Назад
Company hidden
10 дней назад

Principal Cybersecurity Engineer (AI)

249 000 - 348 500$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Cybersecurity Engineer (AI): Building and operating enterprise-scale security platforms, cloud controls, SDLC integrations, and AI security systems with an accent on AWS security, zero-trust infrastructure, service mesh, and LLM-based applications. Focus on implementing enforceable policy-as-code, securing RAG and agentic AI pipelines, and integrating security controls into high-velocity engineering workflows.

Location: San Jose, California, United States

Salary: $249,000–$348,500 annual total cash; potential top of range up to $398,500 based on sustained performance.

Company

hirify.global is a global travel technology company connecting travelers, partners, and advertisers through consumer brands, B2B services, and travel advertising.

What you will do

  • Design, build, and operate reusable security platforms, shared services, and automated policy-as-code controls for infrastructure-as-code, containers, and service mesh environments.
  • Implement secrets management, certificate lifecycle, workload identity, mTLS, traffic policies, and zero-trust segmentation across multi-cloud distributed systems.
  • Operate AWS security controls and CSPM/DSPM programs, including IAM, SCPs, GuardDuty, Security Hub, Inspector, Macie, Control Tower, Secrets Manager, and KMS.
  • Embed SAST, DAST, SCA, ASPM, CSPM, and DSPM capabilities into CI/CD pipelines and engineering workflows without blocking delivery.
  • Secure LLM applications, RAG pipelines, and agentic AI systems against prompt injection, model abuse, data exfiltration, and agent trust-boundary risks.
  • Partner with engineering, platform architecture, AI, and technology leadership teams to shape security strategy, roadmaps, and practical technical standards.

Requirements

  • 15+ years of progressive, hands-on cybersecurity experience building and operating enterprise-scale security systems.
  • Practitioner-level AWS security expertise, including IAM, VPC, GuardDuty, Security Hub, Macie, Inspector, Control Tower, Secrets Manager, and KMS.
  • Experience delivering SDLC security architecture, CI/CD integrations, developer tooling, SAST/DAST/SCA deployment, and runtime security.
  • Production experience with service mesh security, mTLS, workload identity, traffic policy, and zero-trust enforcement using Istio, Envoy, Linkerd, or equivalent.
  • Hands-on experience implementing security controls for LLM applications, RAG systems, and agentic AI pipelines in production.
  • Bachelor’s degree in Computer Science, Information Security, or a related technical field, or equivalent professional experience.

Nice to have

  • Experience in large-scale multi-cloud e-commerce or travel technology environments.
  • Experience securing agentic AI systems, including red-teaming and abuse-scenario validation.
  • Security-as-a-platform, self-service tooling, paved-road libraries, or security SDK development experience.
  • People leadership or technical lead experience and certifications such as CISSP, CCSP, CSSLP, AWS Security Specialty, or GCP Security Engineer.
  • Applied experience with PCI-DSS, SOC 2, GDPR, and ISO 27001.

Culture & Benefits

  • Hands-on senior individual contributor role with director-level scope; optional people-management responsibilities may be available.
  • Cross-functional collaboration with engineering teams and influence through technical execution rather than formal authority.
  • Medical, dental, and vision coverage, paid time off, and an Employee Assistance Program.
  • Wellness and travel reimbursement, travel discounts, and IATAN membership.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →