AI & Application Security Consultant
Technology
Job Description
Senior Application & AI Security Engineer
\n
Location: Remote
\n
Type: Full-Time Contract
\n
Position Overview
\n
We are seeking a Senior Application & AI Security Engineer to help reduce cybersecurity risk across enterprise applications, software development environments, cloud platforms, and emerging AI technologies.
\n
This role combines Application Security and DevSecOps with a strong focus on AI/GenAI security, including LLMs, RAG, AI agents, coding assistants, and AI-enabled applications.
\n
\n
Key Responsibilities
\n
- \n
- Integrate security testing and controls into CI/CD pipelines and software development processes.
- Support and mature SAST, DAST, SCA, SBOM, container scanning, dependency management, and vulnerability management capabilities.
- Identify, prioritize, and drive remediation of application and software supply-chain vulnerabilities.
- Perform security assessments of GenAI applications, LLMs, RAG solutions, AI agents, APIs, and AI/ML platforms.
- Conduct or support AI security testing and red teaming, including prompt injection, jailbreak, data leakage, insecure RAG, and excessive agent permissions.
- Review application and AI architectures for authentication, authorization, data protection, API security, guardrails, logging, and runtime security.
- Assess AI agents, integrations, plugins, and emerging technologies for security risks.
- Partner with development, DevOps, cloud, architecture, and AI teams to implement practical security controls.
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
\n
Qualifications
\n
- \n
- 5+ years of cybersecurity experience within Application Security, DevSecOps, Product Security, Cloud Security, or a related discipline.
- Strong experience with several of the following: SAST, DAST, SCA, SBOM, container security, CI/CD security, dependency management, and vulnerability management.
- Experience with cloud and development environments such as Azure, AWS, GCP, Azure DevOps, GitHub, or similar technologies.
- Knowledge of LLMs, Generative AI, RAG, AI agents, and associated security risks.
- Experience with AI security testing, GenAI security, or AI red teaming is highly preferred.
- Familiarity with OWASP, NIST CSF, NIST AI RMF, secure development, and threat modeling.
- Strong communication skills with the ability to translate technical security risks into practical recommendations.
\n
\n
\n
\n
\n
\n
\n
\n
Preferred Certifications: CISSP, CSSLP, CCSP, GIAC, or relevant cloud security certifications.
