AI Systems Engineer - Secure Execution - Senior
$106.9k - $200.6kErnst & Young
Location: Anywhere in Country
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
The opportunity
We are seeking AI Systems Engineers to own the security and trust fabric of EY’s AI-native platform, comprising the identity, secrets, cryptographic, and attestation layer that makes agentic AI workloads deployable in highly regulated environments. This role owns the enforcement mechanisms that allow EY to prove every workload is identity-bound, every secret is protected, every node is trusted, and every deployment is attestable and audit-ready.
This is the strategic differentiator of the platform. The ability to deploy AI workloads in regulated industries and prove they are secure, economically bounded, and auditable depends on the trust fabric this role builds. It is the technical enforcement layer behind the AI Integrity / Security control authority and much of the platform’s governance capabilities, spanning consistently across cloud, on-prem, edge, and air-gapped environments.
Your key responsibilities
- Own workload identity and secrets management: SPIRE/ODIS, Keycloak/Entra ID (IAM), OpenBao (secrets store), cert-manager (X.509 lifecycle), PKI issuers/roots, and transit encryption — propagated consistently across every environment and tenant.
- Build confidential compute environments: TEE (TDX/SEV-SNP/SGX/TrustZone/CCA/NVIDIA CC), Intel TXT boot security, and secure DPU architecture (DOCA), so environments are isolated, attestable, and audit-ready.
- Establish the platform-wide identity model so every workload, agent, and service carries a verifiable, propagated identity that flows through telemetry, cost attribution, and policy enforcement end-to-end.
- Own the cryptographic lifecycle: issuance, rotation, revocation, and expiry of certificates, keys, and roots, with zero manual, untracked secrets and no long-lived credential sprawl across tenants.
- Enforce attestation policy: which nodes, enclaves, and workloads are trusted, how trust is proven at boot and at runtime, and how attestation evidence is captured for audit.
- Partner on a dotted-line basis with Enterprise Security / Cloud Platform / SRE to ensure independent review, alignment to enterprise trust standards, and audit readiness in regulated client contexts.
Skills and attributes for success
- Deep expertise in workload identity, secrets management, PKI, and cryptographic lifecycle at production scale across multiple environments.
- Strong understanding of confidential compute, trusted execution environments, hardware roots of trust, and remote attestation.
- A security-first mindset: thinking in terms of provable trust, blast radius, least privilege, and cryptographic attribution rather than perimeter or convenience.
- Ability to encode trust and compliance directly into infrastructure so that security is enforced by the platform, not by manual review.
- Comfortable operating across cloud, on-prem, edge, and air-gapped environments with consistent identity and trust mechanisms.
- Strong communicator able to explain trust, identity, and attestation tradeoffs to engineers, architects, auditors, and leadership.
- Orientation toward auditability and evidence: able to translate regulatory expectations into technical controls and demonstrable proof.
To qualify you must have
- Bachelor’s or Master’s degree in Computer Science, Security, or related technical field, or equivalent experience.
- 8+ years in security engineering, identity/PKI, or trust infrastructure, with hands-on production ownership.
- Deep, hands-on expertise with workload identity (SPIRE/SPIFFE), IAM (Keycloak/Entra ID), and secrets management (OpenBao/Vault).
- Strong grounding in PKI, X.509 certificate lifecycle (cert-manager), key management, and transit encryption.
- Working experience with confidential compute and hardware attestation (TDX, SEV-SNP, SGX, NVIDIA CC, or equivalents) and secure boot (Intel TXT).
- Experience delivering identity and secrets consistently across multi-tenant, multi-environment (cloud/on-prem/edge/air-gapped) platforms.
- Proven track record operating under compliance, security, or regulatory constraints with audit-grade evidence requirements.
- Ability to define clean ownership boundaries and consumption contracts with platform, data, and runtime teams.
Ideally, you’ll also have
- Familiarity with secure DPU architectures (DOCA) and hardware root-of-trust / boot-chain designs.
- Experience integrating identity and attestation into service mesh, policy engines (OPA), and API gateways.
- Exposure to AI/ML workloads and the specific trust challenges of confidential AI inference (models/secrets inside enclaves).
- Experience producing attestation and compliance evidence for external auditors or regulators.
- Relevant certifications (e.g., CISSP, cloud security specialties) or demonstrable equivalent depth.
- Exposure to regulated industries (financial services, tax, healthcare, risk).
What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
- We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $106,900 to $176,500. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $128,400 to $200,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
- Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
- Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at View email address on aiapply.co.
$106.9k - $200.6k
...opportunity We are seeking an AI Systems Engineer to own the delivery, model-... ...and deployed, how models execute, how requests are routed to... ...environments. Works with senior engineers to test and develop... ...pipelines that ship AI workloads, secure model execution, semantic...SeniorFull timeSummer holidayFlexible hours$163.2k - $220.8k
...achievement and career growth. Wilson Sonsini is looking for a Senior AI Security Engineer to join the Security Operations team. The Senior AI... ...one of the world’s leading law firms builds and deploys AI systems with security and trust at their core. This role is designed...SeniorFull timeWork experience placementRemote workWorldwideShift work$106.9k - $200.6k
...working world. The opportunity We are seeking an AI Systems Engineer to own the stateful backbone of EY’s AI-native platform, including... ...track record operating data systems under compliance, security, or regulatory constraints, including data-at-rest and in-transit...SeniorFull timeSummer holidayFlexible hours$201k - $276k
..., MASoftware - Software Systems /Full-time /HybridThe Product Security Threat Analysis and Security... ...background in systems engineering, coupled with a... ...deliverablesPragmatic adoption of AI/LLM toolchains for... ...fast-moving and highly execution-oriented team.Follow us...SeniorFull timeTemporary workRelocation package- NewsBreak is seeking a Senior Talent Partner, AI & Engineering, to shape the teams building our future. You will work directly with senior leaders to... ...based at our Mountain View headquarters, requiring strong executive presence and resilience in a competitive market. #J-18...SeniorWork at officeMonday to Friday
$201.3k - $352.3k
...DescriptionIt all started when engineer Fred Luddy wrote code... ..., ServiceNow is the AI control tower for... ...enterprise-scale search systems that power Now Assist,... ...commoditizing. Context and execution are not. With 100B+... ...across IT, CRM, HR, and Security. Action Fabric opening...SeniorWork experience placementWork at officeImmediate startRemote workFlexible hours- ...technology support to our Executive Leadership. You will... ..., more resilient systems and leveraging automation... ...through automation and AI, ensuring our... ...marketing, publishing, security, and player experience... ...white-glove service and engineering excellence. You thrive...SeniorFull timeLocal areaRemote workWorldwide
- ...the best job for you. Role: Senior Agentic AI Engineer (Palo Alto Networks Ecosystem)... ...centered on Orchestration -building systems that can reason, plan, and execute multi-step tasks across complex networking and security environments. Key Responsibilities...SeniorPermanent employmentContract workRemote work
- MetAntz, a fast-moving AI startup in Palo Alto, seeks experienced software engineers who thrive in ambiguity and want to own end-to-end services from design to production... ...frontends, backends, and cloud-native distributed systems, delivering reliable APIs and scalable...Senior
- ServiceNow seeks a senior backend/infrastructure engineer to build and operate evaluation and observability tooling for its enterprise AI agent platform. You will design runtimes for multi-... ...tracing, and building non-deterministic systems that yield meaningful evaluation...Senior
$180k - $255k
...Senior AI Performance Engineer San Jose, California, United States The era of... ...models that can be easily and securely fine-tuned using customer... ...between deep learning and systems performance, collaborating... ...for large-scale model execution. Publication record or...SeniorFull timeTemporary workLocal areaFlexible hours- Latitude AI is seeking a senior software engineer to architect and implement scalable AI software for autonomous driving. You will collaborate with ML, robotics, and systems teams to integrate algorithms and optimize performance on embedded platforms. The role requires...Senior
- NVIDIA AI is seeking a senior software engineer to design, build, and maintain AI-powered software infrastructure... ...reliability, performance, and security while leveraging Docker, Kubernetes... ...software engineering with distributed systems experience, and is proficient in data...Senior
- Affirm is building its own bank and this Senior Software Engineer role sits in the engineering team that runs it. You’ll ship core banking systems, data platform, and AI-enabled tooling on a small, autonomous squad, with exposure to bank leadership and a path to impact...SeniorRemote job
- ...areMoveworks is the Agentic AI Assistant platform... ...of their business systems through natural... ...’ Reasoning Engine and natural language... ...care deeply about secure access at scale? Making... ...not a blocker. As a Senior Identity & Access... ...reviews (UAR): Develop, execute and design a UAR...SeniorWork at officeRemote workFlexible hours
$125.5k - $261.6k
...The opportunity We are seeking AI Systems Engineers to build and operate the foundational... ...Management, so downstream runtime, data, and execution services can run safely and... ...capacity per tenant and engagement. Own secure execution and inference: Ray Serve, vLLM...Full timeContract workSummer holidayFlexible hours- ...Job Description: Senior AI Search & Agentic Systems Engineer Onsite - Santa Clara, CA W2 Position Name Required Python... ...Ensure best practices in code quality, testing, security, and CI/CD across all systems. Monitor, troubleshoot...Senior
$174k - $252k
Apply internal AI systems and Large Language Model (LLMs) to automate... ...discovery and improve security analysis across Pixel features... ...silicon and operating system engineering to implement secure designs... ...most secure smartphone. As a Senior Software Engineer, you will...SeniorFor contractors- ...d-Matrix, headquartered in Santa Clara, CA, seeks a Principal System Software Engineer for AI Inference Execution. You will join the software team to productize the AI compute engine's SW stack, developing deployment software and collaborating with ML, compiler, and hardware...Senior
$150k - $200k
...an artificial intelligence (AI) powered technology stack... ...Department of Defense.The Systems and Safety Engineering team at Kodiak is seeking an... ...Engineer to own the design and execution of Kodiak’s next-generation... ...fall under national security-related restrictions, Kodiak...SeniorTemporary workWork at officeVisa sponsorship$144k - $374k
...opportunity We are seeking a senior, hands-on Distinguished Engineer to lead the delivery of AI-native systems into highly regulated... ...Engineering, Systems Design, Security, Compute, Data, Networking,... ...transform field observations into executive-ready recommendations,...SeniorFull timeTemporary workSummer holidayImmediate startFlexible hours- Saviynt is seeking a Principal Software Engineer to join its AI Security team. You will design, implement, and release end-to-end workflows for AI security products across platforms like AWS and Google Cloud. The ideal candidate should have strong expertise in Java, Spring...Senior
- ...Chase & Co. in Palo Alto seeks a Senior Director of Software Engineering to shape the future of financial services by leading Data and AI platforms across multiple... ...leaders, and collaborate with executives to ensure scalable, secure software delivery in a global banking...Senior
$68.3k - $114.8k
...ResponsibilitiesIn this position...The Systems Engineering team provides end-to-end,... ...Language Models (LLMs) and AI assistants to enhance the speed... ...Ensure the on-time and rigorous execution of the Robustness Checklist process and secure necessary signoffs to minimize...SeniorImmediate start$153k - $179k
...are the rewards. The Security Platform team is... ...builds foundational systems such as secure data... ...infrastructure, and product engineering partners to ensure... ..., and emerging AI-driven use cases.As a Senior Software Engineer, you... ...requirementsDefine and execute the vision for...SeniorWork at officeFlexible hoursShift work3 days per week$200k - $235k
...Senior Security Application EngineerPalo Alto, California, United... ...Senior Application Security Engineer to lead the technical execution of our product security... ...services, key management systems (KMS), and advanced data... ...engagements.Secure next-generation AI-integrated applications...SeniorFull timeWork at officeWorldwide- ...JPMorganChase is seeking a Senior Director of Software Engineering to lead Data and AI platforms within the... ...manage stakeholders at the executive level, and shape governance, security, and resiliency standards... ...impact trading and financial systems. #J-18808-Ljbffr...Senior
$131.54k - $197k
...enterprise, cloud and AI, and carrier architectures... ...employees use, the systems we build, and the... ...expansion doesn't outpace our security controls: owning the... ....This is a hands-on engineering role on the Cyber Engineering... ...in both technical and executive or audit...Permanent employmentInternshipWork from home$152k - $208.5k
...global leader in materials engineering solutions used to... ...connect our world - like AI and IoT. If you want to... ...expertise in intricate systems, deciphering code, and... ...that agentic systems are secure, deterministic, and... ...implement a multi-agent execution environment with persistent...Full time- Velaura seeks a Senior Systems Administrator / IT Engineer to administer, secure, and improve enterprise infrastructure while delivering Tier 2/3 desktop engineering support. You will handle Linux servers, virtualization, cloud platforms, networking, identity, storage,...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to AI Systems Engineer - Secure Execution - Senior. Be the first to apply!
- machine learning ai engineer Palo Alto, CA
- ai developer Palo Alto, CA
- senior ai engineer Palo Alto, CA
- ai engineer Palo Alto, CA
- ai ml engineer Palo Alto, CA
- ai prompt engineer Palo Alto, CA
- ai engineer remote Palo Alto, CA
- system engineer remote Palo Alto, CA
- senior windows systems engineer Palo Alto, CA
- senior linux systems engineer Palo Alto, CA


