AI Security Engineer - Quant
What You Will Do
- Requirements Review & Security Design: Lead security reviews, threat modeling, and penetration testing for AI Agents. Design and implement defense mechanisms against emerging threats, including tool abuse, context contamination, data poisoning, and prompt injection.
- Automated Security Tooling: Design and develop AI-powered automated security detection tools. Utilize Machine Learning (ML) and Deep Learning (DL) techniques to enhance threat detection, anomalous behavior analysis, and vulnerability discovery efficiency.
- Security Operations & Auditing: Participate in building Agent behavior auditing and anomaly detection systems to identify runtime malicious behavior chains. Help construct an AI-driven Security Operations platform to automate alert triage, attack attribution, and incident response strategy generation.
- Security Guardrails Implementation: Co-design and implement Agent security guardrails, including input filtering, output sanitization, tool call permission controls, and sandbox isolation.
- Frontier Research & Adversarial Defense: Track and research cutting-edge security threats in the AI/Agent ecosystem (e.g., prompt injection, tool abuse, privilege escalation, data exfiltration, supply chain attacks). Explore, design, and deploy robust defense solutions tailored to real-world business scenarios.
Who You Are
- Experience: Minimum of 3 years of experience in security development or penetration testing, with at least 1 year dedicated to LLM/AI security offense and defense. Proven Red Teaming or real-world adversarial experience is highly preferred.
- Frameworks & Frameworks: Deep familiarity with security frameworks such as OWASP Top 10 for LLM and MITRE ATT&CK. Strong understanding of common AI attack vectors, adversarial logic, and mitigation strategies, paired with a strong passion for AI security.
- Domain Knowledge: Familiarity with the entire AI product lifecycle (design, development, deployment, and operations). Understanding of cloud-native threat detection and standard infrastructure security. Prior experience in Web3 security and defense is a strong plus.
- Technical Skills: Proficient in at least one programming language (e.g., Python, Go, C++). Capable of building custom security tools from scratch or heavily customizing/extending open-source security platforms.
- Soft Skills: Exceptional communication, collaboration, and project management skills. A self-starter with strong continuous learning capabilities, able to own projects independently and convert bleeding-edge research into practical production defenses.
FAQs
Congratulations, we understand that taking the time to apply is a big step. When you apply, your details go directly to the consultant who is sourcing talent. Due to demand, we may not get back to all applicants that have applied. However, we always keep your resume and details on file so when we see similar roles or see skillsets that drive growth in organizations, we will always reach out to discuss opportunities.
Yes. Even if this role isn’t a perfect match, applying allows us to understand your expertise and ambitions, ensuring you're on our radar for the right opportunity when it arises.
We also work in several ways, firstly we advertise our roles available on our site, however, often due to confidentiality we may not post all. We also work with clients who are more focused on skills and understanding what is required to future-proof their business.Â
That's why we recommend registering your resume so you can be considered for roles that have yet to be created.Â
Yes, we help with resume and interview preparation. From customized support on how to optimize your resume to interview preparation and compensation negotiations, we advocate for you throughout your next career move.
