All jobs

Senior AI Security Engineer

Truist22h ago
United StatesOnsiteFull-timeSenior Level7+ yrs exp
H-1B sponsor

Top focus

Security EngineerCloud Security Engineer

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications.

If you already have a profile with us, you can log in to check status. Need Help? If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary: Regular Language Fluency: English (Required) Work Shift: 1st shift (United States of America) Please review the following job description: ***This role is 5 days a week in the Atlanta or Charlotte Office*** The Senior AI Security Engineer helps design, implement, test, and operate the controls that keep enterprise AI systems safe, governed, and production ready.

This role focuses on the security engineering foundations required for AI-enabled applications, agents, prompt-driven workflows, and tool-integrated automations operating in a regulated enterprise environment. This is a hands-on engineering role within the Forge AI Security & Governance model.

The engineer supports guardrail implementation, prompt-injection defense, output filtering, monitoring, secure tool-use boundaries, logging, detection content, and deployment-readiness controls for AI-enabled systems. The work spans design, testing, automation, detection engineering, and operational support across the AI delivery lifecycle.

Daily work includes implementing security controls for AI and agentic systems, validating configurations, supporting adversarial test preparation, building monitoring logic, partnering with engineering to harden prompt and tool behaviors, documenting controls, and ensuring AI solutions meet enterprise safety, traceability, and governance requirements before and after deployment.

ESSENTIAL DUTIES AND RESPONSIBILITIES Following is a summary of the essential functions for this role. Other duties may be assigned as needed. AI & Cloud Security Engineering Engineer and deploy security controls for AI/ML and Generative AI systems, including model‑level, data‑level, and platform‑level protections.

Implement AI guardrails and safety controls (e.g., prompt injection defenses, content safety filters, policy enforcement, model access controls). Support secure AI platform onboarding for internal teams, ensuring alignment with Truist AI Security Standards and Review Processes.

Perform technical security assessments of AI systems and cloud‑hosted AI services. Infrastructure as Code & Automation Design and implement Infrastructure as Code (IaC) using Terraform and CloudFormation to deploy AI security controls consistently.

Build and maintain CI/CD pipelines (GitLab) for security tooling, guardrails, and configuration‑as‑code. Automate operational workflows using Python and scripting to reduce manual security operations. Cloud Platform Security Engineer secure, scalable cloud environments supporting AI workloads across AWS and Azure.

Implement and integrate cloud security tooling (e.g., Wiz) to provide visibility and control over AI assets. Secure containerized and orchestrated workloads supporting AI pipelines (ECS, EKS, Kubernetes). Collaboration & Enablement Partner with AI platform teams, application engineers, cloud security, and governance stakeholders to embed security into AI delivery.

Contribute to the evolution of enterprise AI security standards, patterns, and reference architectures. Support incident response, threat modeling, and remediation activities related to AI systems. Required Qualifications The requirements listed below are representative of the knowledge, skill and/or ability required.

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Bachelor’s degree or equivalent education, training, and work-related experience. Minimum of 7 years of experience in security engineering or related cybersecurity roles.

Deep specialized knowledge in cybersecurity principles, theories, and concepts. Proven experience in software development lifecycle security practices. Deep knowledge of threat modeling, security testing, and penetration testing. Experience implementing and managing complex information security technologies.

Technical Skills & Emerging Skills Experience Strong hands‑on experience with Azure and/or AWS Infrastructure as Code experience with Terraform and CloudFormation. Experience building and managing CI/CD pipelines (GitLab). Experience implementing or operating cloud security tooling (e.g., Microsoft Purview, Sentinel, Wiz or equivalent).

Experience securing AI/ML or Generative AI systems in production environments. Familiarity with AI‑specific security controls, such as: Prompt injection mitigation Content safety / moderation controls Model access and usage restrictions Secure data handling for AI pipelines Exposure to Azure and Azure‑hosted AI services.

Experience working in regulated environments with strong risk and governance requirements. Additional experience we seek: 3+ years of experience in security engineering, cybersecurity operations, application security, or a closely related technical discipline.

Hands-on experience implementing technical controls for enterprise software, APIs, cloud-native services, or automation workflows. Working knowledge of AI/LLM security concepts such as prompt injection, unsafe output handling, tool-use abuse, sensitive data exposure, and control boundary enforcement.

Experience with logging, alerting, monitoring, or detection content for identifying suspicious or policy-violating behavior in applications or workflows. Understanding of access control, identity boundaries, secrets handling, secure integration design, and environment-based deployment controls.

Ability to work with engineering teams to translate security concerns into implementable guardrails, validations, and release controls. Strong written documentation and communication skills, especially for controls, findings, remediation evidence, and technical guidance.

Experience operating within enterprise governance, security, and release-management practices where evidence-based deployment readiness matters. PREFERRED QUALIFICATIONS Experience with AI or agentic security controls, prompt and output protection strategies, or security validation of LLM-enabled features.

Experience with Microsoft, Azure, Copilot / Copilot Studio, or AI-enabled enterprise workflow platforms. Experience with adversarial testing, red teaming support, detection engineering, or misuse-case validation for AI-enabled systems. Experience in financial services, cybersecurity, regulated enterprise environments, or platforms with high audit and control requirements.

Familiarity with secure tool-calling patterns, API protections, model or prompt change validation, and runtime traceability for AI systems. Working knowledge of cloud-native security patterns, telemetry analysis, and deployment gating for modern engineering teams.

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position.

Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays.

For more details on Truist’s generous benefit plans, please visit our Benefits site . Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan.

As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work. Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law.

Truist is a Drug Free Workplace. EEO is the Law E-Verify IER Right to Work

Required skills

AISecurity EngineeringAWSAzureTerraformCloudFormationCI/CDGitLabPythonKubernetesECSEKSCloud SecurityIncident ResponseThreat Modeling
Posted on JobRush — the end-to-end AI job-search platform.