Senior AI Security Engineer
$94.2kHighmark Health
Company :
enGen
Job Description :
JOB SUMMARY
This job secures AI/ML, Generative AI, and agentic systems across the enterprise by designing, testing, and operating controls that protect these systems at scale in a regulated healthcare environment. They combine hands on adversarial testing, deep understanding of LLM and agent architectures, and production security expertise to prevent, detect, and contain AI driven risk involving PHI while advising engineering and security leadership on emerging AI threats and regulatory exposure.
ESSENTIAL RESPONSIBILITIES
Design, implement, and operate security controls for AI/ML, GenAI, and agentic systems — spanning model-level, data-level, and platform-level protections across Azure, GCP, AWS, and SaaS.
Engineer and enforce guardrails that mitigate prompt injection, unsafe outputs, unauthorized tool execution, data leakage, and insecure agentic workflow behavior, with explicit focus on PHI/PII exposure.
Design and execute AI red-team exercises targeting LLMs and AI agents including prompt injection (direct and indirect), jailbreaking, tool and memory poisoning, behavioral drift, unsafe autonomy, and emergent privilege escalation.
Analyze agent logic, tool graphs, and multi-step workflows to identify systemic security weaknesses beyond prompt-level attacks; translate findings into reusable attack libraries and actionable engineering fixes.
Build and maintain monitoring, logging, and alerting for AI systems covering prompt behavior, tool invocation patterns, output anomalies, and workflow execution — and implement detection content for policy-violating AI behavior.
Embed security controls into CI/CD pipelines and agentic delivery workflows; partner with AI platform, data engineering, and application teams to integrate security requirements from design through deployment gate.
Apply NIST AI RMF, MITRE ATLAS, and OWASP LLM Top 10 to assess and manage AI security risks; contribute to enterprise AI security standards, reference architectures, and governance policy; advise leadership on AI cybersecurity risk and regulatory considerations specific to healthcare AI deployment.
Other duties as assigned or requested.
EXPERIENCE
Required
5 years of experience in Cybersecurity engineering, application security, or platform security
3 years of experience in AI/ML or Generative AI security (prompt injection defense, unsafe output handling, tool-use abuse, data leakage)
Preferred
5 years of experience in Securing production systems in enterprise environments
3 years of experience in Hybrid multi-cloud security (Azure, GCP, AWS)
2 years of experience in Detection engineering, monitoring, and alerting for complex application or workflow environments
2 years of experience in AI red-team execution (jailbreaking, behavioral drift, misuse-case validation; tools such as PyRIT, Promptfoo, AgentDojo
2 years of experience in Securing agentic systems, multi-step AI workflows, or tool-calling architectures
2 years of experience in Highly regulated industry (healthcare, financial services) with HIPAA or equivalent compliance obligations
1 year of experience in Identity, access management, secrets handling, and runtime policy enforcement for AI workloads
SKILLS
Deep working knowledge of AI/LLM security risks: prompt injection, unsafe outputs, tool-use abuse, data leakage, identity misuse, and agentic workflow escalation
Hands-on proficiency with AI security frameworks: NIST AI RMF, MITRE ATLAS, OWASP LLM Top 10
Cloud security fluency across Azure, GCP, and AWS, including native security tooling (Defender for Cloud, Wiz, GCP SCC)
Adversarial testing experience with AI red-team tooling (PyRIT, Promptfoo, AgentDojo, or custom harnesses)
Detection engineering — building monitoring logic, alerting pipelines, and telemetry for AI system behavior
Proficiency in Python (or equivalent) for security automation, test harness development, and pipeline integration
Secure API design, access controls, secrets management, and environment-based deployment controls for AI workloads
HIPAA data handling requirements and PHI/PII protection considerations in AI pipelines and agentic workflows
Strong written and verbal communication — capable of producing technical findings, remediation guidance, and executive security narratives
Ability to operate effectively as a senior individual contributor in a large, matrixed healthcare organization
EDUCATION
Required
- Bachelor’s degree in Computer Science, Computer Engineering, Information Technology, Cybersecurity, or closely related discipline or relevant experience and/or education as determined by the company in lieu of bachelor's degree.
Preferred
- Master's degree in Cybersecurity, Computer Science, or a related field
LICENSES or CERTIFICATIONS
Required
- None
Preferred
Certified Information Security Professional (CISSP)
AWS Certified Security Specialty, Microsoft AZ-500, or Google Professional Cloud Security Engineer
AI security credentials or coursework (SANS AI Security, NIST AI RMF practitioner training)
Language (Other than English):
None
Travel Required:
0% - 25%
PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS
Position Type
Office-Based or Remote Position
Physical work site required
Occasionally
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.
As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.
Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Pay Range Minimum:
$94,200.00
Pay Range Maximum:
$151,000.00
Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations. The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Req ID: J282128
- ...Senior AI Security Software Engineer The CERT Division of the Software Engineering Institute (SEI) is seeking applicants for the role of Senior AI Security Software Engineer. Established in response to the Morris worm, CERT has been a leader in cybersecurity research...SeniorFull timePart timeRelocation packageFlexible hours
$168k - $230k
...the ultimate goal of enabling human life on Mars. SR. AI SECURITY SOFTWARE ENGINEER (STARSHIELD) Starshield leverages SpaceX’s Starlink technology... ...BENEFITS: Pay Range: Security Software Engineer /Senior: $168,000.00 - $230,000.00/per year Your actual level...SeniorPermanent employmentTemporary workImmediate startFlexible hoursWeekend work- ...the U.S. Department of State's Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical role in refining... ...Security. Demonstrated track record of engagement with senior-level DS personnel and contract leadership....SeniorContract workWork at office
$40 per hour
A cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This role allows flexibility, as you can work remotely at your own schedule on hourly paid projects starting at $40+. Ideal candidates...SuggestedHourly payRemote work- ...Opportunity We are building an elite AI Red Team to stress-test and harden enterprise... ...adversarial machine learning, enterprise security architecture, and governance. You will... ...security controls Partner closely with engineering, security, and compliance functions...Suggested
$40 per hour
A cybersecurity solutions provider is seeking experienced professionals to evaluate AI-generated security content and solve technical problems. Preferred candidates will have 2+ years in cybersecurity, some coding experience, and strong writing skills. This role offers...Hourly payRemote work$40 per hour
A progressive technology firm is seeking experienced cybersecurity professionals to train AI models. This remote position involves evaluating AI-generated security content and solving technical problems related to cybersecurity. The ideal candidate will have over 2 years...Hourly payRemote workFlexible hours$40 per hour
A leading AI cybersecurity company is seeking experienced cybersecurity professionals for a remote position. You will evaluate AI-generated security content and solve technical problems in cybersecurity. Ideal candidates should have over 2 years of experience in areas...Remote workFlexible hours$40 per hour
A cybersecurity technology firm is seeking experienced cybersecurity professionals to evaluate AI-generated content and solve technical security problems. This role offers flexible remote work options, allowing you to choose your projects and schedule. Candidates should...Hourly payRemote workFlexible hours$40 per hour
A leading technology firm is seeking experienced cybersecurity professionals to evaluate AI-generated security content and provide feedback for improving AI systems. This remote position offers flexibility in project selection, with an hourly pay starting at $40+. Candidates...Hourly payRemote work- A technology development firm is seeking an AI Engineer - Level III to work in Washington, D.C., with remote options available. This role focuses on developing AI-driven solutions and collaborating with various teams to enhance automation. Candidates must have 8-12 years...SeniorRemote work
- A prominent tech solutions provider in the DC area is seeking a Sr. Managed Services Engineer specializing in AI & Copilot. The engineer will support, design, and manage solutions within the customer’s managed platforms while ensuring optimal performance. A dedicated home...SeniorRemote workHome office
- ...metro area. Please ensure you can realistically commit to this structure before applying. Position Summary The Staff AI Security Engineer is a strategic individual contributor role responsible for advancing BetterUp's product and application security posture across...Work experience placementSummer holidayLive outWork at officeLocal areaFlexible hours2 days per week
$114.6k - $190.2k
...Enterprise Ai Security Engineer Elevate your career with MANTECH International Corporation! Join a dynamic team dedicated to national security through cutting-edge technology. Since 1968, MANTECH has led in delivering advanced solutions to government intelligence,...Hourly payContract workTemporary workWork experience placementWork at officeLocal areaRemote work$40 per hour
...cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems,... ..., red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or...Hourly payFull timePart timeRemote work- ...AI-focused Senior Software Engineer (path to Staff Engineer) The Tight Embedded Accounting HQ is in Washington, DC, in the renowned Dupont Circle neighborhood, directly across the street from the Dupont Circle Metro Station. We are in our high-energy office 5 days a...SeniorWork at office
- 4256 Senior Network Security Engineer 4256 | US Citizen Job Description: OVERVIEW: We are seeking a highly skilled and experienced Sr. Network Security Engineer to support a federal law enforcement customer in Washington, D.C. The ideal candidate will...Senior
- ...Hybrid - 3 days in office with travel as required) Clearance: Must be eligible to obtain a DoD security clearance The Role We are seeking a Senior Security Engineer to strengthen cloud and software environments, ensuring compliance with U.S. government...SeniorWork at office
- ...leading defense technology company is seeking an experienced AI Engineer in Bethesda, Maryland. The role involves working with mission... ...competitive benefits including paid time off and training support. Join us and make a difference in National Security! #J-18808-Ljbffr Leidos
- ...We are in search of a highly motivated candidate to join our talented Team. Job Title: Senior Identity, Credential, and Access Management (ICAM) Security Engineer Location: Washington, DC Responsibilities: Support the deployment and management of...SeniorWork at office
- ...Senior AI Engineer Washington D.C. / New York Senior AI Engineer Hybrid - Washington D.C. (preferred) or New York, NY About The Role We are seeking a highly motivated and innovative Senior AI Engineer to join our brilliant team of analytics professionals...SeniorFlexible hours
- ...Senior AI Engineer CLA is a top 10 national professional services firm where our purpose is to create opportunities every day, for our... ...Functional Collaboration Partner with product, engineering, security, and business stakeholders Support solution design,...SeniorFlexible hours
- ...As a Sr. Network Security Engineer III, you'll provide hands-on expertise securing mission-critical networks for a high-visibility customer with the goal of making an impact across the federal government. Our team is responsible for designing, operating, and hardening...SeniorImmediate start
- ...A dynamic tech solutions firm is seeking a Senior Data / AI Engineer to enhance a Government-owned digital twin application. The engineer will be responsible for the full data lifecycle, including data ingestion, validation, and AI integration. Ideal candidates will have...SeniorFull timeRemote work
- ...Senior Network & Security Engineer Through the continuing ingenuity, dedication and superior service of our employees through the years, Potters has grown into a $400 million global business. With approximately 900 employees contributing to our success every day in...SeniorRemote work
- Carnegie Mellon University is seeking an AI Security Software Engineer to join their Software Engineering Institute in Arlington, VA. In this role, you will develop machine learning-based systems, collaborate with researchers, and tackle critical challenges in AI security...
- ...Title: Senior Security Engineer Location : Arlington, VA Duration: 12 months Enterprise Security Architecture and Innovation works to ensure that enterprise-wide technologies are secure, by design, to protect and enable the business. This team provides advisory...Senior
- ...service IT Infrastructure Solutions Company focused on building, securing and supporting our clients' mission critical enterprises.... ...supporting federal customers. We're seeking an experienced Senior Network Engineer who enjoys hands-on technical work, takes ownership of...SeniorPermanent employmentFull time
$40 per hour
...technology company is seeking experienced cybersecurity professionals for a remote position. In this role, you will evaluate AI-generated security content, solve technical problems, and provide feedback to shape AI systems. The ideal candidate has 2+ years in...Hourly payRemote workFlexible hours- ...Senior IT Security Engineer Location: Hybrid 3 days on DC Interview Type: In-Person Number of Openings: 3 Short Description: IT Security Engineer *Hybrid position -- only submit local candidates to the DMV region* Complete Description: Strong understanding...SeniorWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior AI Security Engineer. Be the first to apply!
- machine learning ai engineer Washington DC
- ai engineer remote Washington DC
- ai prompt engineer Washington DC
- ai developer Washington DC
- ai engineer Washington DC
- ai ml engineer Washington DC
- senior ai engineer Washington DC
- sr information security engineer Washington DC
- senior application security engineer Washington DC
- associate security engineer Washington DC

