Principal AI Security Engineer
$123.3k - $221.95kUnivera Healthcare
Principal Artificial Intelligence (AI) Security Engineer
The Principal Artificial Intelligence (AI) Security Engineer serves as the technical lead for securing machine learning (ML), generative artificial intelligence (GenAI), and agentic systems in production, with emphasis on healthcare and other regulated environments. This role creates security architecture, threat modeling, control design, and detection strategy across the AI lifecycle, including data ingestion, feature engineering, training and fine-tuning, evaluation, model serving, retrieval-augmented generation (RAG) pipelines, agent frameworks, application programming interface (API) mediation, and post-deployment monitoring. The Principal AI Security Engineer leads and partners throughout the organization to build enforceable guardrails for protected health information and electronic protected health information handling, identity and access control, secrets isolation, model and dataset provenance, output safety, and evidence collection for audits and investigations.
Essential Accountabilities
- Creates reference architectures, defines security requirements and patterns for model training, inference, retrieval-augmented generation (RAG), agent orchestration, tool calling, and multi-model pipelines across cloud and hybrid environments.
- Performs deep threat modeling for artificial intelligence (AI) systems, including prompt injection, indirect prompt injection, insecure output handling, excessive agency, system prompt leakage, vector and embedding weaknesses, data poisoning, model theft, model inversion, supply chain compromise, and denial-of-service.
- Defines guardrails for protected health information and electronic protected health information processing, including data minimization, de-identification, context scoping, encryption in transit and at rest, retention boundaries, and access paths into model context windows, vector stores, caches, and logs.
- Designs and implement secure machine learning operations (MLOps) controls for datasets, features, models, prompts, and policies: provenance tracking, artifact signing, environment separation, approval workflows, reproducible builds, rollback paths, and tamper-evident audit trails.
- Defines and sets standards for identity, service-to-service authentication, secrets management, token scoping, least privilege, just-in-time access, and network segmentation for AI services, model gateways, and external tool integrations.
- Leads offensive security activities for AI systems, including adversarial testing, AI red teaming, prompt and tool abuse simulation, fuzzing, jailbreak testing, attack path validation, and control verification against production-like workflows and third-party model providers.
- Leads defensive security and blue team capabilities for AI platforms, including telemetry design, prompt and response event logging, model gateway instrumentation, security information and event management/security orchestration, automation, and response (SIEM/SOAR) integration, detection engineering, exfiltration and jailbreak detections, anomalous agent action monitoring, incident triage playbooks, and continuous tuning based on observed attack patterns.
- Leads security reviews of RAG and agentic systems, including chunking and retrieval policies, vector store isolation, embedding pipeline validation, retrieval authorization, tool allow-listing, action confirmation, and human-in-the-loop controls for high-risk operations.
- Defines security requirements for model evaluation pipelines, benchmark data handling, canary tests, policy enforcement, and release gates so unsafe or noncompliant behavior is identified before promotion.
- Collaborates to ensure secure, compliant handling of sensitive and regulated data across AI systems and enterprise data platforms, including enforcement of data classification, retention, access controls, auditability, and secure data readiness for approved AI use cases.
- Collaborates on the design and implementation of AI and data governance frameworks, translating legal, regulatory, and compliance requirements into enforceable technical controls, security standards, and operational processes.
- Coordinates the development of secure data pipelines and control implementations, ensuring proper data sourcing, minimization, de-identification, and consistent application of enterprise data protection controls (e.g., DLP, encryption, retention) within AI architectures and workflows.
- Partner with application security, platform engineering, and data science teams to enable secure adoption of AI technologies.
- Jointly support investigations, incident response, and regulatory inquiries involving AI systems and enterprise data, including forensic analysis, evidence preservation, defensible documentation, and production of audit-ready artifacts for legal and compliance purposes.
- Develop and maintain integrated monitoring, detection, and response capabilities, aligning tools and processes (e.g., DSPM, eDiscovery, SIEM/SOAR, AI observability) to proactively identify and mitigate data leakage, insider risk, AI misuse, and anomalous system or user behavior.
- Consistently demonstrates high standards of integrity by supporting the Lifetime Healthcare Companies' mission and values, adhering to the Corporate Code of Conduct, and leading to the Lifetime Way values and beliefs.
- Maintains high regard for member privacy in accordance with the corporate privacy policies and procedures.
- Regular and reliable attendance is expected and required.
- Performs other functions as assigned by management.
Minimum Qualifications
- Ten (10) years of hands-on security engineering experience spanning application security, cloud security, security architecture, detection and response, platform security, or infrastructure security.
- Bachelor's degree in computer science, information technology, or relevant field. In lieu of degree, six (6) cumulative years of related experience required.
- Demonstrated experience securing production AI/ML systems, including large language model (LLM) applications, model serving stacks, retrieval-augmented generation architecture, or agent frameworks.
- CISA, CISM, CCSP, HCISPP, GIAC and or CISSP certifications preferred.
- Demonstrated advanced expertise in AI threat modeling and adversarial testing, including prompt injections, jailbreaks, insecure tool use, data and model poisoning, vector store abuse, model extraction, and sensitive data disclosure.
- Strong implementation knowledge of secure software development lifecycle (SDLC), continuous integration/continuous delivery (CI/CD) security, infrastructure as code (IaC), container and Kubernetes security, application programming interface (API) security, identity and access management (IAM), secrets management, key management service/hardware security module (KMS/HSM) integration, and cloud-native telemetry pipelines.
- Experience designing or reviewing controls for secure machine learning operations (MLOps): artifact provenance, signed builds, feature and dataset integrity, model registry controls, environment promotion, reproducibility, and rollback.
- Experience instrumenting detections and response workflows using logs, traces, metrics, security information and event management/security orchestration, automation, and response (SIEM/SOAR) pipelines, alert tuning, and incident handling for distributed systems or AI services.
- Advanced working knowledge of RAG security, embedding pipelines, retrieval authorization, policy engines, content filtering, and evaluation harnesses for safety, security, and regulated-data compliance.
- Prior experience in healthcare, payer, provider or similarly regulated environments with PHI/ePHI safeguards preferred.
- Advanced ability to write engineering standards, design docs, threat models, and control requirements that can be implemented and tested by platform and product teams.
- Hands-on familiarity with model gateways, policy enforcement layers, prompt filtering, content moderation, retrieval authorization, vector databases, and AI observability tooling.
- Working knowledge of static/dynamic application security testing, infrastructure as code (IaC) scanning, container image scanning, software bill of materials generation, artifact signing, secret scanning, and dependency-risk management as applied to AI delivery pipelines.
- Experience with AI red teaming platforms, safety and abuse evaluation harnesses, benchmark design, and automated release gates for model or prompt changes.
- Familiarity with Sarbanes Oxley, HIPAA, OCR, AI RFM, HCFA, PCI/DSS, NIST and other regulations impacting security (with ISO17799 and NIST security standards) is preferred, as well as COBIT and COSO familiarity.
Physical Requirements:
- Ability to work prolonged periods sitting and/or standing at a workstation and working on a computer.
- Ability to travel across the Health Plan service region for meetings and/or trainings as needed.
- Ability to work in a home office for continuous periods of time for business continuity.
In support of the Americans with Disabilities Act, this job description lists only those responsibilities and qualifications deemed essential to the position.
Equal Opportunity Employer
Compensation Range(s):
Minimum: $123,304 - Maximum: $221,948
The salary range indicated in this posting represents the minimum and maximum of the salary range for this position. Actual salary will vary depending on factors including, but not limited to, budget available, prior experience, knowledge, skill and education as they relate to the position's minimum qualifications,
$123.3k - $221.95k
...Principal Artificial Intelligence (AI) Security Engineer The Principal Artificial Intelligence (AI) Security Engineer serves as the technical lead for securing machine learning (ML), generative artificial intelligence (GenAI), and agentic systems in production, with...PrincipalWork from homeHome office- ...Software Engineer The Software Engineer is responsible for working on projects that are currently being visualized or developed by... ...problem-solving skills. • Demonstrated basic ability to implement security architecture principles, and best practice standards that align...Suggested
$150k - $200k
The MedElite Group is seeking a compassionate Travel Nurse Practitioner for Endocrinology to join our dedicated healthcare team. This role involves providing comprehensive care to patients with endocrine disorders, including diabetes and thyroid conditions. Candidates ...Suggested- ...U.S.-based technical sales support role. This position emphasizes education and relationship management, helping laboratories adopt AI-driven solutions. Candidates should have 5-10 years in a digital lab, strong communication skills, and a proactive mindset. The company...SuggestedRemote work
- ...hosted, and on-premises solutions - which will allow for flexible, secure, on-demand cloud-like functionality and services while... ...In addition to Level I responsibilities): *Acts as a primary engineer for assigned technology areas. *Maintains a highly performant...SuggestedWork experience placementWork at officeRemote workHome officeFlexible hours
- Job Title Job Description: Experience in detailed requirement gathering and creation of Business Requirement Document and Functional Requirement Document. Experience in working as an Integration Lead (Techno Functional). Experience in working on Duck Creek Product Suite...
- ...A global engineering consultancy is looking for a Construction Manager to oversee construction activities on fast-paced EPC projects in the manufacturing sector. The ideal candidate will have at least 7 years of experience managing industrial engineering projects, a Bachelor...
$110k - $130k
PAR Technology in New Hartford, NY, is seeking a Senior Business Analyst for Salesforce to bridge the gap between business needs and technical solutions. The role involves collaborating with product teams, gathering and documenting business requirements, analyzing data,...Remote work- A community service organization is looking for a Care Manager (Level 3) in Utica, NY. The role involves conducting assessments, managing care plans, and engaging with patients and their families to ensure optimum healthcare. Candidates are required to have a Bachelor'...Part time
- Job Description We are currently representing an exceptional Senior Tax Manager who is confidentially exploring the next step in their career. This individual brings a strong mix of technical expertise, leadership ability, and hands-on experience across both tax...Immediate start
$20 - $20.25 per hour
Hourly rate ranges from $20.00 - $20.25 per hour and is dependent upon qualifications and experience. Benefits include: Company Paid Sick Time, Paid Vacation Time, Paid Holidays, Bereavement Pay, Jury Duty Pay, Contest Prize Awards, 401K Plan with Company Match, Medical...Hourly payLocal area$50 - $60 per hour
...DataAnnotation is committed to creating high-quality AI. Join our team to help train the nextgeneration of AI while enjoying the flexibility of remote work and the freedom to set your ownschedule. This role is designed to fit a variety of lifestyles — whether you’re looking...Hourly payFull timeContract workPart timeWork experience placementRemote work$22 - $36 per hour
...Senior Quality Engineering Technician Resonetics is a global leader in advanced engineering, prototyping, product development, and micro manufacturing, driving innovation in the medical device industry. With rapid expansion across all our locations, we continue to push...Contract workWork at office$18.65 per hour
JOB OVERVIEW: Are you looking for a career with flexibility? Are you dependable and caring? Then CareGivers is looking for someone just like you! Previous housekeeping experience preferred but not required! NOTE: Must have a reliable vehicle & valid drivers license...Local areaFlexible hoursShift workDay shiftWeekday work- ...4-7 years of experience in Desktop Support Engineer. 4-7 years of experience in Desktop Management - Infrastructure Services (IS) Comprehensive understanding of PC hardware, software, operating systems, directory services, printing and applications required...Local areaImmediate startRemote work
- ...are looking for a Backend Infrastructure Engineer who is equal parts software engineer and... ...that the team actually wants to use. Security & Compliance: Work closely with our security... ...platform is built to support large-scale AI-driven clinical systems and enterprise...Local areaImmediate startRemote work
$50 - $60 per hour
...DataAnnotation is committed to creating high-quality AI. Join our team to help train the nextgeneration of AI while enjoying the flexibility of remote work and the freedom to set your ownschedule. This role is designed to fit a variety of lifestyles — whether you’re looking...Hourly payFull timeContract workPart timeWork experience placementRemote work$75k - $90k
Finance Manager Annual Non-Exempt Salary: $75,000 - $90,000 Purpose: Responsible for all areas relating to programmatic financial reporting, budget development and monitoring. Responsible for oversight of the payroll department including payroll procedures, payroll...Flexible hours- ...Systems & Network Engineer The Systems & Network Engineer will provide support and technical advice for users and serve as the liaison... ...Engineer and Data Manager. Work with contractors to maintain secure and consistent operations for internal IT business systems, and...For contractorsWork at office
$70k - $95k
...Description Position: Senior Manufacturing Engineer Location: Utica, NY Our Client, Riverhawk Company, a leading provider of innovative engineered solutions for rotating equipment and industrial applications, is seeking a Senior Manufacturing Engineer to...Temporary workImmediate start- ...commercial entities alongside company leadership Attract and secure new R&R clients and build the opportunity pipeline alongside... ...Experience: ~ Bachelor’s Degree in Emergency Management, Planning, Engineering/Architecture, Environmental, Finance or related degree. Master...Local area
- ...Construction Manager We invite you to bring your education and experience into play as you manage the construction activities for face paced Engineer-Procure-Construct (EPC) projects in the manufacturing industry. To succeed in this role, you must have the desire to work hard and...Full timeContract workFor subcontractorWork at officeFlexible hours
$39.92k
Senior Custodian (NYHELP Program) Location: Utica, NY Job Type: Full-Time, 12-Month This position is part of the NY HELPS program, which temporarily waives the civil service examination requirement. Individuals appointed through this program will transition to...Full timePart timeImmediate startMonday to Friday$90k - $115k
...direct, adverse and negative relationship for the safety of the community. The background check will include searches for: Social Security person search, public reports, county & federal criminal reports, multi‑jurisdictional, sex offender database, NSOPW national sex...Full timeTemporary workPart timeLocal areaRemote workWork from homeHome officeFlexible hoursNight shiftAfternoon shift$80.9k - $101.1k
...inventory status. Support new product introductions and engineering changes through effective planning and communication. Mentor... .... citizen. Applicants selected may be subject to a government security investigation and must meet eligibility requirements for...Temporary workFor contractorsWork experience placementCasual workLocal area$80.9k - $101.1k
...Statements of Work and driving the SOW through final review and Engineer Technical Review (ETR) release. Issuing RFI and RFQ packages... ...S. citizen. Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access...Contract workTemporary workFor contractorsWork experience placementFor subcontractorCasual workLocal area$23.51 - $28.17 per hour
...team. Responsibilities include: Work from wire diagrams, engineering drawings (blueprints), sketches, and written or oral... .... citizen. Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access...Temporary workFor contractorsWork experience placementCasual workLocal area$34.62 - $43.27 per hour
...Qualifications: High school diploma required; BA/BS in a technical discipline preferred. Must hold an active U.S. DoD Secret security clearance or higher. Must be a U.S. citizen and meet eligibility requirements for access to classified information....Hourly payTemporary workFor contractorsWork experience placementCasual workLocal areaRemote workWorldwide- ...the limited time frame. We have also successfully placed hundreds of candidates in the areas related to Information Technology, Engineering, professional, Scientific & Clinical, etc. for both our commercial and government clients. # Source: A recruiter sources...Full timeMonday to FridayShift work
- ...frontier models for developers and enterprises who are building AI systems to power magical experiences like content generation, semantic... ...'s best for our customers. Cohere is a team of researchers, engineers, designers, and more, who are passionate about their craft. Each...Full timeWork at officeRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal AI Security Engineer. Be the first to apply!



