Back to jobs

Senior Security Engineer

Job description

Responsibilities

  • Perform security architecture reviews and threat modeling for new and existing systems.
  • Assess AI/LLM implementations, MCP integrations, and access controls to mitigate risks such as prompt injection and unauthorized access.
  • Audit cloud infrastructure and enterprise permissions for vulnerabilities.
  • Analyze data flows to identify leakage risks and recommend safeguards.
  • Develop AI governance standards, remediation frameworks, IAM optimization strategies, and data protection measures.
  • Evaluate and integrate security tools into the overall architecture.
  • Collaborate with technical teams to implement security fixes and improvements.
  • Conduct verification tests (e.g., penetration testing) to validate remediation.
  • Track security enhancements and prepare regular reports for stakeholders.
  • Stay updated on emerging threats, technologies, and best practices.

Requirements

  • Bachelor's degree in Computer Science, Information Security, or related field.
  • 5+ years in security technology or operations with strong governance and architecture experience.
  • Proficiency in threat modeling (STRIDE, PASTA) and security architecture reviews.
  • Deep understanding of AI/LLM security risks and secure design for MCP and RAG architectures.
  • Expertise in cloud security (AWS, Alibaba Cloud) and IAM protocols (RBAC, OAuth, ABAC).
  • Strong knowledge of data protection techniques (DLP, encryption, masking).
  • Familiarity with security tools (SIEM, WAF) and scripting (Python/Shell).
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently and manage multiple priorities.