AI Systems Engineer - Secure Execution - Senior
$106.9k - $200.6kErnst & Young
Location: Anywhere in Country
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
The opportunity
We are seeking AI Systems Engineers to own the security and trust fabric of EY’s AI-native platform, comprising the identity, secrets, cryptographic, and attestation layer that makes agentic AI workloads deployable in highly regulated environments. This role owns the enforcement mechanisms that allow EY to prove every workload is identity-bound, every secret is protected, every node is trusted, and every deployment is attestable and audit-ready.
This is the strategic differentiator of the platform. The ability to deploy AI workloads in regulated industries and prove they are secure, economically bounded, and auditable depends on the trust fabric this role builds. It is the technical enforcement layer behind the AI Integrity / Security control authority and much of the platform’s governance capabilities, spanning consistently across cloud, on-prem, edge, and air-gapped environments.
Your key responsibilities
- Own workload identity and secrets management: SPIRE/ODIS, Keycloak/Entra ID (IAM), OpenBao (secrets store), cert-manager (X.509 lifecycle), PKI issuers/roots, and transit encryption — propagated consistently across every environment and tenant.
- Build confidential compute environments: TEE (TDX/SEV-SNP/SGX/TrustZone/CCA/NVIDIA CC), Intel TXT boot security, and secure DPU architecture (DOCA), so environments are isolated, attestable, and audit-ready.
- Establish the platform-wide identity model so every workload, agent, and service carries a verifiable, propagated identity that flows through telemetry, cost attribution, and policy enforcement end-to-end.
- Own the cryptographic lifecycle: issuance, rotation, revocation, and expiry of certificates, keys, and roots, with zero manual, untracked secrets and no long-lived credential sprawl across tenants.
- Enforce attestation policy: which nodes, enclaves, and workloads are trusted, how trust is proven at boot and at runtime, and how attestation evidence is captured for audit.
- Partner on a dotted-line basis with Enterprise Security / Cloud Platform / SRE to ensure independent review, alignment to enterprise trust standards, and audit readiness in regulated client contexts.
Skills and attributes for success
- Deep expertise in workload identity, secrets management, PKI, and cryptographic lifecycle at production scale across multiple environments.
- Strong understanding of confidential compute, trusted execution environments, hardware roots of trust, and remote attestation.
- A security-first mindset: thinking in terms of provable trust, blast radius, least privilege, and cryptographic attribution rather than perimeter or convenience.
- Ability to encode trust and compliance directly into infrastructure so that security is enforced by the platform, not by manual review.
- Comfortable operating across cloud, on-prem, edge, and air-gapped environments with consistent identity and trust mechanisms.
- Strong communicator able to explain trust, identity, and attestation tradeoffs to engineers, architects, auditors, and leadership.
- Orientation toward auditability and evidence: able to translate regulatory expectations into technical controls and demonstrable proof.
To qualify you must have
- Bachelor’s or Master’s degree in Computer Science, Security, or related technical field, or equivalent experience.
- 8+ years in security engineering, identity/PKI, or trust infrastructure, with hands-on production ownership.
- Deep, hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets management (OpenBao/Vault).
- Strong grounding in PKI, X.509 certificate lifecycle (cert-manager), key management, and transit encryption.
- Working experience with confidential compute and hardware attestation (TDX, SEV-SNP, SGX, NVIDIA CC, or equivalents) and secure boot (Intel TXT).
- Experience delivering identity and secrets consistently across multi-tenant, multi-environment (cloud/on-prem/edge/air-gapped) platforms.
- Proven track record operating under compliance, security, or regulatory constraints with audit-grade evidence requirements.
- Ability to define clean ownership boundaries and consumption contracts with platform, data, and runtime teams.
Ideally, you’ll also have
- Familiarity with secure DPU architectures (DOCA) and hardware root-of-trust / boot-chain designs.
- Experience integrating identity and attestation into service mesh, policy engines (OPA), and API gateways.
- Exposure to AI/ML workloads and the specific trust challenges of confidential AI inference (models/secrets inside enclaves).
- Experience producing attestation and compliance evidence for external auditors or regulators.
- Relevant certifications (e.g., CISSP, cloud security specialties) or demonstrable equivalent depth.
- Exposure to regulated industries (financial services, tax, healthcare, risk).
What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
- We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $106,900 to $176,500. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $128,400 to $200,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
- Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
- Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on aiapply.co.
$106.9k - $200.6k
...opportunity We are seeking an AI Systems Engineer to own the delivery, model-... ...and deployed, how models execute, how requests are routed to... ...environments. Works with senior engineers to test and develop... ...pipelines that ship AI workloads, secure model execution, semantic...SeniorFull timeSummer holidayFlexible hours$159.2k - $301.6k
The Opportunity We are looking for a Senior AI Systems Engineer with deep C++ expertise to help build... ...AI useful, reliable, observable, and secure. What You’ll Do AI-Native Systems Architecture... ...model-backed workflows. Define clean execution interfaces, schemas, validation...SeniorFull timeTemporary workLocal areaRemote workWorldwide$106.9k - $200.6k
...working world. The opportunity We are seeking an AI Systems Engineer to own the stateful backbone of EY’s AI-native platform, including... ...track record operating data systems under compliance, security, or regulatory constraints, including data-at-rest and in-transit...SeniorFull timeSummer holidayFlexible hours$130k - $195k
...it with confidence. Our AI-powered, cloud platform... ...s legal AI software to securely surface and manage the... ...Embed AI security into engineering deliveries Provide product... ...ABOUT THE ROLE As a Senior AI Security Engineer, you... ...-including agentic systems, LLM integrations, and...Senior$102.5k - $187.9k
...our product-driven, AI-centric approach,... ..., and software engineers enable our clients... ..., back end, data, security etc.), all are comfortable... ...As a Senior Application Designer... ...Work on distributed systems problems ranging from... ...customers, partners and executives Fearless in...SeniorSummer holidayFlexible hours- United States Digital Space LLC is seeking an experienced Senior Systems Engineer to own the macOS platform and drive endpoint management and... ...lead initiatives across endpoint management, identity, and security tooling, focusing on Jamf Pro, AutoPkg, Okta, osQuery, and...Senior
$110k - $140k
...We believe you'll love being an AI Security Engineer at tms because you'll play a pivotal role... ...capabilities through a security lens while executing core engineering functions across SaaS... ...Evaluate data flows between marketing systems and core enterprise infrastructure,...- ...Senior Technical Expert Serves as a senior... ...level, enterprise-wide engineering strategies for Al-enabled systems, computer hardware/... ...people. As an AI technical SME... ...federal mandates, executive orders, and/or other... ...data platforms, and secure computing infrastructures...Senior
- VAST Data, located in Chicago, is seeking a Senior Systems Engineer to help define product requirements and provide technical leadership in enterprise... ...skills. Join a pioneering company at the forefront of AI and data management innovation. #J-18808-Ljbffr VAST DataSenior
$110.7k - $185.25k
...Senior AI Engineer Specializing In Agentic AI Enablement As a Senior AI... ...Architectural Leadership & Strategic Execution (40%) Design and architect transformative agent systems that enable organization-... ...and escalates policy/security-impacting decisions. Supervision...SeniorShift work$170k - $190k
...including hospitals, health systems, medical groups, academic... ...be helping physician and executive leadership make informed decisions... ...Opportunity with ECG: Senior Healthcare AI Engineer As a senior healthcare... ...technologies, and build secure, governed, and scalable AI...SeniorPermanent employmentFull timeWork at officeRemote work$124k - $280k
...Data And Analytics Engineering Director At PwC, our... ...implementing advanced AI and ML solutions to drive... ..., models, and systems to enable intelligent... ...compliance with governance and security policies.... ...Lead the creation and execution of data architecture strategies...Senior- ...increasingly sophisticated cyber and AI-driven threats, securing their AI transformation.... ...workspaces, and AI systems, stopping attacks before... ...looking for an AI Security Engineer to join our Red Team and... ...recommendations to technical and executive stakeholders through...Worldwide
- ...Intelligence, Generative AI, and advanced machine... .... We are seeking a Senior AI Engineer to design, develop, and... ...build production-grade AI systems that directly impact... ...strategy, work with executive stakeholders, and gain... ...Specialization : Data and AI Security Motion RecruitmentSeniorFull time
$117.2k - $175.8k
...Sr Data Engineer - GE07BE We’re determined to make a difference... ...The Hartford is seeking a Senior AI Machine Learning Engineer within... ...hands-on technical lead who can execute approved solution designs,... .../CD, testing, observability, security, and operational practices....SeniorTemporary workWork at office3 days per week- Verano is seeking a Sr. Analyst, IT - SAP Security Controls in Chicago to lead SAP security design and ITGC execution. You will own SoD and emergency access governance, coordinate with internal teams, and support SIEM integration while strengthening SOX controls across...Senior
$152k
...Senior Systems Engineer Chicago, IL, USA; New York, NY, USA; San Francisco, CA, USA About the... ...– endpoint management, identity, and security tooling – with a primary focus on macOS... ...worked tirelessly to out-hustle and out-execute competitors to bring our mission to...SeniorFull timeWork at officeRemote workShift work$133k - $166k
...about building and operating secure, scalable AI platforms that power real-... ...innovation? As an AI Infrastructure Engineer , you'll play a key role in... ...& Release Enablement: Execute platform updates,... ...Science, Engineering, Information Systems, or a related field, along with...SeniorWorldwideFlexible hours- ...together." What's in it for you? The Senior Systems Engineer can be based out of Skyline... ...responsible for the design, implementation, security, and ongoing operation of Skyline's enterprise... ...and growth requirements. Plan and execute server upgrades, migrations,...SeniorFor contractorsWork at officeRelocation
$125.5k - $261.6k
...The opportunity We are seeking AI Systems Engineers to build and operate the foundational... ...Management, so downstream runtime, data, and execution services can run safely and... ...capacity per tenant and engagement. Own secure execution and inference: Ray Serve, vLLM...Full timeContract workSummer holidayFlexible hours$85.1k - $161.7k
...practice is seeking an experienced SAP security & controls specialist with a strong background... ...risk quarterback solutions, system integrity solutions, security and controls... ...candidate will have experience scoping and executing SAP security segregation of duties assessments...SeniorWork experience placementInternshipLocal area- ...Moveworks is the Agentic AI Assistant platform... ...of their business systems through natural... ...Moveworks' Reasoning Engine and natural... ...care deeply about secure access at scale? Making... ...not a blocker. As a Senior Identity & Access Management... ...(UAR): Develop, execute and design a UAR...SeniorWork at officeRemote workFlexible hours
$119k - $169.4k
...title for this position is Senior Automation Engineer , this role has been... ...scale intelligent automation systems centered on agentic... ...intersection of advanced AI engineering, security architecture, and organizational... ...technical layer and the executive advisory level,...SeniorFull timeWork at officeImmediate start$144k - $374k
...opportunity We are seeking a senior, hands-on Distinguished Engineer to lead the delivery of AI-native systems into highly regulated... ...Engineering, Systems Design, Security, Compute, Data, Networking,... ...transform field observations into executive-ready recommendations,...SeniorFull timeTemporary workSummer holidayImmediate startFlexible hours$121k - $137k
...integrate, and support insurance systems of WRBC's operating units.... ...seeking a dynamic Sr Systems Engineer with a strong background in... ...planning, architecture, and execution of IAM systems, serving as a... ...system provisioning, maintenance, security, and compliance, ensuring...SeniorCasual work- ...Risk Technology - Sap Grc & Security - Senior Consultant Location: New York... ...SAP applications Ability to execute defined tasks independently... ...computer science, information systems, information security, or a related... ...emerging SAP technologies such as BTP, SAC, AI, or RPA EYSeniorShift work
$125k - $145k
...Description Summary We are looking for a Senior Systems Engineer to own enterprise infrastructure and... ...role involves designing, automating, securing, and operating highly available systems... ...and business continuity capabilities; execute upgrades, migrations, patching,...SeniorFull timeFlexible hours$125k - $145k
## Senior Systems EngineerApplylocations: GRI - IL - Chicago - 3940 N Ravenswood... ...Role?**The Senior Systems Engineer is a hands-on technical... ...role designs, automates, secures, and operates highly available... ..., and runbooks.* Plan and execute upgrades, migrations, patching...SeniorRemote work$130k - $180k
Senior Application Security Engineer Passionate about precision medicine and advancing the... ...made it possible for AI to impact clinical care in... ...security of our internal systems and software medical device... ...principles. Key Responsibilities Execute advanced black-box and...Senior- Senior AI Engineer / Agent Development Lead The Senior AI Engineer / Agent... ...central guardrails, federated execution, and portfolio-driven... ...improve speed, consistency, security, and maintainability across... ...collaboration tools, workflow systems, APIs, and knowledge repositories...SeniorHourly payFull timePart time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to AI Systems Engineer - Secure Execution - Senior. Be the first to apply!
- ai engineer Chicago, IL
- ai engineer remote Chicago, IL
- ai prompt engineer Chicago, IL
- ai developer Chicago, IL
- senior ai engineer Chicago, IL
- machine learning ai engineer Chicago, IL
- ai ml engineer Chicago, IL
- healthcare systems engineer Chicago, IL
- mission system engineer Chicago, IL
- senior linux systems engineer Chicago, IL


