Overview
In this role you secure AI-driven and internal enterprise apps, partnering with the CISO to apply threat modeling, secure design, and engineering discipline across internal systems and AI tooling. You’ll build scalable security patterns, automate workflows, and help the security team mature in an AI-first enterprise environment. This position blends product security rigor with enterprise impact, shaping secure-by-design practices at scale.
Responsibilities
- Develop secure SDLC standards for internal apps and AI workflows
- Create patterns, reference architectures, and self-serve documentation for security
- Collaborate with business teams to promote secure practices for AI and low-code
- Conduct threat modeling, risk assessments, and security reviews for enterprise systems
- Prioritize risks and advise on mitigations with risk, compliance, and audit teams
- Translate findings into enterprise controls and detection requirements
- Design safeguards for enterprise AI tooling and agents
- Evaluate and integrate emerging AI/ML security tools
- Automate AI-first security workflows to scale the security team
- Engineer enterprise-focused security solutions that benefit Product Security, SOC, and GRC
Key requirements
- Hands-on experience in software and enterprise security
- Proficiency in secure SDLC fundamentals including threat modeling, vulnerability management, and CI/CD security
- Experience coding (Python, Go, TypeScript, or similar)
- Experience building integrations and automating security workflows
- Experience with security tools at scale (SAST, DAST, SIEM, endpoint, cloud, identity, AI/ML, vulnerability management platforms)
- Understanding of AI/ML security risks and agentic AI frameworks
- Exceptional written and verbal communication
- Strong interpersonal skills; builds trust across technical and non-technical teams
- Collaborative mindset; drives outcomes through teamwork
- Secure SDLC
- Threat modeling
- Vulnerability management
…
