< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Role purpose>< class="MsoNormal" style="margin-bottom: 4.0pt;">Ensure AI and GenAI systems on AIRP are designed, deployed, and operated securely and in compliance with enterprise technology, cybersecurity, privacy, and regulatory standards. The role covers emerging LLM risks as well as traditional AWS cloud, application, data-security, DevSecOps, and IaC controls.>< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Client-specific emphasis>< class="MsoListBulletCxSpFirst" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Security must cover AWS-hosted AIRP, Terraform/IaC templates, CI/CD pipelines, cloud engineering patterns, AI applications, and model/data access controls.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· The role must help create reusable controls that work across multiple business AI use cases and can support the broader cloud-agnostic blueprint.>< class="MsoListBulletCxSpLast" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Power Platform / Copilot Studio governance, data-loss prevention, connector controls, and citizen-development oversight are valuable plus areas.>< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Primary ownership>< class="MsoListBulletCxSpFirst" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Security architecture and control implementation for AI platforms, LLM applications, RAG pipelines, model-serving environments, and agentic systems.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Threat modeling, AI red teaming, vulnerability assessment, risk remediation, and secure production approvals.>< class="MsoListBulletCxSpLast" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Security evidence, control documentation, and compliance support for AIRP releases, Terraform/IaC, and DevOps pipelines.>< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Key responsibilities>< class="MsoListBulletCxSpFirst" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Design and review secure architectures for AI/ML platforms, LLM applications, RAG pipelines, model-serving environments, and agentic AI workflows.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Conduct threat modeling for prompt injection, jailbreaks, insecure tool use, model inversion, data leakage, retrieval poisoning, adversarial inputs, unauthorized access, and third-party model risk.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Implement controls for AWS IAM, encryption, key management, secrets management, network segmentation, API security, logging, secure data handling, and data-loss prevention.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Embed security into MLOps, LLMOps, CI/CD, container security, infrastructure-as-code, Terraform modules, and deployment pipelines.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Review cloud-agnostic IaC templates and AWS-specific deployments for least privilege, secure defaults, segregation of duties, policy compliance, and auditability.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Review third-party models, APIs, open-source packages, AI tools, and vendor platforms for security, privacy, model supply-chain, and compliance risks.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Build monitoring and alerting for suspicious AI usage, anomalous access, policy violations, unsafe interactions, and potential data leakage.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Support AI red teaming, penetration testing, vulnerability management, incident response, remediation planning, and production-readiness reviews.>< class="MsoListBulletCxSpLast" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Maintain audit-ready documentation for controls, testing, risk acceptance, remediation, and production approvals.>< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Must-have candidate profile>< class="MsoListBulletCxSpFirst" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Strong background in cybersecurity, cloud security, application security, DevSecOps, or technology risk.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Experience securing cloud-native platforms, APIs, microservices, containers, Kubernetes, CI/CD pipelines, and infrastructure-as-code.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Strong AWS cloud security exposure or comparable hyperscaler security depth, including IAM, encryption, network controls, logging, secrets, and secure deployment patterns.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Understanding of AI/ML and GenAI-specific risks such as prompt injection, adversarial attacks, data leakage, model misuse, retrieval poisoning, model supply-chain risk, and unsafe tool use.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Familiarity with threat modeling, vulnerability management, security testing, incident response, secure SDLC, DevSecOps, and Terraform/IaC controls.>< class="MsoListBulletCxSpLast" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Ability to work directly with engineering teams to implement practical, risk-based controls.>< class="MsoNormal" style="margin: 4.0pt 0cm 2.0pt 0cm;">Preferred experience>< class="MsoListBulletCxSpFirst" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Experience securing AI/ML platforms or GenAI applications in production.>< class="MsoListBulletCxSpMiddle" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Financial-services security, technology risk, regulatory, compliance, privacy, or audit experience.>< class="MsoListBulletCxSpLast" style="mso-add-space: auto; text-indent: -8.65pt; mso-list: l0 level1 lfo1; tab-stops: list 18.0pt; margin: 0cm 0cm 1.5pt 15.85pt;">· Familiarity with AI red teaming, secure RAG design, LLM gateways, Power Platform governance, Copilot Studio controls, data-loss prevention, and privacy-by-design controls.>
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
- Dice Id: 90812935
- Position Id: 9042815
- Posted 19 hours ago