Remote job
Director, Security Products: Key Management
Job details
About this role
Role overview A remote Principal Engineer role focused on securing AI/ML systems at cloud scale, reporting to the VP, Deputy CISO. The position leads AI security strategy, adversarial testing, and governance frameworks while partnering with product security, engineering, and data science teams, and serves as the internal escalation point for AI-related security risk.
Responsibilities - Define and drive the AI security strategy and multi-year roadmap, including risk prioritization across the portfolio - Architect and lead the AI Risk & Governance framework, establishing policies, standards, and controls for responsible AI/ML development and deployment - Lead adversarial testing and AI red teaming including jailbreaking, prompt injection, evasion, and poisoning scenarios - Threat-model across the AI lifecycle: data ingestion, training and fine-tuning, evaluation, model serving, RAG, agent frameworks, and post-deployment monitoring - Build, deploy, and serve in-house AI/ML models, guardrails, tooling, and automations alongside data science teams - Represent AI security at executive and board-level briefings, communicating risk posture in business terms - Lead engagement with the external AI security community and define the organization's position on emerging topics like agentic AI and model supply chain risk
Requirements - 10+ years in cybersecurity with 4–5 years focused on AI/ML security, adversarial ML, or security data science in production cloud environments - Demonstrated track record of defining and driving AI or security programs at an organizational level - Deep practitioner knowledge of adversarial ML attacks and defenses: evasion, poisoning, model extraction, membership inference, and prompt injection - Strong programming skills in Python and Go, with a track record of building security tooling and automation - Hands-on experience with AI red-team tooling and model supply-chain frameworks - Bachelor's or Master's degree in Computer Science, Information Security, Mathematics, or a related field
Nice to have - Hands-on experience securing RAG pipelines, agentic frameworks, and model APIs against prompt injection and data exfiltration
Benefits and work setup - Remote role - Compensation range of $230,400 - $288,000 - Eligibility for bonus and equity compensation