Назад
Company hidden
4 часа назад

Security Engineer (AI)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (AI) (Application Security, DevSecOps, AI Systems): Building and operationalizing security controls across applications, data pipelines, APIs, cloud environments, and Agentic AI systems with an accent on secure-by-design implementation, CI/CD security, and AI guardrails. Focus on designing infrastructure-as-code security, performing threat modeling and penetration testing, remediating vulnerabilities, and securing LLM data flows and agent safety.

Location: Remote within the United States

Company

hirify.global provides specialty revenue cycle management solutions for healthcare organizations through its E360 RCM intelligent automation platform.

What you will do

  • Translate security policies into deployable controls across applications, data environments, APIs, databases, and Agentic AI systems.
  • Implement secure-by-design practices, code remediations, configuration hardening, and secure infrastructure throughout the software development lifecycle.
  • Integrate security into CI/CD pipelines through automation, secrets management, vulnerability scanning, continuous compliance, and environment hardening.
  • Build AI security guardrails, secure data flows, and integrate AI security tooling into development workflows.
  • Perform penetration testing, threat modeling, code reviews, technical assessments, and direct vulnerability remediation.
  • Collaborate with cloud, DevOps, and development teams on monitoring, detection, secure baselines, architecture reviews, training, and security documentation.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field, or an equivalent combination of education and experience.
  • 3+ years of hands-on experience in application security, DevSecOps, or security engineering.
  • Experience building secure CI/CD pipelines with Jenkins, GitLab CI, GitHub Actions, or Azure DevOps.
  • Strong cloud security experience with AWS, Azure, or GCP; infrastructure as code with Terraform or CloudFormation; and container security with Docker or Kubernetes.
  • Strong scripting and automation skills with Python, Bash, or PowerShell, plus experience with web/API, data pipeline, microservices, database, and security scanning tools such as SAST, DAST, and SCA.
  • Knowledge of NIST, ISO 27001, SOC 2, GDPR, HIPAA, and PCI-DSS, with the ability to translate security requirements into technical implementations.

Nice to have

  • Hands-on experience with AI/ML security, model security, data governance, LLM security, prompt injection prevention, and AI agent safety.
  • Security certifications such as CISSP, CEH, OSCP, CSSLP, or cloud security certifications.
  • Experience with Go, secrets management using HashiCorp Vault or AWS Secrets Manager, zero trust architecture, ETL and data warehouse security, and distributed systems.

Culture & Benefits

  • Full-time remote work within the United States.
  • Professional growth and development support, including tools, resources, and career development opportunities.
  • Culture focused on cooperation, shared goals, flexibility, and work-life balance.
  • Commitment to equal employment opportunity and a workplace free from discrimination and harassment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →