Cybersecurity Engineer, AI Platform
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, Data Security
At T-Mobile, we invest in YOU! Our Total Rewards Package ensures that employees get the same big love we give our customers. All team members receive a competitive base salary and compensation package – this is Total Rewards. Employees enjoy multiple wealth‑building opportunities through our annual stock grant, employee stock purchase plan, 401(k), and access to free, year‑round money coaches. That’s how we’re UNSTOPPABLE for our employees!
JobOverview
The Cybersecurity Engineer will help ensure that our software, systems and infrastructure are designed and implemented to the highest security standards. Performs technical security assessments, code reviews and vulnerability testing to highlight risk and remediate associated findings while helping T‑Mobile teams and partners improve security. Works closely with other T‑Mobile Engineers to design and build proactive methods to enhance our security posture, with a focus on building these methods through automation and AI.
Builds and operates the enterprise AI security platform that makes AI adoption safe and scalable. Owns integration, deployment, and day‑2 operations of controls across SaaS AI, GenAI/LLM services, and internal platforms. Implements and tunes guardrails and policies (AI discovery/policy, Need‑to‑Know, Agentic and Prompt Security, cloud posture), connects telemetry to SIEM/SOAR and ITSM/CMDB, and automates approvals, exceptions, and evidence capture. Works closely with Data Protection, the Cybersecurity Architects, Legal/Privacy, Procurement/Vendor Risk, and engineering teams to meet SLAs and keep the environment audit‑ready.
- Deploy, integrate, and operate AI security controls in production; create runbooks, health checks, and dashboards.
- Implement SSO/MFA, SCIM, and RBAC for AI tools/services; enforce least‑privilege and purpose‑binding; automate access reviews and certification evidence.
- Build and maintain AI security pipelines: prompt/response logging with privacy filtering, retention/expiration, and secrets/key management.
- Contribute to AI‑IR playbooks for data and model incidents (triage, scoping, containment, evidence capture); coordinate with CSOC/IR.
- Partner with Data Protection on tagging/classification and lineage for AI training and inference data flows.
- Performs security, compliance, and risk assessments on projects throughout project lifecycle.
- Participates on information security review of new technologies, designs, and remediation planning efforts.
- Collaborates and participates on identification of security needs & recommends plans/resolutions. Implements, tests & monitors info security improvements.
- Maintains visibility inside & outside of info security at an Engineering professional level. Interfaces with groups such as application support, engineering ops, finance, privacy, risk management, etc.
- Helps to generate and execute information security policy life cycle throughout, including intake, creation, review, approval, implementation, publishing, communication & maintenance.
- Helps execute security projects driven by groups both internal and external to info security.
- Familiarity with the analysis of underlying technologies that form the solution necessary for the application of threat identification, analysis, and thread model design. The threat model depicts trust boundary, threat agent(s), threat vector(s), and safeguard(s) necessary to protect person, asset, data, and T‑Mobile brand.
- Also responsible for other Duties/Projects as assigned by business management as needed.
Bachelor’s Degree, Computer Science, or Information Technology (required). Equivalent experience in lieu of degree may be considered.
Experience- 2‑4 years in cybersecurity/platform engineering with hands‑on deployment and operations of security controls at enterprise scale
- 1–3 years implementing or operating AI‑adjacent controls (AI‑SPM, LLM security, Shadow AI, Prompt security, etc).
- Built or supported data classification/tagging and lineage for AI workflows, integrating with Varonis/Obsidian or equivalent DSPM/SSPM platforms.
- Integrated control telemetry and decisions into SIEM/SOAR and ticketing/CMDB; created…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).