Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

AI Security Engineer Lead

Full-time

CRC Group

Key Responsibilities

AI Security Leadership

  • Lead the AI Security function, including development and delivery of AI Security Service Offerings, reference architectures, operational runbooks, and a roadmap for continual improvement.
  • Partner with Cybersecurity Architects and Engineers, IT Infrastructure Engineers, and Application and AI Agent Developers to embed security into AI solutions from design through production.
  • Partner with Project and Program Management to ensure that we’re executing the right work with the right priorities.
  • Partner with GRC to keep AI use compliant with CRC policy and regulatory obligations (including NYDFS, among others), and to remediate any findings or observations.
  • Maintain the ability to quickly report on current state, risk posture, and progress maturing this space.

Agent Harness Security Patterns

  • Develop, publish, and maintain secure design patterns for AI agent harnesses, covering tool permissioning, sandboxing, human-in-the-loop approvals, memory and context handling, and safe failure modes.
  • Define guardrails against prompt injection (direct and indirect), tool misuse, excessive agency, data leakage, and model or supply-chain compromise, aligned to OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, and MITRE ATLAS.
  • Secure agents built on Microsoft Foundry (including Foundry Agent Service), and establish equivalent patterns for third-party harnesses such as Anthropic’s Claude Agent SDK.

AI Gateway & API Security

  • Engineer and operate Azure APIM and AI Gateway capabilities as the policy enforcement point for model, agent, MCP, and API traffic, including authentication, authorization, rate and token limits, content safety, logging, and routing.
  • Protect APIs consumed and exposed by agents with strong identity, schema validation, threat protection, and least-privilege access.
  • Integrate gateway telemetry with Microsoft Sentinel and Defender for Cloud for monitoring, detection, and response.

MCP & Agent-to-Agent (A2A) Security

  • Define and enforce standards for building, registering, and consuming MCP servers, including OAuth-based authorization, server allow-listing, tool and scope minimization, and supply-chain vetting.
  • Establish trust, authentication, and authorization models for A2A interactions, including agent identity, delegation boundaries, and auditability of multi-agent workflows.
  • Maintain an inventory of agents, MCP servers, and their connections so that exposure and blast radius are always known.

Identity & Secure Access

  • Design secure access to agents, MCP servers, APIs, and data using Microsoft Entra ID, managed identities, workload and agent identities, Conditional Access, and on-behalf-of flows.
  • Partner with the Data Security team to ensure agents only reach data they are entitled to, leveraging Microsoft Purview classification, DLP, and DSPM for AI.

Control Effectiveness & Assurance

  • Define measurable control objectives and KPIs, and continuously validate that AI security controls are working as intended.
  • Lead AI red teaming, adversarial testing, and threat modeling of agentic systems before and after production release.
  • Build detections and automated response for AI-specific threats, and continuously improve controls based on findings, incidents, and emerging threats.

Qualifications

Required:

  • 5+ years in Cybersecurity, with hands-on keyboard engineering and operational responsibilities.
  • Demonstrated experience developing security patterns for AI agent harnesses and their supporting components, including API and AI gateways.
  • Hands-on experience securing AI workloads in Microsoft Azure, including Microsoft Foundry.
  • Hands-on experience engineering and operating Azure API Management (APIM), including policy authoring.
  • Practical experience designing and validating security controls for AI agents, MCP servers, and A2A interactions.
  • Strong understanding of identity and access patterns for workloads and agents (OAuth 2.x, OIDC, Microsoft Entra ID, managed identities).
  • Working knowledge of AI-specific threats and frameworks such as OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF.
  • Ability to communicate clearly with technical and executive stakeholders, adapting messaging to the audience.

Preferred:

  • Experience with Anthropic’s agent harness and related patterns (e.g., Claude Agent SDK, Claude Code, hooks, permissioning, and sub-agents).
  • Experience with Azure AI Content Safety / Prompt Shields, Defender for Cloud AI threat protection, and Microsoft Purview DSPM for AI.
  • Scripting or development proficiency in Powershell, Python, or other scripting, plus infrastructure-as-code (Terraform or Bicep) and KQL.
  • Familiarity or experience with AI red teaming tools such as PyRIT, Garak, or similar.
  • Microsoft certifications such as AZ-500, SC-100, or AI-102, or equivalent; AI security credentials (e.g., GIAC GOAA) a plus.
  • Familiarity with regulatory and governance frameworks such as NYDFS 23 NYCRR 500, ISO/IEC 42001, and NIST 800-53.
  • Experience in insurance or financial services.

Work Environment

  • Hybrid or on-site depending on organizational needs.
  • On-call rotation may be required for critical incident response.
  • Required flexibility to work nights, weekends and/or holiday shifts in the event of an incident response emergency.

Location: The preferred location is Charlotte, NC. However, we will consider candidates based in other locations within the Eastern time zone.

CRC Group supports a diverse workforce and is an Equal Opportunity Employer that does not discriminate against individuals on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status or other classification protected by law. CRC Group is a Drug Free Workplace.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the AI Security Engineer Lead in Charlotte, NC vacancy
  •  ...Please review the following job description:CRC is putting AI agents to work across the business, and we need a hands-on leader to make sure they are built and run securely from day one. The AI Security Engineer Lead owns the engineering of security controls for agentic AI... 
    Suggested
    Full time
    Temporary work
    Shift work
    Night shift
    Weekend work
    Day shift

    TIH

    Charlotte, NC
    1 day ago
  • $210k

    AI SECURITY ENGINEER LEADTHE TEAM YOU WILL BE JOININGJoin a growing Security Architecture & Engineering organization supporting a major enterprise...  ..., GRC, and business stakeholders. Step into a newly created Lead-level individual contributor role with significant influence... 
    Suggested

    AccruePartners

    Charlotte, NC
    4 days ago
  •  ...RegularLanguage Fluency: English (Required)Work Shift:1st shift (United States of America)Please review the following job description:The AI Security Engineer is responsible for implementing, validating, and supporting security controls for artificial intelligence, generative AI,... 
    Suggested
    Full time
    Part time
    Shift work
    Day shift

    Truist

    Charlotte, NC
    1 day ago
  •  ...diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more...  ...Finance and Leasing Co., Ltd. JOB SUMMARY As an AI Security Engineer, you will help secure the organization's AI, machine learning... 
    Suggested
    Work at office
    Local area
    Work from home
    Worldwide

    Sumitomo Mitsui Financial Group, Inc.

    Charlotte, NC
    3 days ago
  •  ...We are seeking an experienced AI Lead/Architect to drive the design, development, and...  ...capabilities to define AI strategy, mentor engineering teams, and deliver innovative business...  ...management. Ensure AI solutions comply with security, privacy, responsible AI, and regulatory... 
    Suggested
    Full time

    Synechron

    Charlotte, NC
    4 days ago
  • $153k - $297k

     ...our team.KPMG is currently seeking an Associate Director, AI Security Frontier Engineering to join our Enterprise Security Services organization....  ...observability toolingProven track record of independently leading technical initiatives end-to-end and resolving ambiguous,... 
    H1b
    Local area

    KPMG

    Charlotte, NC
    3 days ago
  •  ...Role: Senior Engineer - AI Security, Systems Engineering & Developer Productivity Location: Charlotte, NC / Plano, TX (Onsite) Employment Type: Full-Time Experience: 10 15 years Must-Have Qualifications: Minimum 10 years of experience... 
    Full time

    Northern Base

    Charlotte, NC
    2 days ago
  •  ...grow, and make an impact. Join us! Position Summary: Seeking a highly technical, hands‑on Senior Engineer with deep Systems Engineering expertise to lead AI security, platform modernization, and developer productivity initiatives across Digital Technology. The role... 
    Work at office
    Flexible hours
    Shift work
    Day shift

    Jobleads-US

    Charlotte, NC
    3 days ago
  •  ...Bank of America seeks a highly technical Senior Engineer with deep systems engineering expertise to lead AI security, platform modernization, and developer productivity initiatives across Digital Technology. The role drives secure AI adoption, vulnerability remediation... 

    Jobleads-US

    Charlotte, NC
    3 days ago
  • $119k - $206k

     ...this role:Wells Fargo is seeking a Lead Systems Architect - Application Security to join the Security Architecture...  ...APIs, cloud-native platforms, and AI-enabled solutionsAssist in the creation...  ...and platform teamsPartner with engineering, architecture, risk, and... 
    Full time
    Work experience placement

    Wells Fargo

    Charlotte, NC
    9 hours ago
  • Charlotte, North CarolinaHybridFull Time$120k - $160kSenior AI/ML Engineer (Python)Onsite — Wilmington, NC Our client, a fintech company building proprietary deterministic-mathematics and AI systems that forecast the pricing of commodities, real-world assets, and financial... 
    Full time

    Motion Recruitment

    Charlotte, NC
    2 days ago
  •  ...everything across a business—until generative AI. Today, AI is the number one driver of...  ...can help clients shift to the New using leading-edge technologies on some of the coolest...  ...change.You Are:As a Snowflake Advanced AI Engineer, you will design, build, and... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area
    Shift work

    Accenture

    Charlotte, NC
    2 days ago
  •  ...This team uses automated API security tools like Akamai, Salt Security...  ...APIs.• This Senior Security Engineer will be experienced with API development...  ...may change from time to time.Lead the enterprise vulnerability...  ...and runtime traceability for AI systems. Working knowledge of... 
    Full time
    Part time
    Shift work
    Day shift

    Truist

    Charlotte, NC
    3 days ago
  • $65 - $75 per hour

    DescriptionOverviewThis team is focused on building AI-powered solutions that improve coding...  ...and develop AI/ML solutions that improve engineering productivity and operational...  ...TEKsystems and TEKsystems Global Services We’re a leading provider of business and technology... 
    Contract work
    Temporary work

    TEKsystems

    Charlotte, NC
    1 hour ago
  •  ...changes the operating model an engineering organization runs on, the ways...  .... What we design from it is AI-native by construction. We redesign...  ...automation to deliver secure, accurate, and scalable AI capabilities...  ...of model differences across leading LLM providers and ability to... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Charlotte, NC
    3 days ago
  •  ...expertise across software design and development, cloud-native architectures, enterprise platforms, data engineering, and emerging technologies, including generative AI and agentic AI.Members of the STG unit play a strategic role in shaping technology direction, solving... 
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Charlotte, NC
    4 days ago
  •  ...and operational efficiency. We specialize in leveraging advanced AI and analytics to create innovative solutions that address...  ...agents, planners)Solid understanding of:RAG architecturesPrompt engineering & prompt chainingConversational AI design patternsStrong programming... 
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Charlotte, NC
    3 days ago
  • We are: A leading partner to the world’s major cloud providers, including...  ...business by design — with security, data privacy, responsible use...  ...elite technical and product engine of the Accenture Google Business...  ...: the move to Agentic AI and Product-Led Operating Models... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area
    Shift work

    Accenture

    Charlotte, NC
    1 day ago
  • $122k - $240.5k

    Position Summary Agentic AI is moving from experimentation to production, and organizations...  ...and at scale. We're growing a team of engineers who want to work at the center of that...  ...professional relationships Ability to lead projects or workstreamsAbility to manage and... 
    Work at office
    Local area
    Visa sponsorship
    Shift work

    Deloitte

    Charlotte, NC
    9 hours ago
  • $105k - $108k

     ...innovative technology to deliver industry-leading digital solutions. Synechron’s...  ...Digital, Cloud & DevOps, Data, and Software Engineering, servicing an array of noteworthy financial...  ...We’re looking for a Senior Generative AI / ML Engineer to build and deploy innovative... 
    Full time
    Temporary work
    Flexible hours

    Synechron

    Charlotte, NC
    4 days ago
  • $94.4k - $316.3k

     ...:Accenture helps the world's leading enterprises reinvent by building...  ...and unleashing the power of AI to create value at speed for...  ..., Song, Supply Chain and Engineering, and Talent, with advanced capabilities...  ...infrastructure, DevSecOps, security, observability, and AI, and... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Charlotte, NC
    2 days ago
  •  ...America)Please review the following job description:The Senior AI Agentic Engineer is a hands-on software engineer responsible for designing,...  ...enterprise integrations. The engineer develops scalable, secure, and reliable solutions that combine AI capabilities, business... 
    Full time
    Part time
    Shift work
    Day shift

    Truist

    Charlotte, NC
    9 hours ago
  •  ...AI Observability Engineer - GenAI & Agentic AI We’re looking for an experienced AI Observability Engineer to support the development and production of next-generation GenAI and Agentic AI systems. This is a great opportunity for someone with a background in Observability... 

    GL Global

    Charlotte, NC
    1 day ago
  • $100k - $110k

     ...technology to deliver industry-leading digital solutions. Synechron’s...  ...& DevOps, Data, and Software Engineering, servicing an array of noteworthy...  ...seeking a skilled Generative AI Engineer with hands-on...  ...troubleshooting. Establish standards for secure, reliable, maintainable, and... 
    Full time
    Temporary work
    Flexible hours

    Synechron

    Charlotte, NC
    1 day ago
  • $100k - $125k

     ...technology to deliver industry-leading digital solutions. Synechron’...  ...& DevOps, Data, and Software Engineering, servicing an array of...  ...a highly skilled Generative AI Developer to join our team....  ...needed, and ensuring models meet security and compliance standards.... 
    Full time
    Temporary work
    Flexible hours

    Synechron

    Charlotte, NC
    6 hours ago
  •  ...W2 Only***** We are seeking an AI Engineer to design and deliver enterprise AI solutions using Microsoft Copilot, generative AI, large language models (LLMs), and AI-powered automation. You will work with business and technical teams to improve productivity, automate... 

    Matlen Silver

    Charlotte, NC
    6 hours ago
  • $91.1k - $179.5k

    Position Summary Join our AI & Engineering team in transforming technology platforms, driving innovation, and helping make a significant...  ...to build and sustain professional relationships Ability to lead projects or workstreamsAbility to manage and prioritize multiple... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    2 days ago
  • $117.2k - $175.8k

    Sr Data Engineer - GE07BEWe’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and...  ...that combine ThoughtSpot, Snowflake, semantic data assets, and AI-powered analytics to help actuaries move faster from data to... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    3 days per week

    The Hartford Financial Services Group

    Charlotte, NC
    3 days ago
  • $124k - $280k

     ...SummaryThe OpportunityAs an AML and Sanctions- AI Engineer- Senior Manager, you will leverage data...  ...team effectiveness.Responsibilities- Leading the development and implementation of...  ...these factors thoughtfully to establish a secure and trusted workplace for all.... 
    Full time
    H1b

    PwC

    Charlotte, NC
    1 day ago
  •  ...lives every day. We turn ideas into reality.We are Secure, Responsible AI & Data Protection professionals who enable trust,...  ...following:You AreManagers are the hands-on delivery engine of the Secure AI practice. They lead day-to-day execution of client workstreams with a... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Charlotte, NC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to AI Security Engineer Lead. Be the first to apply!