Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Product Security Engineer, AI ML

Norstella

Senior Product Security Engineer, AI ML Company: Norstella Location: Remote, United States Date Posted: Sep 22, 2026 Employment Type: Full Time Job ID: R-2134 Description About Norstella: Norstella is a premier and critical global life sciences data and AI solutions provider dedicated to improving patient access to life-saving therapies. Norstella supports pharmaceutical and biotech companies across the full drug development lifecycle — from pipeline to patient. Our mission is simple: to help our clients bring therapies to market faster and more efficiently, ultimately impacting patient lives. Norstella unites market-leading brands - Citeline, Evaluate, MMIT, Panalgo, Skipta and The Dedham Group and delivers must-have answers and insights, leveraging AI, for critical strategic, clinical, and commercial decision-making. We help our clients:

  • Accelerate the drug development cycle
  • Assess competition and bring the right drugs to market
  • Make data driven commercial and financial decisions
  • Match and recruit patients for clinical trials
  • Identify and address barriers to therapies
Norstella serves most pharmaceutical and biotech companies around the world, along with regulators like the FDA, and payers. By providing critical proprietary data supporting AI-driven workflows, Norstella helps clients make decisions faster and with greater confidence. Norstella’s investments in AI are transforming how data is consumed and decisions are made, disrupting inefficient legacy workflows and helping the industry become more efficient, innovative, and responsive to patient needs. Job Description: Leads multi-product security efforts, develops the ProdSec team and mentors engineers, coordinating incident response, and shaping DevSecOps practices, with primary focus on securing Norstella's agentic SDLC platform (Forge) and its supporting knowledge-base ecosystem (Sage). This engineer owns the security posture of the autonomous AI agent chain end-to-end: the platform itself, the prompts and orchestration layer, the proprietary domain data the agents consume, and — critically — the source code the agents produce. Acts as the senior security partner to the Forge engineering team, embedding security guardrails into every phase of the autonomous SDLC (Intake → Architect → Threat-Modeling → Dev-Planning → Dev → QA) so that AI-generated code meets the same compliance, audit, and resilience standards as human-written code in HIPAA, GDPR, SOC 2, and FDA 21 CFR Part 11 environments. Responsibilities:
  • Leads threat modeling across complex architectures, including agent-to-agent communication graphs, tool-use surfaces, MCP server boundaries, and prompt/RAG pipelines, and mentors engineers in risk analysis practices.
  • Leads secure development training across product groups — including AI-assisted and AI-generated coding workflows — and evolves standards based on industry trends, OWASP LLM Top 10, and emerging agentic-AI threat research.
  • Leads vulnerability management for multiple products, setting priorities and ensuring timely resolution, and tunes the Forge Security Agent's SAST/SCA gating, severity thresholds, and triage-LLM classification logic to keep auto-remediation loops both effective and safe.
  • Leads supply chain risk assessments and drives API governance practices across product portfolios, with explicit ownership of the AI/ML supply chain — foundation model providers (Anthropic, others), Auth0, Snyk, Azure DevOps NPM feeds, vector databases, and the Sage KB seed data — including concentration-risk monitoring and contingency planning.
  • Leads security integration across CI/CD and multi-cloud platforms, mentoring engineers on automation, and ensures every agentic run produces a reconstructible audit trail sufficient to demonstrate reasonable judgment to SOC 2, HIPAA, GDPR, and Life Sciences auditors.
  • Technical IR lead overseeing cross-product incidents, coordinates disclosure processes, and advises leadership, including incidents involving prompt injection, model jailbreak, agent privilege escalation, sensitive data leakage from KB stores, and compromised AI-generated code reaching production.
  • Leads AI/ML model security practices across multiple teams and establishes safe design principles, including least-privilege tool-use, secrets handling for agent runtimes, PII/PHI sanitization in prompts and outputs, model-output validation, and red-team / adversarial-input programs targeting the Forge agent chain.
  • Leads SSDLC governance initiatives, mentors teams on embedding controls, and validates adherence across product lines, with explicit accountability for the agentic SSDLC: ensuring the Threat Model Production Agent's output is consumed downstream, that the Forge Security Agent's fail-open posture is risk-tiered appropriately, and that human-in-the-loop checkpoints are placed where judgment is genuinely required.
  • Designs and operates continuous security evaluation pipelines that benchmark agent runs across safety, compliance, and code-quality dimensions, surfacing regressions in real time.
  • Defines acceptance criteria and security guardrails for AI-generated code and agent outputs, ensuring policy compliance and alignment with business intent before production promotion.
  • Partners with Agentic Engineering to instrument observability, logging, and tracing across the full agent execution graph so every decision an agent makes is auditable, explainable, and defensible to regulators.
Qualifications:
  • Holds a BA/BS degree or equivalent experience; certifications such as CISSP, OSWE, or cloud security specialties preferred. AI/ML security credentials (e.g., AI Security Institute, MLSecOps, or equivalent) a strong plus.
  • Typically 4+ years of experience or equivalent leadership across multi-product security programs, with at least 1–2 of those years applied to AI/ML or LLM-powered systems in production.
  • Strong knowledge of managing SDLC risks across multiple teams and mentoring others in secure design, including agentic and AI-assisted SDLC patterns where code authorship is partially delegated to LLM agents.
  • Proficient in enterprise vulnerability management, guiding priorities and automation strategies, including LLM-mediated triage and auto-remediation loops.
  • Strong knowledge of integrating security into complex CI/CD and cloud environments, including containerized agent runtimes, GPU-accelerated inference endpoints, and serverless agent orchestration on AWS, GCP, or Azure.
  • Strong knowledge of secure development practices and setting engineering-wide standards.
  • Proficient in designing and reviewing encryption and data protection strategies.
  • Proficient in automation in product pipelines and mentoring teams on efficiency.
  • Proficient in AI/ML security governance across multiple teams, including OWASP LLM Top 10, prompt injection / jailbreak defense, RAG poisoning, model-output sanitization, and adversarial testing of agent chains.
  • Proficient in SSDLC governance, leading implementation and mentoring peers on embedding security into development processes, with demonstrated ability to apply SSDLC controls to non-deterministic, agent-driven development workflows.
  • Hands-on experience with LLM-powered applications (Claude, GPT-4, Gemini, Llama, or equivalent), including prompt engineering, function/tool calling, and chain-of-thought orchestration — sufficient to security-review them, not just consume them.
  • Working familiarity with at least one agentic framework or orchestration toolkit (LangGraph, CrewAI, Autogen, Semantic Kernel, MCP, or comparable), and the threat surface each one introduces.
  • Working knowledge of vector databases (Pinecone, Weaviate, Qdrant, pgvector) and retrieval-augmented generation patterns, with an eye to KB poisoning, retrieval leakage, and access-control failures.
  • Understanding of LLM evaluation methodologies — behavioral testing, hallucination detection, output grading, drift detection — applied to security and compliance properties of agent outputs.
  • Strong software engineering fundamentals in Python and/or TypeScript; able to read and contribute to production agent code, not just review it from a distance.
  • Compliance fluency in SOC 2, HIPAA, GDPR, and ideally FDA 21 CFR Part 11 — and the judgment to translate those frameworks into concrete controls for AI/ML and agentic systems.
  • Pharma, life sciences, or healthcare data experience (RWD/RWE, clinical trials, market access) is a strong plus given the Norstella product portfolio.
Our Guiding Principles for success at Norstella: 01: Bold, Passionate, and Mission-First 02: Integrity, Truth, and Reality 03: Kindness, Empathy, and Grace 04: Resilience, Mettle, and Perseverance 05: Humility, Gratitude, and Learning Benefits:
  • Medical and Prescription Drug Benefits
  • Health Savings Accounts (HSA) or Flexible Spending Accounts (FSA)
  • Dental & Vision Benefits
  • Basic Life and AD&D Benefits
  • 401k Retirement Plan with Company Match
  • Company Paid Short & Long-Term Disability
  • Paid Parental Leave
  • Paid Time Off & Company Holidays
Please Note - All candidates must be authorized to work in the United States. We do not provide visa sponsorship or transfers. We are not currently accepting candidates who are on an OPT visa. Norstella is an equal opportunity employer. All job applicants will receive equal treatment regardless of race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, physical or mental disability or handicap, medical condition, sex (including pregnancy and pregnancy-related conditions), marital or domestic partner status, military or veteran status, gender, gender identity or expression, sexual orientation, genetic information, reproductive health decision making, or any other protected characteristic as established by federal, state, or local law. Sometimes the best opportunities are hidden by self-doubt. We disqualify ourselves before we have the opportunity to be considered. Regardless of where you came from, how you identify, or the path that led you here- you are welcome. If you read this job description and feel passion and excitement, we’re just as excited about you. All legitimate roles with Norstella will be posted on Norstella’s job board which is located at norstella.com/careers. If a role is not posted on this job board, a candidate should assume the role is not a legitimate role with Norstella. Norstella is not responsible for an application that may be submitted by or through a third-party and candidates should proceed with extreme caution if a third-party approaches them about an open role with Norstella. Norstella will never ask for anything of value or any type of payment during or as part of any recruitment, interview, or pre-hire onboarding process. If you are aware of or have reason to believe a job posting purportedly for a role with Norstella is fraudulent or otherwise not authorized by Norstella, please contact the Company using the following email address: [email protected] . Norstella is an equal opportunity employer. All job applicants will receive equal treatment regardless of race, creed, color, religion, alienage or national origin, ancestry, citizenship status, age, physical or mental disability or handicap, medical condition, sex (including pregnancy and pregnancy-related conditions), marital or domestic partner status, military or veteran status, gender, gender identity or expression, sexual orientation, genetic information, reproductive health decision making, or any other protected characteristic as established by federal, state, or local law. Norstella

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Product Security Engineer, AI ML in Austin, TX vacancy
  •  ...discovery to powering AI and the technologies people...  ...bringing leading edge products to market, every role...  ...ROLE: AMD responds to security incidents in collaboration...  ...experienced software engineer who will be responsible...  ...Experience securing AI/ML workloads and GPU/accelerator... 
    Senior
    Work at office

    AMD

    Austin, TX
    1 day ago
  • $178.5k - $265.1k

     ...shopping simple, personalized, and secure, PayPal empowers consumers and businesses...  ..., PayPal and Venmo branded credit products, a credit card, a debit card,...  ...and our communities.Job Summary:As a Senior Staff Product Security Engineer, AI Security at PayPal, you'll help... 
    Senior
    Full time
    Work at office
    Local area
    Immediate start
    Flexible hours

    PayPal

    Austin, TX
    13 hours ago
  • $196k - $310.5k

     ...into the unlimited potential of AI to define the next era of...  ....We are seeking an Applied AI Engineer to lead end-to-end solution development...  ..., and engineering productivity.Build interpretable AI pipelines...  ...12+ years of experience in AI/ML solution development, ideally... 
    Senior
    Full time

    Nvidia

    Austin, TX
    3 days ago
  • $130.5k - $193.6k

     ...simple, personalized, and secure, PayPal empowers consumers...  ...PayPal and Venmo branded credit products, a credit card, a debit...  ...communities.Job Summary:As a Senior Product Security Engineer at PayPal, you'll help...  ...secrets, software supply chains, AI/LLM tools, and other... 
    Senior
    Full time
    Work at office
    Local area
    Immediate start
    Flexible hours

    PayPal

    Austin, TX
    2 days ago
  •  ...Senior Product Security Engineer Hybrid About Us At Cloudflare, we are on a mission to help build a better Internet. Today the company runs...  ...have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools... 
    Senior
    Temporary work
    Local area
    Flexible hours

    Cloudflare Inc

    Austin, TX
    4 days ago
  • $147k - $202.4k

    Senior Product Manager - AI EngineeringShowcasing excellence and innovation at every stage, Product Management is responsible for the cross-functional...  ..., or managing a backlog and reviewing stories with engineers. As a part of the Dell Technologies Office of the CTO, we... 
    Senior
    Start working today
    Work at office
    Flexible hours

    Dell Technologies

    Austin, TX
    1 day ago
  • $134.5k - $265.1k

     ...Cyber Forward Deployed Engineer (FDE), you will...  ...cybersecurity and AI-enabled solutions....  ...shaping, influencing product direction, and providing...  ...(e.g., application security, cloud security,...  ...familiarity with ML frameworks (TensorFlow...  ...level employees to senior leaders, we believe... 
    Senior
    Local area
    Visa sponsorship

    Deloitte

    Austin, TX
    13 hours ago
  • $133.9k - $200.9k

     ...require a bachelors degree in Electrical Engineering, Computer Science, Computer Engineering,...  .... We need a solid foundation in AI/ML concepts. We require proficiency in Python...  ...SystemVerilog Cisco REST Security Web More: We are Qualcomm Technologies... 
    Senior
    Full time
    Work from home

    Qualcomm

    Austin, TX
    2 days ago
  • $168k - $264.5k

    NVIDIA is seeking ASIC Design Engineers with experience in agentic AI to help design and implement the world's leading SoC's and GPU's. As part of NVIDIA...  ...in a dynamic, technology-focused company impacting product lines ranging from consumer graphics to self-driving cars... 
    Senior
    Full time
    Work experience placement

    Nvidia

    Austin, TX
    13 hours ago
  • $145.3k - $244.85k

    Product Security Engineer Overview SailPoint's Cybersecurity organization is seeking a Product Security...  ...organization's efforts to leverage AI across the team, as well as the use of...  ...Framework, Cybersecurity AI (CAI), Open SSF AI/ML Security Framework. Core Competencies... 
    Temporary work
    Remote work
    Flexible hours
    Shift work

    SailPoint Technologies Holdings, Inc.

    Austin, TX
    5 days ago
  •  ...Senior Security Engineer We are seeking an experienced Security Engineer to play a pivotal role in...  ...infrastructure - with a particular focus on AI/ML systems and emerging technologies. In...  ...and controls before they reach production. Conduct hands-on security assessments... 
    Senior
    Shift work

    Apple

    Austin, TX
    13 hours ago
  • $160.5k - $238.7k

     ...and shopping simple, personalized, and secure, PayPal empowers consumers and businesses...  ...balance, PayPal and Venmo branded credit products, a credit card, a debit card, certain...  ...Summary: As a Staff Product Security Engineer, AI Security at PayPal, you'll help protect... 
    Full time
    Work at office
    Local area
    Immediate start
    Flexible hours

    Paypal

    Austin, TX
    2 days ago
  •  ...and make us more connected, productive, and understanding of the...  ...performance computing, cloud, and AI. Whether you’re designing...  ...forward.THE ROLE: The Senior Product Development Engineer is responsible for product...  ...VS Code, data analytics, AI/ML techniques, and computer architecture... 
    Senior

    AMD

    Austin, TX
    4 days ago
  • $160.5k - $238.7k

     ...and shopping simple, personalized, and secure, PayPal empowers consumers and businesses...  ...balance, PayPal and Venmo branded credit products, a credit card, a debit card, certain...  ...Job Summary:As a Staff Product Security Engineer, AI Security at PayPal, you'll help protect... 
    Full time
    Work at office
    Local area
    Immediate start
    Flexible hours

    PayPal

    Austin, TX
    10 hours ago
  • $200k - $225k

     ...industry, join our team as we help shape a brighter way forward. The Senior Security Engineer, AI Enablement is Security's embedded, full-time representative on JLL's Falcon team, owning the product's security architecture for agents, MCP integrations, and identity end... 
    Senior
    Daily paid
    Full time
    Local area
    Immediate start
    Remote work

    JLL

    Austin, TX
    1 day ago
  •  ...Senior Application Security Engineer The Senior Application Security Engineer is responsible...  ...security architecture AI, Robotics, and Biomedical...  ...Assess the security of AI/ML models, data pipelines, and...  ...Collaborates Build productive working relationships with... 
    Senior
    Work at office

    The University of Texas at Austin Staff

    Austin, TX
    18 hours ago
  •  ...solutions harness the power of AI and shape the future of...  ...are key to the success of our products and technologies, that hundreds...  ...impact?ResponsibilitiesOwn the security architecture of TeamViewer's...  ...solutions that can be adopted across engineering teams.Secure the AI... 
    Senior
    Temporary work
    Casual work
    Worldwide

    TeamViewer

    Austin, TX
    4 days ago
  • $178.4k - $226.7k

    The Senior Security Engineer is a senior individual contributor responsible for independently driving...  ...Security Automation: Leverage generative AI and machine learning to build...  ...bar for security across all of Amazon’s products and services. We offer talented security... 
    Senior
    Internship
    Flexible hours

    Amazon

    Austin, TX
    4 days ago
  • Job Title: AI Application Security EngineerJob Position: AI Application Security EngineerRole SummaryThe AI Application Security Engineer at NXP Semiconductors will be responsible for securing AI-powered...  ...supporting or securing AI/ML/GenAI applications or platformsExperience... 
    Full time
    Work at office
    Local area

    NXP Semiconductors

    Austin, TX
    2 days ago
  •  ...WiproContact: Meghana GorusuCompany: SRI Tech SolutionsRole: Senior Applied AI Engineer - SFDLocation: Austin, TX or Sunnyvale, CA Fulltime or W2...  ...tooling: GitHub Actions, Jenkins, GitLab CI, ArgoCD, etc.AI/ML & Data Platform ExposurePractical experience supporting AI/ML... 
    Senior
    Full time

    SRI Tech

    Austin, TX
    13 hours ago
  • $198k - $247.5k

     ...Cloudera’s Forward Deployed Engineering (FDE) function sits within the Applied AI organization, and is a specialized AI/ML engineering team focused...  ...early prototype toward production readinessShape Enterprise...  ...to enterprise standards (security, governance, compliance,... 
    Senior
    Full time
    Remote work
    Work from home
    Relocation

    Cloudera

    Austin, TX
    13 hours ago
  • $100k

     ...industry on cutting-edge AI technology, revolutionizing...  ...for contributors of all seniorities.Our IP delivery timelines...  ...or CAD methodology engineer who has built flows that production teams depend on daily.Automation...  ...about where LLMs and ML-driven optimization genuinely... 
    Permanent employment

    Tenstorrent

    Austin, TX
    2 days ago
  • $168k - $264.5k

     ...tapping into the unlimited potential of AI to define the next era of computing....  ...NVIDIA is looking for best-in-class Senior Physical Design Methodology Engineer, PPA Fusion Compiler to join our...  ...experience to formulate and develop with ML-based solutionsParticipate in... 
    Senior
    Full time

    Nvidia

    Austin, TX
    3 days ago
  • $168k - $264.5k

     ...into the unlimited potential of AI to define the next era of...  ...looking for a physical design engineer to be a part of NVIDIA’s physical...  ...in PD across all of NVIDIA's products - Datacenter AI, HPC, Networking...  ...all our product linesUse AI/ML approaches to CAD to improve design... 
    Senior
    Full time
    Remote work

    Nvidia

    Austin, TX
    3 days ago
  •  ...increasingly sophisticated cyber and AI-driven threats, securing their AI transformation....  ...looking for an AI Security Engineer to join our Red Team and...  ...with our research and product teams to continuously level...  ...Knowledge Understanding of AI/ML model architectures,... 
    Worldwide

    Check Point Software Technologies

    Austin, TX
    1 day ago
  • $168k - $264.5k

     ...into the unlimited potential of AI to define the next era of...  ...a small group of high-impact engineers who define how that design process...  ...the hardest problems and ship production-quality solutions that shape NVIDIA...  ...experience applying AI/ML techniques in engineering workflows... 
    Senior
    Full time

    Nvidia

    Austin, TX
    13 hours ago
  •  ...make us more connected, productive, and understanding of...  ...computing, cloud, and AI. Whether you’re designing...  ...forward.Role OverviewThe Senior Manager, AI Power &...  ...platforms, build world-class engineering teams, and drive...  ...CorrelationStrong understanding of AI/ML frameworks, inference... 
    Senior

    AMD

    Austin, TX
    4 days ago
  •  ...Summary We’re looking for a senior engineer who can take Vi’s AI agent capabilities and make them work in production healthcare environments. You...  ..., data pipelines, AI/ML tooling, and the messy realities...  ...CI/CD, monitoring, and basic security practices. ~ Ability to work... 
    Senior
    Full time

    V.i. Labs

    Austin, TX
    more than 2 months ago
  • $164.47k - $269.1k

     ...Description: The Role and ImpactAs a Senior CPU Physical Design Engineer, you will play a critical role in...  ...that power client, data center, and AI-driven products. Your contributions will directly...  ...-to-GDS automation methodologiesAI/ML based automatic place-and-route methods... 
    Senior
    Full time
    Local area
    Immediate start
    Worldwide
    Shift work

    Intel

    Austin, TX
    13 hours ago
  • $161k - $242k

     ...InformationJob TitleSenior Offensive Security EngineerJob ID17996CityAustinState/ProvinceTexasDate...  ...(3)’. We AreSynopsys is the leader in engineering solutions from silicon to systems, enabling customers to rapidly innovate AI-powered products. We deliver industry-leading silicon... 
    Senior
    Permanent employment
    Live in
    Worldwide

    ANSYS

    Austin, TX
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Product Security Engineer, AI ML. Be the first to apply!