Carlyle Group

Security Engineer, AI Platforms & Infrastructure

Carlyle Group$160K — $180K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in cybersecurity, computer science, information systems, engineering, or a related discipline preferred.
  • 5-7 years of overall technical experience in security engineering or related fields.
  • 3 years of hands-on experience in information security or cybersecurity engineering.
  • Experience securing platforms with authentication, authorization, and usage monitoring functions.
  • Familiarity with network security technologies and next-generation firewall implementations.

Responsibilities

  • Secure and operate the AI gateway for user access and model provider interactions.
  • Harden integrations for AI tools against risks of excessive scope and data exfiltration.
  • Define and enforce usage guardrails for AI model inputs and outputs.
  • Automate security operations to reduce manual tasks and improve accuracy.
  • Maintain privileged access management across the technology landscape.
  • Secure network paths and support endpoint security measures.
  • Design logging infrastructures for effective security monitoring and integration.

Benefits

  • Comprehensive retirement benefits.
  • Health insurance coverage.
  • Life insurance and disability benefits.
  • Paid time off and holidays.
  • Family planning benefits and wellness programs.
Full Job Description
Position Summary

The Security Engineer is a hands-on technical role that strengthens how Carlyle secures its adoption of AI. This role secures AI platforms and agentic tooling as they're adopted across the firm and extends core security engineering practices into the identity, network, and logging capabilities that support them.

This role owns the implementation and continuous improvement of security controls protecting AI systems throughout their lifecycle, from onboarding and integration review through ongoing monitoring and retirement and brings strong automation to bear as the firm's technology footprint evolves.

In-Office Requirement: 4 days per week

Primary Responsibilities

AI Platforms, Gateway - 30%
  • Secure and operate the AI gateway that brokers access between users, agents, and downstream model providers and connected services, including authentication, authorization, guardrails, and usage governance.
  • Review and harden AI agent and tool integrations for excessive scope, credential handling, and data-exfiltration risk before and after deployment.
  • Define and enforce security guardrails for model inputs, outputs, and tool usage. Partner with platform owners to pilot new guardrail configurations and measure their effectiveness.


Automation, Identity & Privileged Access - 25%
  • Build automation using supported APIs, reducing manual and error-prone security operations.
  • Support privileged access management across the environment.


Network, Endpoint & Infrastructure Security - 25%
  • Secure network paths across the security stack, including SD-WAN, firewall, SASE/ZTNA, and WAF policies for API and platform traffic.
  • Support broader network and endpoint security engineering work as capacity allows, including firewall migrations, SSL inspection tuning, and device-posture troubleshooting.


Logging, Telemetry & Observability - 20%
  • Design and build logging and telemetry infrastructure to support security monitoring across the environment.
  • Evaluate and integate telemetry pipeline technologies to route security logs reliably and cost-effectively to the SIEM.
  • Work with data retention, normalization, and enrichment standards for logs so analysts and automation can act on them; identify and close logging and data-quality gaps.
  • Build dashboards, alerts, and health checks to monitor availability, security posture, performance, and reliability across assigned capabilities.


Requirements

Education & Certificates
  • Bachelor's degree, required
  • Concentration in cybersecurity, computer science, information systems, engineering, or a related discipline strongly preferred, or equivalent relevant professional experience.
  • Relevant certifications in security engineering, cloud security, identity, or AI/ML security are preferred.


Professional Experience
  • Minimum 5-7 years of overall relevant technical experience, required
  • Minimum 3 years of experience information security or cybersecurity engineering experience, required
  • Hands-on experience securing platforms and agent or tool-based systems, including authentication, authorization, guardrails, and usage monitoring.
  • Experience with Model Context Protocol (MCP), agent frameworks, tool integrations, or comparable integration patterns, including reviewing third-party integrations for security risk.
  • Experience with privileged access management platforms and secrets management for service accounts and automation.
  • Experience with network security technologies, including next-generation firewalls, SASE/ZTNA, web application firewalls, and modern enterprise networking.
  • Enough Linux administration skills to harden servers and to evaluate AI-generated scripts and configurations across various distributions.
  • Experience building automation with a general-purpose language (Python, Bash, or similar) and integrating systems through APIs and structured data formats.
  • Experience building or operating logging and telemetry pipelines and integrating with SIEM platforms.
  • Experience with identity platforms and endpoint security tooling is preferred.


Benefits/Compensation

The compensation range for this role is specific to Washington, DC, and New York, NY and takes into account a wide range of factors including but not limited to the skill sets required/preferred; prior experience and training; licenses and/or certifications.

The anticipated base salary range for this role is $160,000 to $180,000.

In addition to the base salary, the hired professional will enjoy a comprehensive benefits package spanning retirement benefits, health insurance, life insurance and disability, paid time off, paid holidays, family planning benefits and various wellness programs. Additionally, the hired professional may also be eligible to participate in an annual discretionary incentive program, the award of which will be dependent on various factors, including, without limitation, individual and organizational performance.

Due to the high volume of candidates, please be advised that only candidates selected to interview will be contacted by Carlyle.

About Carlyle Group

The Carlyle Group is a global investment firm that specializes in private equity, credit, and real estate investments. The firm was founded in 1987 and is headquartered in Washington, D.C. Carlyle manages more than $230 billion in assets across 389 investment vehicles as of December 31, 2020. The firm's private equity investments span a wide range of industries, including aerospace and defense, consumer and retail, energy and power, healthcare, and technology, media and telecommunications. Carlyle has offices in 22 countries and employs more than 1,800 people worldwide.
Learn more about Carlyle Group
Size
1,850 employees
Market Cap
$10.6 billion
Industry
Net Income
$348.2 million
Founded
1987
5 Year Trend
+31%
Revenue
$2.9 billion
NASDAQ

Similar Jobs

More Jobs at Carlyle Group

More Information Technology Jobs

Find similar Security Engineer, AI Platforms & Infrastructure jobs: