Staff Information Security Engineer – AI First

🕒 il y a 1 mois

🇺🇸 États-Unis – Télétravail

💵 $170 000 - $220 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Rithum

Rithum

501 - 1000 employés

Fondée en 1997

🛍️ eCommerce

📣 Marketing

🤖 Intelligence artificielle

eCommerce • Marketing • Artificial Intelligence

Rithum est une plateforme de commerce électronique complète conçue pour permettre aux marques, détaillants et fournisseurs de lancer et développer efficacement leurs activités. Offrant une variété de solutions incluant le marketing multicanal, la gestion de l'exécution des commandes et la découverte de fournisseurs par IA, Rithum aide les utilisateurs à optimiser leur présence en ligne et à rationaliser leurs opérations à travers un vaste réseau de places de marché. Avec un accent sur la flexibilité et l'efficacité, Rithum vise à transformer le commerce en créant des expériences d'achat profitables et engageantes.

Description

• Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks. • Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used. • Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture. • Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams. • Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines. • Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius. • Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses. • Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries. • Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.

🎯 Exigences

• 5+ years of security engineering experience with demonstrated AI/ML security depth (prompt injection, model supply chain, adversarial inputs, RAG). • Experience using AI tools (ChatGPT, Copilot, Claude, etc.) and LLM frameworks and APIs (OpenAI, Anthropic, LangChain, or similar) to accelerate and elevate your work. • Hands-on identity and access expertise across modern enterprise and cloud identity stacks, including access models for AI systems and non-human identities. • Infrastructure and policy-as-code (e.g. Terraform, OPA/Rego) and proficiency in a scripting language for automation (Python preferred). • Cloud security expertise: AWS Solutions Architect / Security Specialty or equivalent demonstrated expertise, including multi-account governance, preventive guardrails, and policy-as-code. • Application security (OWASP Top 10 and the OWASP LLM/GenAI Top 10, secure SDLC) and threat-modelling methodologies (STRIDE, PASTA, or equivalent). Practical experience building or operating AI agents, and integrating security tooling (SIEM, CSPM, SAST/DAST/SCA) so it surfaces action rather than raw alerts. • Working knowledge of SOC 2 and/or ISO 27001 control frameworks

🏖️ Avantages

• Medical, dental and vision benefits: Affordable health care plans and company HSA contributions, starting on Day 1 • A 6% 401(k) match • Competitive time off package with 20 days of Paid Time Off, 9 Company-Paid holidays, 2 paid floating holidays, 7 paid sick days, 2 Wellness days, and 1 Paid Volunteer Day; at 3 years of service PTO increases to 22 days, and at 5 years it increases to 25 days • 12 weeks primary caregiver leave & 4 weeks secondary caregiver leave • Accident, critical illness, and hospital indemnity insurance • Pet insurance • Legal assistance and identity theft insurance plans • Life insurance 2x salary • Access to the Calm app and the Employee Assistance Program • $65/month Remote work stipend for internet • Culture and team-building activities • Tuition assistance • Career development opportunities • Charitable contribution match up to $250 per year

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

EXL

10 000+ employés

🏥 Santé

🛡️ Assurance

📦 Logistique

Application Security Architect focusing on embedding security in SDLC and collaborating with engineering teams. Drive secure coding practices and manage application security risks for modern software.

🇺🇸 États-Unis – Télétravail

💵 $160 000 - $195 100 / an

💰 €2 000 000 Venture Round en 2015-01

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Highway.ai

51 - 200

💼 Conseil

📣 Marketing

🏠 Immobilier

Director of Security & Infrastructure overseeing AWS security and infrastructure operations for Highway. Responsible for embedding security into development practices and maintaining operational excellence.

🇺🇸 États-Unis – Télétravail

💵 $140 000 - $160 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Coalfire

1001 - 5000

💼 Conseil

🏥 Santé

📦 Logistique

Principal Google Cloud Security Consultant serving as a senior advisor on Google Cloud security engagements. Helping clients design and operationalize secure Google Cloud environments.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Equality Health

201 - 500

🏥 Santé

☁️ SaaS

⚕️ Assurance santé

Director, Security & Risk at Equality Health focused on managing the entire enterprise security program. Responsible for strategy, roadmap, execution, and continuous improvement in a tech-enabled healthcare system.

🇺🇸 États-Unis – Télétravail

💰 Private equity en 2022-01

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

AWS

Azure

Firewalls

Splunk

🕒 il y a 1 mois

Equality Health

201 - 500

🏥 Santé

☁️ SaaS

🤝 B2B

Director, Security & Risk overseeing end-to-end enterprise security program at Equality Health. Ensuring compliance, risk management, and security strategy execution in a remote role.

🇺🇸 États-Unis – Télétravail

💰 Private equity en 2022-01

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

AWS

Azure

Firewalls

Splunk