AI Systems Engineer - Secure Execution - Senior
$106.9k - $200.6kErnst & Young
Location: Anywhere in Country
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
The opportunity
We are seeking AI Systems Engineers to own the security and trust fabric of EY’s AI-native platform, comprising the identity, secrets, cryptographic, and attestation layer that makes agentic AI workloads deployable in highly regulated environments. This role owns the enforcement mechanisms that allow EY to prove every workload is identity-bound, every secret is protected, every node is trusted, and every deployment is attestable and audit-ready.
This is the strategic differentiator of the platform. The ability to deploy AI workloads in regulated industries and prove they are secure, economically bounded, and auditable depends on the trust fabric this role builds. It is the technical enforcement layer behind the AI Integrity / Security control authority and much of the platform’s governance capabilities, spanning consistently across cloud, on-prem, edge, and air-gapped environments.
Your key responsibilities
- Own workload identity and secrets management: SPIRE/ODIS, Keycloak/Entra ID (IAM), OpenBao (secrets store), cert-manager (X.509 lifecycle), PKI issuers/roots, and transit encryption — propagated consistently across every environment and tenant.
- Build confidential compute environments: TEE (TDX/SEV-SNP/SGX/TrustZone/CCA/NVIDIA CC), Intel TXT boot security, and secure DPU architecture (DOCA), so environments are isolated, attestable, and audit-ready.
- Establish the platform-wide identity model so every workload, agent, and service carries a verifiable, propagated identity that flows through telemetry, cost attribution, and policy enforcement end-to-end.
- Own the cryptographic lifecycle: issuance, rotation, revocation, and expiry of certificates, keys, and roots, with zero manual, untracked secrets and no long-lived credential sprawl across tenants.
- Enforce attestation policy: which nodes, enclaves, and workloads are trusted, how trust is proven at boot and at runtime, and how attestation evidence is captured for audit.
- Partner on a dotted-line basis with Enterprise Security / Cloud Platform / SRE to ensure independent review, alignment to enterprise trust standards, and audit readiness in regulated client contexts.
Skills and attributes for success
- Deep expertise in workload identity, secrets management, PKI, and cryptographic lifecycle at production scale across multiple environments.
- Strong understanding of confidential compute, trusted execution environments, hardware roots of trust, and remote attestation.
- A security-first mindset: thinking in terms of provable trust, blast radius, least privilege, and cryptographic attribution rather than perimeter or convenience.
- Ability to encode trust and compliance directly into infrastructure so that security is enforced by the platform, not by manual review.
- Comfortable operating across cloud, on-prem, edge, and air-gapped environments with consistent identity and trust mechanisms.
- Strong communicator able to explain trust, identity, and attestation tradeoffs to engineers, architects, auditors, and leadership.
- Orientation toward auditability and evidence: able to translate regulatory expectations into technical controls and demonstrable proof.
To qualify you must have
- Bachelor’s or Master’s degree in Computer Science, Security, or related technical field, or equivalent experience.
- 8+ years in security engineering, identity/PKI, or trust infrastructure, with hands-on production ownership.
- Deep, hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets management (OpenBao/Vault).
- Strong grounding in PKI, X.509 certificate lifecycle (cert-manager), key management, and transit encryption.
- Working experience with confidential compute and hardware attestation (TDX, SEV-SNP, SGX, NVIDIA CC, or equivalents) and secure boot (Intel TXT).
- Experience delivering identity and secrets consistently across multi-tenant, multi-environment (cloud/on-prem/edge/air-gapped) platforms.
- Proven track record operating under compliance, security, or regulatory constraints with audit-grade evidence requirements.
- Ability to define clean ownership boundaries and consumption contracts with platform, data, and runtime teams.
Ideally, you’ll also have
- Familiarity with secure DPU architectures (DOCA) and hardware root-of-trust / boot-chain designs.
- Experience integrating identity and attestation into service mesh, policy engines (OPA), and API gateways.
- Exposure to AI/ML workloads and the specific trust challenges of confidential AI inference (models/secrets inside enclaves).
- Experience producing attestation and compliance evidence for external auditors or regulators.
- Relevant certifications (e.g., CISSP, cloud security specialties) or demonstrable equivalent depth.
- Exposure to regulated industries (financial services, tax, healthcare, risk).
What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
- We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $106,900 to $176,500. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $128,400 to $200,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
- Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
- Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on aiapply.co.
$106.9k - $200.6k
...opportunity We are seeking an AI Systems Engineer to own the delivery, model-... ...and deployed, how models execute, how requests are routed to... ...environments. Works with senior engineers to test and develop... ...pipelines that ship AI workloads, secure model execution, semantic...SeniorFull timeSummer holidayFlexible hours- WebMD is seeking a highly skilled Infrastructure & AI Systems Engineer to manage the full enterprise IT stack, architect AI integrations, and ensure secure, well-governed deployments across Windows Server, cloud services, and enterprise identity controls. The role blends...Senior
$106.9k - $200.6k
...working world. The opportunity We are seeking an AI Systems Engineer to own the stateful backbone of EY’s AI-native platform, including... ...track record operating data systems under compliance, security, or regulatory constraints, including data-at-rest and in-transit...SeniorFull timeSummer holidayFlexible hours$125.5k - $261.6k
...The opportunity We are seeking AI Systems Engineers to build and operate the foundational... ...Management, so downstream runtime, data, and execution services can run safely and... ...capacity per tenant and engagement. Own secure execution and inference: Ray Serve, vLLM...SuggestedFull timeContract workSummer holidayFlexible hours$117.5k - $235.7k
...nation's premier science and engineering lab for national security and technology innovation,... ...are seeking a motivated AI engineer to join... ...embedded processors, real-time systems, and FPGA-based architectures... ...algorithms for real-time execution on resource-constrained hardware...SeniorPart timeRemote workWork from homeWorldwideRelocationRelocation packageFlexible hours$144k - $374k
...opportunity We are seeking a senior, hands-on Distinguished Engineer to lead the delivery of AI-native systems into highly regulated... ...Engineering, Systems Design, Security, Compute, Data, Networking,... ...transform field observations into executive-ready recommendations,...SeniorFull timeTemporary workSummer holidayImmediate startFlexible hours$144k - $374k
...opportunity We are seeking a senior, hands-on Distinguished Engineer to lead the delivery of AI-native systems into highly regulated... ...Engineering, Systems Design, Security, Compute, Data, Networking,... ...transform field observations into executive-ready recommendations,...SeniorFull timeTemporary workSummer holidayImmediate startFlexible hours$120k - $202.5k
...'s Cyber Data & Analytics (CyberDNA) team is seeking a Senior AI Security Automation Engineer to help shape the next generation of cybersecurity data... ...security workflowsDesign and build production-grade AI systems including agents, skills, memory patterns, guardrails,...SeniorFull timeTemporary workWork at officeLocal areaFlexible hoursShift work2 days per week- Compatible Technology Solutions, Inc. seeks a Space Systems Engineer to provide advanced engineering support across the full lifecycle for... ...integration of space-based capabilities within CAPs/SAPs and secure architectures for classified DoD/IC environments. Responsibilities...Senior
- Scientific Research Corporation is seeking a Systems Engineer to ensure the operational functionality of system releases, collaborating with... ...stakeholders, development and support teams to integrate secure capabilities. The role requires a Bachelor’s degree in engineering...Senior
$102.5k - $187.9k
...Senior Consultant In Risk Technology Location: New... ...GRC), EY is seeking SAP Security and GRC professionals... ...applications Ability to execute defined tasks... ...computer science, information systems, information security,... ...technologies such as BTP, SAC, AI, or RPA What we...SeniorSummer holidayFlexible hoursShift work- Bcore in Warrenton and Tysons, VA seeks a highly accomplished Systems Engineer to support mission services for government and client... ...environments. This hands-on role spans cloud and on-prem architectures, security, and DevSecOps across diverse platforms. You will lead design...Senior
- ...Defense Analyses (IDA) in Princeton, NJ seeks an experienced Systems Engineer with deep Red Hat Linux expertise to update, expand, and maintain... ...in this role. The ideal candidate will design, deploy, and secure systems ensuring high availability while coordinating with IT...Senior
- Sandia National Laboratories is seeking a multidisciplinary R&D Systems Security Engineer for the Nuclear Enterprise Assurance program, to lead secure product realization for high-consequence national security systems. The role requires designing, developing, and sustaining...Senior
$141 - $180 per hour
...President, Global Red Team & AI Security Operations leads... ...advanced attack execution, AI red teaming, and operator... ...with defensive, engineering, and governance teams.... ...testing of AI and LLM systems (e.g., prompt injection... ...ReportingAssist in developing senior and junior red team...SeniorFull timeWork at officeLocal areaRemote work1 day per week$149 per hour
....MUFG Trade Finance Software Engineering, Vice PresidentWe are seeking... ...engineering, integration, data, cloud, security, and platform modernization.... ...judgment, and practical AI and generative AI experience.... ..., target-state designs, and executable engineering plans.Design and...SeniorFull timeWork at officeLocal areaRemote work1 day per week$102.4k - $199.7k
...nation's premier science and engineering lab for national security and technology innovation,... ...a multidisciplinary R&D Systems Security Engineer to lead... ...clearly with technical and senior stakeholders; and help... ...assurance capabilities, and AI‑enabled analytic methods....SeniorPart timeRemote workWork from homeWorldwideRelocation packageFlexible hours- ...Job Description Role: Senior AI Software Engineer (Agentic AI / AI Agents)... ...production-grade Agentic AI systems . The ideal candidate should... ...Generation (RAG), and secure enterprise AI solutions.... ...usage, and multi-step task execution. Develop reusable AI Agent...SeniorTemporary work
$182k - $242k
...is The Essential Cloud for AI. Built for pioneers by pioneers... ...skilled and motivated Senior Systems Engineer, Legal Systems to build and... ...Finance, Sales, GTM, Procurement, Security, and IT to design, implement... ...and negotiation through execution, storage, and renewal.Build...SeniorPermanent employmentFull timeContract workTemporary workCasual workWork at officeFlexible hours$130k - $150k
AI Systems Engineer Founded in 1994, Integrated Medical Systems, Inc. (IMS) is one of the nation’s... ...world data and business tools—creating secure, reliable, and scalable AI agents that... ...Choose the right model for the task Execute workflows reliably Provide accurate, traceable...Flexible hours- HackerOne is seeking a Senior GTM Systems & Process Engineer to modernize the revenue engine. You will design and scale Salesforce and GTM processes, architecting workflows and AI-enabled automations to improve speed, accuracy, and scalability across opportunity creation...SeniorRemote work
- ...We Are Collaboration.Ai is a mission-focused... ...This is a hands-on execution seat on a small, senior team. You’ll own complete... ...Build resilient systems - structured logging... ...-level and junior engineers through code reviews... ...tracing), OpenTelemetry Security: AWS KMS, AWS...SeniorContract work
- ...Chase is seeking a senior technology leader to drive multi-department AI-enabled engineering initiatives and SDLC/TLM automation. You will partner with executives to set governance, security, and delivery standards, while guiding large cross-functional teams toward firmwide...Senior
$140k - $150k
...________________The NBA is hiring a Senior Site Reliability Engineer (SRE) - Messaging & Collaboration to... ...Microsoft Exchange Online (M365), email security, Slack, and Microsoft Teams.This is... ..., high‑touch support for the NBA Executive Leadership Team, requiring professionalism...SeniorFull timeTemporary workLocal areaRemote workWeekend work$153k - $297k
...currently seeking an Associate Director, AI Security Frontier Engineering to join our Enterprise Security... ...expertise securing AI/ML or LLM systems and executing adversarial testing (targeting... ...engineering teams and non-technical senior stakeholdersApplicants must be authorized...H1bLocal area$145.05k - $246.58k
...Systems EngineerThank you for your interest in BAE Systems! This... ...September 2026 Defense Electronics Engineering Hiring Event. While we... ...technologies and national security services. We offer a flexible... ...Risks and Opportunities and executing on mitigation strategiesIdentification...SeniorFull timeLocal areaFlexible hours$87.1k - $157.45k
...Job Description Leidos is seeking a Senior Systems Engineer to support the U.S. Coast Guard (USCG... ...Coast Guard CG-TECH-TRT organization in executing enterprise digital transformation,... ...Retirement. More details are available at Securing Your Data Beware of fake employment...SeniorLocal areaImmediate start$128.1k - $239.6k
EY is looking for a skilled Information Security Consultant in Secaucus, New Jersey, to join... ...security controls across cloud-based systems and enabling innovation through new technologies... ...possess strong hands-on experience in AI and blockchain security, agile...Senior- Edgewater Federal Solutions seeks a Sr. Systems Engineer to lead the migration of the client’s on-prem IronPort to Proofpoint cloud-based security. The engineer will plan and execute a seamless transition with minimal disruption to enterprise email services. Based onsite...Senior
- Yusen Logistics (Americas) seeks a Systems Architect to lead the design and evolution of... ...guiding a multi-site team with deep technical execution and architectural vision. You will own... ..., while ensuring high availability, security, and cost-effectiveness across environments...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to AI Systems Engineer - Secure Execution - Senior. Be the first to apply!
- healthcare systems engineer Secaucus, NJ
- computer system validation engineer Secaucus, NJ
- systems engineer Secaucus, NJ
- senior application security Secaucus, NJ
- senior cloud data engineer Secaucus, NJ
- senior Secaucus, NJ
- senior customer success engineer Secaucus, NJ
- senior property accountant Secaucus, NJ
- senior operations technician Secaucus, NJ
- senior robotics software engineer Secaucus, NJ


