×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineer; Artificial Intelligence

Job in Boston, Suffolk County, Massachusetts, 02298, USA
Listing for: Hi Marley
Full Time position
Listed on 2026-07-18
Job specializations:
  • IT/Tech
    AI Engineer (Applied/Software), Cybersecurity
Salary/Wage Range or Industry Benchmark: 180000 - 230000 USD Yearly USD 180000.00 230000.00 YEAR
Job Description & How to Apply Below
Position: Senior Security Engineer (Artificial Intelligence)

As we continue to grow, we’re looking for a Sr. AI Security Engineer. Hi Marley is building an AI-native operating model: personal agents, team agents, MCP connectors, and AI deeply integrated into how we build, sell, and serve enterprise insurance carriers.

  • We’re looking for a Sr. AI Security Engineer to help secure how we use AI across the company, with a primary focus on Hi Marley’s internal AI environment: the tools, agents, and integrations that power how our teams work
  • Working within the security architecture and frameworks set by our senior security leadership, you’ll do the hands‑on engineering that makes them real: threat‑modeling new AI capabilities, running adversarial testing, operating the agent and MCP connector review process, and producing the evidence that lets leadership, our teams, and our auditors trust how we use AI
  • Apply Hi Marley’s AI security design patterns and reference architectures to LLM integrations, agent frameworks, MCP connectors, and data pipelines across the internal environment
  • Lead threat modeling for new AI capabilities before they ship, identifying architectural risks and driving mitigations into the design phase
  • Implement and enforce controls for agent isolation, least‑privilege execution, credential scoping, and data‑boundary enforcement in agentic environments
  • Maintain a current inventory of AI tools and integrations in use across the organization, tracking data flows, permission scopes, and access controls
  • Track emerging AI security research, attack techniques, and defensive tooling, and bring relevant findings into our practices
  • Run the risk assessment process for internal AI tools, integrations, and third‑party model providers against the established methodology
  • Execute the AI red‑teaming cadence (e.g. adversarial testing for prompt injection, data exfiltration, model manipulation, and jail breaking) and drive remediation
  • Operate the agent and MCP connector lifecycle, from proposal through approval, deployment, monitoring, and retirement
  • Own the security evaluation of new AI tool requests, including vendor risk assessments, data‑handling reviews, and baseline configuration; surface unapproved tools and bring them under governance
  • Maintain AI security incident response runbooks and help respond when something goes wrong
  • Track and report AI security metrics that demonstrate program health
  • Produce compliance evidence and documentation for AI systems supporting SOC 2 Type II examinations and ISO 42001 certification
  • Translate technical decisions into clear, auditor‑ready explanations of what we do, how it works, and why it is safe
  • Partner with AI Operations and Corporate IT to embed security into the internal AI platform: access controls for inference APIs, isolation for cloud‑hosted agentic workloads, and endpoint/DLP configuration
  • Contribute employee‑facing guidance on safe AI use
Benefits
  • Open vacation policy - we all work hard and take time for ourselves when we need it
  • A fun, lively startup culture
  • Ample opportunities to learn and take on new responsibilities in a fast‑paced, growth‑mode startup
  • A culture of employee engagement, diversity and inclusion
  • Core values‑based leadership
  • Full benefits package including parental leave, a matching 401k program, and medical, dental, vision, disability, and life insurance
  • Generous stock options - we all get to own a piece of what we’re building

This role is for an experienced security engineer with genuine AI/ML depth who wants to go deep on one of the most important emerging problems in the field. Hands‑on familiarity with how AI systems actually work. You’ve built with them, not just read about them.

Ability to communicate technical risk clearly to engineers, auditors, and stakeholders.

Experience with MCPs, agent orchestration frameworks, or similar agentic infrastructure.

Familiarity with compliance frameworks (SOC 2, ISO 27001, ISO 42001, NIST AI RMF) and mapping technical controls to audit requirements.

Experience at a growth‑stage B2B SaaS company.

5+ years in security engineering, application security, or infrastructure security, with hands‑on exposure to AI/ML systems.

Experience running or contributing to AI red‑teaming or adversarial testing.

Background in DLP, monitoring, or observability for AI or cloud workloads.

Strong proficiency in Python and experience building security tooling, automation, and testing.

Experience securing or building LLM‑based systems, agentic frameworks, or ML pipelines in cloud environments.

Strong working knowledge of AWS security: IAM, networking, container isolation, encryption, and monitoring.

Solid understanding of AI‑specific attack surfaces: prompt injection, tool‑use exploitation, privilege escalation through inherited access, data poisoning, and model/training‑data leakage.

#J-18808-Ljbffr
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary