Назад
Company hidden
обновлено 4 дня назад

Director, Security Engineering (AI)

249 000 - 348 500$
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Director, Security Engineering (AI): Building and operating enterprise-scale security platforms, cloud controls, SDLC integrations, and AI security systems with an accent on AWS, zero-trust infrastructure, service mesh security, and LLM-based applications. Focus on implementing enforceable security controls, integrating protection into high-velocity engineering workflows, and securing RAG and agentic AI systems in production.

Location: United States, California, San Jose

Salary: $249,000–$348,500 total cash annually; performance-based pay may reach $398,500.

Company

hirify.global is a global travel technology company connecting travelers, partners, and advertisers through consumer brands, B2B services, and travel advertising.

What you will do

  • Design, build, and operate reusable security platforms, shared services, reference architectures, and automated policy-as-code controls.
  • Secure cloud-native infrastructure across AWS and multi-cloud environments, including secrets management, certificates, workload identity, IAM, CSPM, DSPM, and automated response.
  • Integrate SAST, DAST, SCA, ASPM, CSPM, and DSPM tooling into CI/CD pipelines and engineering workflows.
  • Implement service mesh and zero-trust security at scale, including mTLS, traffic policies, workload identity, and network segmentation.
  • Secure LLM applications, RAG pipelines, and agentic AI systems against prompt injection, model abuse, data exfiltration, and trust-boundary risks.
  • Partner with engineering, platform architecture, AI, product security, and technology stakeholders to shape security roadmaps and deliver measurable outcomes.

Requirements

  • 15+ years of progressive, hands-on cybersecurity experience building and operating enterprise-scale security systems.
  • Deep AWS expertise, including IAM, VPC, GuardDuty, Security Hub, Macie, Inspector, Control Tower, Secrets Manager, and KMS.
  • Experience delivering SDLC security architecture, CI/CD integrations, developer tooling, SAST/DAST/SCA, and runtime security.
  • Production experience with service mesh security, mTLS, workload identity, traffic policy, and zero-trust enforcement using Istio, Envoy, Linkerd, or equivalent.
  • Hands-on AI security experience covering LLM applications, RAG systems, agentic AI pipelines, threat detection, vulnerability management, or automated response.
  • Bachelor’s degree in Computer Science, Information Security, or a related technical field, or equivalent professional experience.

Nice to have

  • Experience in large-scale multi-cloud e-commerce or travel technology environments.
  • Experience building or securing production agentic AI and LLM applications, including red-teaming and abuse-scenario validation.
  • Experience developing security-as-a-platform services, self-service tooling, security libraries, or SDKs.
  • People leadership or technical lead experience and certifications such as CISSP, CCSP, CSSLP, AWS Security Specialty, or GCP Security Engineer.
  • Practical experience with PCI-DSS, SOC 2, GDPR, and ISO 27001.

Culture & Benefits

  • Senior individual contributor role with director-level scope; people management is optional.
  • Hands-on, execution-oriented environment focused on shipped systems, operationalized controls, adoption, and measurable security outcomes.
  • Medical, dental, and vision coverage, paid time off, and an Employee Assistance Program.
  • Wellness and travel reimbursement, travel discounts, and IATAN membership.
  • Collaborative work with engineering teams across a large travel technology platform.

Hiring process

  • The role may be filled by an exceptional senior individual contributor or by a candidate with people leadership experience.
  • Executive-level communication, architectural documentation, technical guidance, and stakeholder collaboration are expected during the process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →