Principal AI Security Engineer

SCAN Group

$125K — $181K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in Cybersecurity, with at least 3+ years in AI/ML Security.
  • Proven track record securing Azure OpenAI, Azure AI Search, and Azure Foundry.
  • Deep understanding of LLM vulnerabilities, including prompt injection and data poisoning.
  • Expertise in securing data workflows for AI, including vector database security.
  • Extensive knowledge of AI Governance frameworks and the regulatory landscape.

Responsibilities

  • Design and implement secure-by-design architectures for the AI lifecycle.
  • Lead security configuration for Azure OpenAI Studio, Foundry, and Search.
  • Develop and deploy security controls, including prompt injection mitigations.
  • Securely implement and oversee Model Context Protocol (MCP).
  • Establish and maintain AI security standards based on global frameworks.
  • Draft enterprise-wide policies for responsible AI usage and data privacy.
  • Build automated guardrails to prevent data leakage and ensure model compliance.

Benefits

  • An annual employee bonus program.
  • Robust Wellness Program.
  • Generous paid-time-off (PTO) and 11 paid holidays plus a floating holiday.
  • Excellent 401(k) Retirement Saving Plan with employer match.
  • Tuition reimbursement.
Full Job Description
The Job:

We are seeking a visionary Principal AI Security Engineer to serve as the primary architect and guardian of our Artificial Intelligence ecosystem. Reporting directly to the Director of Cybersecurity, you will be responsible for the end-to-end security of our AI architectures, ensuring that innovation never comes at the expense of integrity.

This is a high-impact, "player-coach" role. You will provide strategic governance and framework development while remaining deeply hands-on with enterprise AI configurations, specifically within the Azure AI stack. From securing Model Context Protocol (MCP) implementations to building robust guardrails in Azure AI Foundry, you will be the technical authority ensuring our AI identities and data workflows are impenetrable.

Key Responsibilities:

1. AI Security Architecture & Engineering
  • End-to-End Security: Design and implement secure-by-design architectures for the entire AI lifecycle, including data ingestion, model training, fine-tuning, and inference.
  • Azure AI Specialist: Lead the security configuration for Azure OpenAI Studio, Azure AI Foundry, and Azure AI Search, ensuring enterprise-grade protection.
  • Hands-on Implementation: Develop and deploy security controls, including prompt injection mitigations, rate limiting, and content filtering.
  • MCP Integration: Securely implement and oversee Model Context Protocol (MCP) to facilitate safe communication between AI models and local/remote data sources.

2. Governance & Compliance
  • Framework Ownership: Establish and maintain AI security standards based on global frameworks (e.g., NIST AI RMF, ISO/IEC 42001, OWASP Top 10 for LLMs).
  • Policy Development: Draft enterprise-wide policies for responsible AI usage, data privacy, and model risk management.
  • Identity & Data Security: Architect sophisticated identity management for AI agents (Workload Identities) and ensure data-at-rest/motion is encrypted and permissioned via Azure RBAC and Entra ID.

3. Guardrails & Monitoring
  • Control Building: Build automated guardrails to prevent data leakage and ensure model outputs remain within ethical and legal boundaries.
  • Threat Modeling: Conduct AI-specific threat modeling and red-teaming exercises to identify vulnerabilities in RAG (Retrieval-Augmented Generation) patterns.
  • Observability: Partner with the SOC to develop monitoring dashboards for AI-related anomalies and security events.


Required Qualifications:
  • Experience: 10+ years in Cybersecurity, with at least 3+ years focused specifically on AI/ML Security.
  • Azure Expertise: Proven track record securing Azure OpenAI, Azure AI Search, and Azure Foundry.
  • Technical Depth: Deep understanding of LLM vulnerabilities (Prompt Injection, Insecure Output Handling, Training Data Poisoning).
  • Data Security: Expertise in securing data workflows for AI, including vector database security and sensitive data masking.
  • Governance: Extensive knowledge of AI Governance frameworks and the regulatory landscape (EU AI Act, etc.).


Technical Skills & Tools:
  • Platforms: Azure AI Studio, Azure Machine Learning, Azure Kubernetes Service (AKS).
  • AI Protocols: Experience with Model Context Protocol (MCP) and API security (REST, gRPC).
  • Languages: Proficiency in Python and PowerShell/Bash for automation and security tooling.
  • Identity: Expert-level knowledge of Azure Entra ID (formerly Azure AD) and Managed Identities for AI workloads.


What's in it for you?
  • Base salary range: $125,400 to $181,419 annually
  • An annual employee bonus program
  • Robust Wellness Program
  • Generous paid-time-off (PTO)
  • 11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days
  • Excellent 401(k) Retirement Saving Plan with employer match
  • Robust employee recognition program
  • Tuition reimbursement
  • An opportunity to become part of a team that makes a difference to our members and our community every day!


We're always looking for talented people to join our team! Qualified applicants are encouraged to apply now!

Similar Jobs

More Jobs at SCAN Group

More Information Technology Jobs

Find similar Principal AI Security Engineer jobs: