Rithum CommerceHub and ChannelAdvisor are now united as Rithum. We empower top brands, suppliers, and retailers with durable, profitable e commerce solutions. Rithum is the hottest place for free...

Internet Software & Services
$13M raised

Description

  • Act as the bridge between architectural intent and operational reality, resolving security implementation gaps and tracking residual risks.
  • Implement preventive, default-on security controls across cloud and enterprise environments using policy-as-code and infrastructure-as-code.
  • Design and enforce identity and access controls, including access boundaries for AI systems and non-human identities.
  • Maintain and update the information security risk register and translate emerging threats into guidance for engineering teams.
  • Support third-party and vendor risk assessments, especially for vendors processing data through AI pipelines.
  • Automate repetitive security workflows such as evidence collection, access reviews, and alert enrichment.
  • Build or operate AI-assisted security agents with human-in-the-loop approvals, least-privilege credentials, and defined blast radius.
  • Integrate security tooling such as SIEM, CSPM, DAST/SAST, and vulnerability scanners with LLM layers to produce actionable outputs.
  • Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, output validation, and data-handling boundaries.
  • Conduct threat modeling for agentic and LLM-based systems, including tool misuse, indirect prompt injection, and supply chain risk.

Requirements

  • 5+ years of security engineering experience with demonstrated AI/ML security depth, including prompt injection, model supply chain, adversarial inputs, and RAG.
  • Experience using AI tools such as ChatGPT, Copilot, or Claude, and LLM frameworks/APIs such as OpenAI, Anthropic, or LangChain.
  • Hands-on identity and access management experience across modern enterprise and cloud identity stacks, including AI systems and non-human identities.
  • Experience with infrastructure-as-code and policy-as-code tools such as Terraform and OPA/Rego, plus scripting proficiency in Python or a similar language.
  • Cloud security expertise, including multi-account governance, preventive guardrails, and policy-as-code; AWS Solutions Architect or Security Specialty-level expertise is an example benchmark.
  • Knowledge of application security, including OWASP Top 10, OWASP LLM/GenAI Top 10, and secure SDLC practices.
  • Experience with threat modeling methodologies such as STRIDE or PASTA.
  • Working knowledge of SOC 2 and/or ISO 27001 control frameworks.
  • Experience building or operating AI agents in production is preferred.
  • Awareness of privacy regulations such as GDPR and CCPA as they apply to AI, including privacy-by-design and DPIAs, is preferred.
  • Red teaming or adversarial ML research experience is preferred.
  • Experience implementing privileged access, key management, posture management, or data protection programs is preferred.
  • Experience with EDR, CASB, DLP, and security automation tools, including SAST, DAST, IAST, and SCA, is preferred.
  • Cloud architecture or security certifications such as CCSK, TAISE, or AWS certifications are preferred.
  • Ability to travel up to 10%.

Benefits

  • Base salary range of $170,000 to $220,000 per year.
  • 12% discretionary annual bonus for non-sales roles.
  • Medical, dental, and vision coverage with company HSA contributions starting on Day 1.
  • 6% 401(k) match.
  • Competitive PTO package with 20 days of PTO, 9 company-paid holidays, 2 floating holidays, 7 sick days, 2 wellness days, and 1 paid volunteer day.
  • Paid parental leave with 12 weeks for primary caregivers and 4 weeks for secondary caregivers.
  • Remote-first working conditions with a $65/month internet stipend.
  • Access to the Calm app and the Employee Assistance Program.
  • Tuition assistance and career development opportunities.
  • Charitable contribution match up to $250 per year.
  • Additional coverage including accident, critical illness, hospital indemnity, pet insurance, legal assistance, identity theft insurance, and life insurance at 2x salary.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Specialist Offensive Security AI

iFood 5K-10K Air Freight & Logistics

iFood is seeking a professional to help protect and assess autonomous AI environments within its technology and fintech ecosystem, with a focus on identifying risks and enabling safer operations at scale.

Cybersecurity
9 hours ago

AI Product Engineer (Internal Tools)

gocertify 11-50 Internet Software & Services

Gocertify is hiring an AI Product Engineer to build and improve the internal tools and automations that support its UK-based revenue operations and help a lean team move faster.

dbt GCP GraphQL HubSpot REST API Ruby on Rails Shopify SQL UI Design UX Design
9 hours ago

Freelance Bot Developer (WhatsApp / Telegram / Discord)

Mindrift.ai: Be the “I” in AI Internet Software & Services

Mindrift is hiring part-time remote Bot Developers for the Tendem project to build and refine messaging bots and platform integrations in a hybrid AI + human workflow.

Docker Node.js OAuth Python REST API Serverless
9 hours, 15 minutes ago

Senior AI Engineer | US | Remote

Grafana 1K-5K IT Services

Grafana Labs is hiring a Senior Engineer (AI & Automation) to build the AI agent infrastructure and automation platform supporting its Marketing Operations organization.

Apache Airflow CI/CD GCP HubSpot JavaScript Microservices Node.js Prefect Python React Salesforce Serverless
1 day, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers