Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
United States
Posted
Yesterday
AWSOWASPAzureGPTGoogle CloudLLMPythonREST
Job Description
Job description:
Role: AI Cloud Security Engineer
REMOTE
Role Summary
We are looking for an AI Security Engineer with a strong cloud security foundation to secure our growing portfolio of agentic AI systems across AWS and multi-cloud environments. You will own security for LLM-based agents, agentic workflows, and AI-integrated infrastructure from design through runtime and working closely with VM, App Sec, and Cloud Security teams.
Key Responsibilities
- Design and enforce Agentic IAM policies with least privilege agent identity lifecycle management
- Implement sandboxing and containment architectures to limit blast radius from compromised agents
- Apply the OWASP Agentic Security Framework to assess prompt injection, tool misuse, and uncontrolled recursion risks
- Define Agentic Guardrails input/output validation, scope enforcement, and human-in-the-loop controls
- Build Agent Auditing, Detection, and Response capabilities for anomalous agent behavior and unauthorized data exfiltration
- Secure AI Harness infrastructure such as orchestration layers, memory stores, vector DBs, and API integrations
- Conduct LLM Security assessments including prompt injection testing and inference abuse detection
- Harden protocol and tool security for agent-to-tool communication (MCP, REST, function calling, webhooks)
Required Qualifications
- 4+ years in cloud security (AWS, Google Cloud Platform, Azure)
- 2+ years in AI Security Governance and GPT
- Hands-on experience securing AWS-native AI services (Bedrock, SageMaker, Lambda)
- Deep knowledge of OWASP LLM Top 10 and the OWASP Agentic Security Framework
- Experience designing IAM for non-human identities agent roles, service accounts, workload identity
- Proficiency in Python for detection and auditing tooling
- Working knowledge of container/Lambda sandboxing and network segmentation for agent isolation
Preferred Qualifications
- Exposure to agentic frameworks (n8n, LangChain, AutoGen)
- Familiarity with Upwind CNAPP or similar runtime cloud security platforms
- Experience integrating security findings into ServiceNow VRM
- CIP compliance awareness in OT/energy environments
Similar jobs
- NI
Cloud Data Engineer-Snowflake/AWS
NewNityo Infotech Corporation
Detroit, MI🇺🇸HybridYesterdayAWSSnowflakePythonTechnology - KT
Senior Cloud Governance Engineer
NewKforce Technology Staffing
Charlotte, NC🇺🇸HybridYesterdaySOC 2AzureCompliance+6 - SS
Linux Engineer
NewSpear Staffing
Las Vegas, NV🇺🇸On-siteYesterdayOracleActive DirectoryTechnical Support - CI
Microsoft 365 Engineer
NewCACI International, Inc.
Arlington, VA🇺🇸$113.2k - $237.8k/yrHybridYesterdayEngineering - PE
Cloud Computing Engineer with Security Clearance
NewPeraton
Chantilly, VA🇺🇸$112k - $179k/yrOn-siteYesterdayScrumAgileConfluence+1 - PE
Cloud Software Engineer with Security Clearance
NewPeraton
Annapolis Junction, MD🇺🇸$135k - $216k/yrHybridYesterdayAWSC++JavaTechnology - BA
Cloud Engineer with Security Clearance
NewBooz Allen Hamilton
Arlington, VA🇺🇸$99k - $225k/yrOn-siteYesterdayDockerGCPAWS+4Technology - ES
Cloud Security Vulnerability Management Engineer
NewEstuate Inc.
United States🇺🇸HybridYesterdayAWSAzureGoogle Cloud+1Technology - AT
AWS Cloud Architect :: Full-Time
NewArkhya Tech
Woodbridge Township, NJ🇺🇸HybridYesterdayAWSSSOAnsible+6Technology - VT
Network Engineer with Security Clearance
NewVTG
Herndon, VA🇺🇸HybridYesterdayTechnology - NI
Cloud Architect with Security Clearance
NewNightwing
Sterling, VA🇺🇸HybridYesterdayAWSELKLogstash+11Technology - BA
Cloud Architect with Security Clearance
NewBooz Allen Hamilton
Arlington, VA🇺🇸$62k - $141k/yrOn-siteYesterdayGCPAWSAnsible+7Technology