Member of Technical Staff - AI Security Engineering [Bay Area]

NTT DATA AIVista

$400K — $500K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in security engineering, with deep expertise in application/product security and cloud security.
  • Hands-on experience leading threat modeling and secure design reviews for complex, distributed systems.
  • Strong cloud security expertise (AWS, Azure, or Google Cloud Platform): IAM, network security, secure baselines, logging/monitoring, and vulnerability management.
  • Experience securing AI/ML or agentic systems, or clear ability to reason about novel threat models.
  • Working ownership of security compliance programs (SOC 2, ISO 27001) and the ability to direct auditors and compliance tooling.
  • Experience owning incident response and security risk management.
  • Excellent communication skills, with the ability to influence various stakeholders.

Responsibilities

  • Lead secure design reviews and threat modeling for AI products, identifying unique risks.
  • Define security architecture and standards for AI agents and delegated-credential boundaries.
  • Partner with Engineering to embed security into the product and development lifecycle.
  • Build or introduce security tooling to scale product security with business growth.
  • Own cloud security architecture across major platforms including AWS and Azure.
  • Lead threat detection and remediation across cloud environments.
  • Own the security program, roadmap, and compliance policies.

Benefits

  • Medical, dental, and vision insurance
  • 401(k) plan
  • Significant company HSA contribution
  • Paid holidays and flexible PTO
Full Job Description
Member of Technical Staff -AI Security Engineering [Bay Area]

Palo Alto, CA | Onsite

Role Description

The Principal Security Engineer will own the entire security function at NTT DATA AIVista, from the security of our AI products to our cloud environments, our corporate security posture, and our compliance programs. You will set the standard for what "secure" means across the company and be accountable for the security of products deployed into some of the world's most regulated enterprises.

This is a hands-on, senior individual-contributor role to start: you will personally do the architecture, threat modeling, and security engineering. As the company and the security surface grow, you will build and lead a small security team, hiring and mentoring engineers and directing external specialists. We are looking for someone who wants to own security end-to-end now and grow into a security leader.

Because our products are agentic AI systems, this role carries a threat model that does not map cleanly onto traditional application security; multi-agent orchestration, sandboxed code execution, agents holding delegated credentials, and untrusted tool output crossing trust boundaries. You will define how we secure these systems.

Responsibilities
Product & AI Security
  • Lead secure design reviews and threat modeling for our AI products, including agentic and multi-agent systems, identifying risks that don't map to existing frameworks.
  • Define security architecture and secure-by-design standards for AI agents, tool use, sandboxing, and delegated-credential and identity boundaries.
  • Partner with Engineering and the CTO organization to embed security into the product and development lifecycle (secure SDLC, code review, dependency and supply-chain security).
  • Build or introduce security tooling and guardrails that let product security scale with the business.
Cloud & Infrastructure Security
  • Own cloud security architecture and posture across AWS, Azure, and/or Google Cloud Platform - IAM design, network security, secure baselines, logging, monitoring, and vulnerability management.
  • Define the security standards that IT and DevOps implement and operate against.
  • Lead threat detection, posture management, and remediation prioritization across cloud environments.
Security Program & Compliance
  • Own the company security program, roadmap, risk register, and security policies.
  • Direct the SOC 2 and ISO 27001 programs - setting the control framework and audit strategy while IT operates day-to-day compliance tooling and evidence collection.
  • Own vendor security reviews, security architecture standards, and NTT DATA group security requirements.
  • Oversee security awareness and training across the company.
Incident Response & Risk
  • Own incident response and disaster recovery planning, and lead response to security incidents.
  • Establish how security risk is measured, quantified, and reported to leadership.
Team & Leadership (as we scale)
  • Hire, mentor, and lead a small security team over time; direct external consultants and specialists.
  • Represent security to executives, customers, auditors, and NTT DATA group stakeholders.
Qualifications
  • 10+ years in security engineering, with deep expertise in application/product security and cloud security.
  • Hands-on experience leading threat modeling and secure design reviews for complex, distributed systems.
  • Strong cloud security expertise (AWS, Azure, or Google Cloud Platform): IAM, network security, secure baselines, logging/monitoring, and vulnerability management.
  • Experience securing AI/ML or agentic systems, or clear ability to reason about novel threat models (sandboxing, delegated credentials, untrusted tool/output boundaries, prompt/agent abuse).
  • Working ownership of security compliance programs (SOC 2, ISO 27001) and the ability to direct auditors and compliance tooling (e.g., Vanta).
  • Experience owning incident response and security risk management.
  • Excellent communication skills, with the ability to influence engineering, executives, customers, and auditors.
  • Comfortable operating as a hands-on solo owner in a fast-paced startup, with the ambition and ability to build and lead a team.
  • Experience at a technology, AI, or enterprise-software company serving regulated industries is preferred.
Benefits
  • Medical, dental, and vision insurance
  • 401(k) plan
  • Significant company HSA contribution
  • Paid holidays and flexible PTO
Compensation Range

The estimated annual base salary range for this role is $400,000-$500,000 USD. The salary for the successful applicant will depend on job-related factors such as education, training, work experience, business needs, and market demands. This range may be modified in the future. Total compensation also includes variable pay in the form of an annual target bonus and other cash incentives, with a combined potential of up to 100% of base salary.

Similar Jobs

More Jobs at NTT DATA AIVista

More Information Technology Jobs

Find similar Member of Technical Staff - AI Security Engineering [Bay Area] jobs: