Senior Specialist, AI Penetration Tester
Listed on 2025-12-24
-
IT/Tech
AI Engineer, Cybersecurity
Senior Specialist, AI Penetration Tester – KPMG US
Join KPMG’s rapidly growing Advisory practice to conduct AI-focused penetration testing and secure AI systems. This role is part of the Managed Services practice and provides opportunities to work on cutting-edge AI security challenges.
Responsibilities- Execute AI-guided penetration testing engagements, including manual testing of systems incorporating AI/ML and coverage of both traditional and AI-centric attack surfaces.
- Perform threat modeling for AI-powered software, evaluate AI-related business logic, and conduct architecture reviews with emphasis on adversarial ML vectors, prompt-based vulnerabilities, and AI-specific risks.
- Develop and improve AI-driven tools and methodologies for offensive security tasks such as discovery, exploitation, fuzzing, and adversarial ML testing on web apps, APIs, and mobile clients.
- Present AI penetration testing findings to technical and non-technical audiences, including live demos, and collaborate with engineering, development, and security teams to lead remediation discussions and advise on secure AI model development.
- Research emerging AI attack techniques, evaluate potential impact, identify vulnerabilities, and provide actionable recommendations to strengthen AI defenses.
- Collaborate with internal Red Teams, SOC analysts, and AI security researchers to refine AI red‑team approaches by integrating new adversarial ML techniques and proven exploitation tactics.
- Act with integrity, professionalism, and personal responsibility to uphold KPMG’s respectful work environment.
- Minimum three years of recent penetration testing experience focused on APIs, web applications, and mobile applications; experience with AI model testing or AI security highly desirable.
- Bachelor’s degree from an accredited college or university.
- Proven background in AI red team and adversarial attack development, including prompt engineering attacks, LLM-based vulnerability analysis, and model evasion techniques.
- Proficiency with penetration testing tools (e.g., Burp Suite Pro, Netsparker, Checkmarx) and AI security frameworks (e.g., Tensor Flow, PyTorch, LLM APIs, Lang Chain).
- Strong communication and presentation skills to explain AI-related vulnerabilities to technical and non-technical stakeholders and drive remediation.
- One or more major ethical hacking certifications (e.g., GWAPT, CREST, OSWE, OSWA) and certifications or training in AI security techniques.
- Ability to travel as necessary.
- Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship. KPMG will not sponsor for any U.S. work visa status for this opportunity.
Compensation will be based on relevant factors such as skills, responsibilities, experience, and market conditions. Benefits include medical, dental, vision, disability, life insurance, 401(k), personal well‑being programs, and other work‑life balance initiatives.
KPMG is an equal opportunity employer. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws.
No phone calls or agencies please.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).