World Wide Technology

Security Solutions Lead Consultant - AI Application Security

World Wide Technology$137K — $171K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of cybersecurity experience, focusing on application security and AI's impact.
  • Experience in consulting or advising roles, engaging with senior executives.
  • Familiarity with AI application construction, including model APIs and various architectural frameworks.
  • Knowledge of security frameworks such as NIST AI RMF and ISO/IEC 42001, along with established standards like OWASP and MITRE.
  • Expertise in secure SDLC and AppSec tools within enterprise settings.
  • Strong writing ability for comprehensive deliverables in advisory roles.
  • Preferred certifications include CISSP, CSSLP, CCSP; experience in highly regulated industries is a plus.

Responsibilities

  • Deliver advisory services on securing AI-based applications through assessments and workshops.
  • Assess security across the entirety of modern applications, addressing both traditional and AI-related vulnerabilities.
  • Support clients in integrating AI security practices into their existing security programs.
  • Provide guidance on application security design, including secure SDLC and tooling across various applications.
  • Lead workshops that facilitate collaboration among security, engineering, and governance teams.
  • Present clear, actionable insights to both technical practitioners and executive stakeholders.
  • Manage end-to-end project scopes and client relationships as part of broader engagements.

Benefits

  • Health (Medical & Prescription), Dental, and Vision Care options.
  • 401k Plan with Company Matching, Profit Sharing, and Life Insurance.
  • Variety of Paid Time Off, including personal, family, and medical leave.
  • Additional benefits such as tuition reimbursement and family planning services.
Full Job Description
Qualifications & Experience
  • 7+ years in cybersecurity, with depth in application security and a working grasp of how AI changes it. Candidates who are deep in AI security and fluent in AppSec are an equally strong fit
  • Client-facing consulting or advisory experience; comfortable briefing executives and defending findings under scrutiny
  • Working knowledge of how AI-enabled applications are built, including model APIs, RAG, vector stores, agent frameworks, and MCP-style tool integrations. Enough depth to engage credibly with engineering teams; client teams handle implementation
  • Familiarity with NIST AI RMF, ISO/IEC 42001, OWASP Top 10 for LLM Applications, and MITRE ATLAS, plus grounding in NIST CSF, ISO 27001, or the CIS Controls
  • Experience advising on secure SDLC, AppSec tooling, and software supply chain security in enterprise environments
  • Strong writing skills; in advisory work, the deliverable is the product
  • Nice to have: CISSP, CSSLP, CCSP, AIGP, or GIAC certifications, and prior work in regulated industries such as financial services, healthcare, or energy

Want to learn more about Consulting & Security Services? Check us out on our platform:

https://www.wwt.com/consulting-services

https://www.wwt.com/category/security-transformation

Certain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $137,200 to $171,500 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay.

The well-being of WWT employees is essential. When it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
  • Health and Wellbeing: Health (Medical & Prescription), Dental, and Vision Care, Onsite Health Centers (MO & IL), Employee Assistance Program, Wellness program
  • Financial Benefits: Competitive Pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Flexible Spending Accounts, Tuition Reimbursement
  • Paid Time Off: PTO & Holidays, Parental Leave, Medical Leave, Military Leave, Bereavement, Day of Caring
  • Additional Perks: Family Planning Benefits, Nursing Mothers Benefits, Voluntary Legal, Voluntary Supplemental Accident/Illness/Hospital, Voluntary ID Theft, Pet Insurance, Employee Discount Program

Note: This is not an all-encompassing list and should not be used as a complete description of the plan's benefits. For more information, see our US benefits website at wwt.com/us-benefits.

Position Overview:

WWT's Global Security practice is hiring a Lead Consultant in AI application security. This is a client-facing advisory role. You will work directly with client security organizations, including CISOs, security architects, application security leads, and GRC and risk teams, to assess and strengthen how their security programs address AI adoption across the application portfolio.

Enterprise applications increasingly include model APIs, retrieval pipelines, and agent frameworks. Most application security programs were established before any of these existed. You will help clients close that gap: leading readiness and maturity assessments, running threat modeling workshops, advising on control design, and building prioritized roadmaps that extend established AppSec practices to cover AI systems. The engagement model is advisory. Client teams implement and operate the controls; you provide the assessment and the direction.

This is a strong fit for a consultant who wants variety across industries and a direct view into how large enterprises are adopting AI. The practice is growing quickly. There is room to help shape the offering as it scales.

Key Responsibilities

Client Advisory & Delivery
  1. Deliver advisory engagements on securing AI-enabled applications: readiness and maturity assessments, threat modeling workshops, governance reviews, gap analyses, and prioritized remediation roadmaps
  2. Advise client security teams across the full attack surface of a modern application, spanning established areas such as API security, dependencies, secrets, and CI/CD, along with the exposures AI introduces: prompt injection, model and data supply chain compromise, data poisoning, unsafe output handling, and agent tool misuse and excessive autonomy
  3. Guide teams as they extend the programs they already run (threat modeling, secure code review, penetration testing, vulnerability management) to cover models, RAG pipelines, vector stores, and agent frameworks, so AI coverage grows within one program rather than a parallel second one
  4. Advise on application security program design: secure SDLC, tooling strategy across SAST, DAST, SCA, and ASPM, including how coverage changes for LLM-backed applications, API security, software supply chain integrity, and secrets and non-human identity hygiene. Deliver recommendations and reference patterns that client engineering teams implement themselves
  5. Run workshops and working sessions that bring security, engineering, and governance stakeholders to a shared answer
  6. Communicate across two main stakeholder groups: detailed guidance for practitioners, and clear, defensible summaries for executives and boards
  7. Lead delivery workstreams within larger engagements and run smaller engagements end to end, managing scope and client expectations alongside a Principal or Practice Director
  8. Anchor recommendations in the frameworks clients are measured against, including OWASP (both the application Top 10 and the LLM Top 10), NIST AI RMF, ISO/IEC 42001, MITRE ATLAS, NIST CSF, and ISO 27001

Practice Development & Thought Leadership
  1. Contribute to practice IP: assessment methodologies, control catalogs, workshop kits, and briefing materials that make the next engagement better than the last one
  2. Support pursuits with scoping input, proposal content, and SOW review
  3. Publish and present where it helps the practice, whether that is a blog post, a client briefing, a conference talk, or internal enablement
  4. Mentor consultants building depth in this space

Collaboration & Ecosystem Integration
  1. Work with the client's security organization as your primary audience, and engage their engineering, data science, and platform teams where the guidance has to land
  2. Coordinate with WWT peers across cloud security, identity, and infrastructure so the client hears one coherent point of view

About World Wide Technology

World Wide Technology (WWT) is a technology solution provider that offers a wide range of services to businesses and organizations. The company was founded in 1990 and is headquartered in Maryland Heights, Missouri. WWT provides a variety of services, including consulting, design, integration, and managed services. The company has a strong focus on innovation and has been recognized for its efforts in this area. WWT has partnerships with many leading technology companies, including Cisco, Dell, and Microsoft. The company has a global presence, with offices in the United States, Europe, and Asia.
Learn more about World Wide Technology
Size
7,000 employees
Industry
Founded
1990

Similar Jobs

More Jobs at World Wide Technology

More Information Technology Jobs

Find similar Security Solutions Lead Consultant - AI Application Security jobs: