Principal Application & AI Security Engineer
DNV GL
DNV Energy Systems' Platform Services is seeking Principal Application & AI Security Engineer.DNV Energy Systems' Platform Services runs the software products and digital platforms our customers depend on, including systems with significant operational importance in enterprise and energy environments. As we evolve toward agentic AI architectures, security must move from after-the-fact review into architecture, development workflows, and runtime operations - engineered into the platform and the delivery pipeline, with evidence that controls are implemented and operating effectively.This is a builder's role for a senior technical leader who can read and improve code, design reusable controls, model complex threats, conduct authorized security testing, and work directly with engineering teams to ship durable fixes. The goal is not simply to identify vulnerabilities. It is to eliminate recurring vulnerability classes, reduce exposure, and make the secure path the easiest path.This role is based at our DNV office in Houston, TX or Oakland, CA, presenting a dynamic hybrid schedule where employees will typically spend three (3) days per week working from either a DNV office or client location/site. Further details regarding role-specific requirements will be shared during the interview process.What you'll doYou’ll be a technical leader within our organization focused on three core priorities:Securing application and AI architecture. Design and implement secure patterns across applications, APIs, cloud platforms, and AI-agent systems, with particular emphasis on identity, authorization, tenant isolation, data access, tool use, and runtime guardrails.Automating security in engineering workflows. Build and tune risk-based controls so material issues are caught and acted on inside delivery workflows, rather than at manual checkpoints.Eliminating recurring vulnerabilities. Find root causes, fix weaknesses at the architecture or platform-pattern level, and make the same class of issue structurally difficult to reintroduceThe responsibilities below describe how this work shows up day-to-day across architecture, delivery, AI systems, remediation, and engineering.Build security into delivery and platform engineeringDesign and implement scalable controls for software and AI supply chains, including dependency integrity, SCA, SAST, DAST, build provenance, artifact security, secrets protection, container and infrastructure-as-code assurance, and software or AI bills of materials where appropriate.Implement platform-level controls: policy as code, authorization enforcement, data-access guardrails, secure defaults, and reusable reference implementations.Design AI-assisted security-testing environments, automated attack scenarios, and security-regression suites that prevent resolved issues from silently returning.Implement risk-based quality gates with documented exception paths, accountable ownership, and service-level expectations, so material issues block release.Find, prove, and fix material weaknessesReview source code, APIs, and application designs for weaknesses in authentication, authorization, session management, input handling, data-access scope, and multi-tenant isolation, including row- and field-level boundaries.Conduct authorized application, API, and AI security testing, including targeted manual testing of business logic and trust boundaries that automated tools cannot adequately validate.Work alongside engineers to remediate root causes, validate fixes, create regression tests, and put preventive controls or secure patterns in place.Establish vulnerability triage and remediation practices, including exploitability and exposure analysis, accountable ownership, target dates, exception handling, retesting, closure evidence, and escalation of overdue material risk.Secure AI agents and AI-assisted developmentEstablish agent identities and least-privilege permissions, with clear separation of read, write, execute, approval, and administrative capabilities.Govern model, tool, skill, connector, plug-in, memory, and data access, including tenant isolation and boundaries between trusted and untrusted context.Validate untrusted inputs and tool outputs, and design defenses against direct and indirect prompt injection, goal manipulation, tool misuse, privilege escalation, sensitive-data exposure, memory poisoning, unsafe delegation, and cascading failures.Assess multi-agent workflows to implement approval requirements for consequential or irreversible actions, runtime policy enforcement, rate and resource limits, and tamper-resistant auditability.Shape secure architecture at scaleLead high-risk threat modeling and architecture reviews for complex, multi-tenant, cloud-native, event-driven, and AI-enabled systems.Develop and demonstrate reusable secure patterns for microservices, APIs, event-driven systems, containers, Kubernetes, cloud services, and agentic AI applications.Contribute to platform roadmaps and engineering practice so controls are implemented at the most effective layer and reused across products.Provide evidence from implementation, testing, and incidents to help Information Security team continuously improve enterprise standards and assurance expectations.Support engineering teams and incidentsPartner across distributed engineering hubs, including North America and Chennai, to drive adoption of secure patterns and automation at scale.Translate findings into prioritized, actionable engineering work reflecting technical severity, exploitability, customer impact, and delivery context.Mentor senior engineers and technical leaders in secure design, development, threat modeling, and remediation.Serve as the application and AI security technical lead during relevant incidents – coordinating with designated incident lead and Information Security team to support investigation, containment, eradication, recovery, remediation validation, and lessons learned.Represent application and AI security in significant technical, executive, customer, audit, and assurance discussions when needed.About Energy SystemsWe help customers navigate the complex transition to a decarbonized and more sustainable energy future. We do this by assuring that energy systems work safely and effectively, using solutions that are increasingly digital. We also help industries and governments to navigate the many complex, interrelated transitions taking place globally and regionally, in the energy industry.What Is Required8+ years of experience in application security or secure software engineering, with demonstrated responsibility for production software and security controls.A degree in computer science, cybersecurity, engineering, or a related field is welcome but not required. Equivalent practical experience is fully recognized.Deep application and API security expertise, including authentication, authorization, session management, data protection, input validation, and multi-tenant isolation. This is the core of the role.Ability to review, write, test, and improve production-quality code in one or more languages commonly used in cloud applications, automation, and security engineering.Experience leading source-code reviews, application and API security testing, threat modeling, and architecture reviews for complex systems.Experience integrating and tuning security tooling in CI/CD and converting findings into risk-based automated controls.Production experience with a major cloud provider (Azure, AWS, or comparable) and practical understanding of cloud identity, platform services, and the shared-responsibility model.Demonstrated ability to set technical direction, create reusable capabilities across multiple products, and influence senior stakeholders without relying on formal authority.Ability to explain material security risk clearly to engineers, product leaders, executives, customers, and assurance stakeholders.Strong written and verbal English communication skills. We conduct pre-employment drug and background screening.What Is PreferredPractical AI-agent security experience, including excessive permissions, insecure tool invocation, untrusted inputs, memory or context risks, sensitive-data exposure, insufficient human oversight, and unsafe autonomous action.Experience applying AI to security testing, code analysis, vulnerability triage, or security automation.Experience securing distributed, event-driven, multi-tenant, or critical enterprise systems where authorization and data boundaries are material risks.Container, Kubernetes, infrastructure-as-code, and software-supply-chain security.Incident response, vulnerability investigation, exploit validation, and remediation verification.Hands-on depth with Veracode, Burp Suite Professional, or equivalents, and practical familiarity with OWASP application, API, and agentic AI security guidance.Certifications are a plus, demonstrated hands-on ability matters more. Relevant credentials include OSCP, GIAC GWAPT, GWEB, GCSA, AZ-500, AWS Certified Security - Specialty, CISSP, or CCSP.*Immigration-related employment benefits, for example visa sponsorship, are not available for this position*Generous paid time off (vacation, sick days, company holidays, personal days)Multiple Medical and Dental benefit plans to choose from, Vision benefitsSpending accounts – FSA, Dependent Care, Commuter Benefits, company-seeded HSAEmployer-paid, therapist-led, virtual care services through Talkspace401(k) with company matchCompany provided life insurance, short-term, and long-term disability benefitsEducation reimbursement programFlexible work schedule with hybrid opportunitiesCharitable Matched Giving and Volunteer Rewards through our Impact ProgramVolunteer time off (VTO) paid by the companyCareer advancement opportunities **Benefits vary based on position, tenure, location, and employee election**DNV is a proud equal opportunity employer committed to building an inclusive and diverse workforce. All employment is decided on the basis of qualifications, merit, or business need, without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. DNV is committed to ensuring equal employment opportunity, including providing reasonable accommodations to individuals with a disability. US applicants with a physical or mental disability who require a reasonable accommodation for any part of the application or hiring process may contact the North America Recruitment Department (View email address on click.appcast.io). Information received relating to accommodation will be addressed confidentially. For more information DNV provides a reasonable range of compensation for this role. The actual compensation is influenced by a wide array of factors, including but not limited to skill set, level of experience, and specific location. For the states of California, Connecticut, Illinois, Maine, Massachusetts, New Jersey, New York, Virginia and Washington only, the starting pay range for this role is $175,000 - $225,000.Full timePosting Date: 2026-09-02
$205.2k - $360.8k
...Be the one building AI-powered experiences where they... ...environments every day. Senior Principal, AI Software Engineer - Agentic & Industry... ...coordinate AI services, enterprise applications, knowledge systems, and... ..., observability, security, and governance to support...PrincipalApplicationWork from homeWorldwideFlexible hours$118.7k - $243.7k
Position Summary As a Manager in AI Security Engineering, you will play a critical role in securing the development and deployment of... ...exposure, adversarial threats)Experience building and securing applications using Python, JavaScript, or similar, along with ML...Application- ...Transfer is looking for a hands-on AI Developer with strong... ...developer will work alongside AI engineers/developers and business... ...Build and optimize cloud-native applications on Azure.• Work with large-scale... ...job related experience.• The Principal Specialist level requires a...PrincipalApplicationWork experience placementWork at officeNight shift
- METECS is an engineering and applied technology company specializing in high-fidelity simulation... ...analysis. We are looking for an IT Security Engineer to lead security operations... ...for human space flight and terrestrial applications. We develop and integrate custom software...ApplicationPermanent employment
$105.4k - $207.8k
...power the next generation of AI-enabled cyber defense?If yes,... ...looking for a hands-on Data Engineer to build and operate the governed... ...monitoring, and AI-assisted security operations—built with strong... ...and enterprise systems using application programming interfaces, event...ApplicationLocal areaVisa sponsorship- ...Role: Senior Network Security Engineer WAAP (Web Application & API Protection) Location: Houston, TX (Onsite) Note: WAAP (Web Application & API Protection) experience is a must. Key Responsibilities Translate business and application security...Application
$112k - $209k
...firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security... ...and technical leadership. It utilizes AI-driven tools to improve security measures... ...with infrastructure, cloud, and application teams• Developing and maintaining security...ApplicationFull timeTemporary workWork experience placementLocal areaRemote work- ...planJob DescriptionAbout the Role:The Principal Automation & AI Engineer serves as the technical leader... ...development standards, testing practices, security controls, and governance processes... ...employer. All qualified applicants will receive consideration for employment...PrincipalFull timeWork at officeFlexible hours
- ...our Technology Team as an Identity and Security Engineer located in various offices.We are seeking... ..., and ensures secure access to applications and resources at scale. The Identity &... ...or similar)Fundamental understanding of AI model infrastructure and AI agent securityStrong...ApplicationFull timeRemote workFlexible hours
- ...development of new archetypesDefinition and application of cloud architecture standards... ...using Azure VWanDesign of highly available secure and scalable cloud solutionsDevelopment... ...Security Identity Management Platform Engineering and Governance teamsDevelopment of reusable...PrincipalApplication
- ...for how arrivia builds with AI agents, and stay hands-on... ....About the RoleAs a Principal Agentic Software Engineer, you are a hands-on, product... ...integrations that give AI agents secure, governed access to... ...architecture experience building web applications and services, including...PrincipalApplicationFull timeTemporary workRemote work
$200k - $225k
...our team as we help shape a brighter way forward. The Senior Security Engineer, AI Enablement is Security's embedded, full-time representative... ...relevant. Collaborate with identity, cloud security, and application security teams to ensure Falcon's agentic components meet the...ApplicationFull timeLocal areaImmediate startRemote work$150k - $275k
...OverviewEast West Bank is seeking an experienced Senior AI Engineering to design, build, and operationalize enterprise-... ...will translate emerging AI capabilities into secure, scalable, production-ready banking applications that improve operational efficiency, risk...ApplicationFull time- ...like to see stronger candidates who are more engineering focused for endpoint systems for the long... ...detecting, remediating and mitigating end point security vulnerabilities, extensive testing and supporting of critical applications and operating systems/updates against...Application
$122k - $240.5k
Position Summary Agentic AI is moving from experimentation to production, and... ...and at scale. We're growing a team of engineers who want to work at the center of that shift... ...of hands-on experience developing AI/ML applications in PythonAt least 1 year of direct...ApplicationWork at officeLocal areaVisa sponsorshipShift work- ...Exponent Exponent is the only premium engineering and scientific consulting firm with the... ...Opportunity We are currently seeking a Senior AI Engineer for our Data Sciences Practice... ...environments into production-grade AI applications. You will be responsible for...ApplicationWork at officeFlexible hours
- ...integrated infrastructure and applications, deep ecosystem skills,... ...responsible business by design — with security, data privacy, responsible... ...elite technical and product engine of the Accenture Google Business... ...: the move to Agentic AI and Product-Led Operating Models...ApplicationFull timeWork experience placementLive inWork at officeLocal areaShift work
- Title:Associate Security Engineer, Identity SecurityKBR is seeking an Associate Security Engineer... ...for users, groups, devices, applications, service accounts, and access permissions... ...Support application identities, service principals, managed identities, workload identities...ApplicationPermanent employmentFull timeLocal areaRemote work
$165k - $225k
...Description:DataRobot delivers AI that maximizes impact and... ...business risk. Our platform and applications integrate into core business... ...generative AI, and enables leaders to secure their AI assets.... ...and in the future. As an AI Engineer on our Professional Services...ApplicationFull timeWork at officeLocal areaRemote workWorldwideFlexible hours- ...in the continental U.S.The Principal Cybersecurity Advisor serves... ...enterprise networking and network security and helps clients translate... ...leaders, architects, and engineering teams on Cisco strategy,... ...work remotely/from home (where applicable)EEO StatementOptiv is an equal...PrincipalApplicationFull timeLocal areaRemote workWork from home
$87.97k - $188.95k
...capabilities, then consider a career in Advisory.KPMG is currently seeking a Senior Associate, AI Engineer to join our Advisory Services practice.Responsibilities:Develop GenAI / LLM applications and integrations using foundational models under the guidance of senior team...ApplicationH1bLocal area$112k - $130k
...Senior Security EngineerRemote - United StatesJR013945 At Ensono, our Purpose is to be... ...Summary The Senior Information Security Engineer is responsible for designing,... ...Evaluate, test, and deploy security application upgrades and patches. Deliver consultative...ApplicationFull timeTemporary workRemote workWork from homeFlexible hours- ...Principal Engineer, Digital QA USA Waste-Management Resources, LLC has an opening for a full-time Principal Engineer, Digital QA in Houston... ..., and validation. 3 years of exp. with AS400 business applications. 3 years of exp. with national accounts applications and integrations...PrincipalApplicationFull timeContract workWork at office
- ...Job Summary The Principal Software Architect will lead the design... ...architecture standards used by multiple engineering teams. Duties include, but... ...Lead and mature the applicable solution architecture practice... ...emerging technologies, including AI/ML-driven solutions. Drive...PrincipalApplicationRemote work
$103.15k - $158.59k
...the world. Scaling that mission requires AI-native capabilities that drive... ...power plant operations. The Agentic AI Engineer, within the Data & AI team, designs and... ...Streamlit, Gradio, or React) for agentic applications and internal toolsLead design reviews and...ApplicationTemporary workWork at officeLocal areaRemote workFlexible hours- We AreAccenture Security helps organizations prepare, protect, detect... ...identity, cyber defense, application security, and managed service... ...Cybersecurity Forward Deployed Engineer is a production engineer who... ...and engineering teams—to make AI systems secure, governed, and...ApplicationFull timeWork experience placementLive inWork at officeLocal area
$105.4k - $207.8k
Position Summary Cisco Network Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business... ...development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and...ApplicationWork experience placementLocal areaVisa sponsorship- ...everything across a business—until generative AI. Today, AI is the number one driver of... ....You Are:As a Snowflake Advanced AI Engineer, you will design, build, and operationalize... ..., and simulations along with their applications to solve complex business problems at client...ApplicationFull timeWork experience placementLive inWork at officeLocal areaShift work
- ...currently seeking a Director, AI Strategy Architect to join... ...integration, quality, scalability, and security within enterprise... ...the forefront of AI and cloud engineering technology advancementsWork closely... ...integrated with enterprise applications (CRM, ERP), enhancing...ApplicationH1bLocal area
$122k - $148k
...ensures the necessary IT risk management and security measures are in place and aligned with... ...RoleWe are seeking a highly motivated AI Engineer with 5+ years of experience to design,... ...for machine learning and generative AI applications Familiarity with Bedrock Amazon...ApplicationFull timeWork at officeLocal areaImmediate startRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Application & AI Security Engineer. Be the first to apply!
- project engineer assistant project manager Houston, TX
- principal data engineer Houston, TX
- principal cloud engineer Houston, TX
- director data engineering Houston, TX
- principal developer Houston, TX
- senior principal engineer Houston, TX
- hotel chief engineer Houston, TX
- civil engineer project manager Houston, TX
- senior civil engineer project manager Houston, TX
- senior chief engineer Houston, TX



