×
Register Here to Apply for Jobs or Post Jobs. X

AI Security Infrastructure Engineer; B3167

Job in Toronto, Ontario, M5A, Canada
Listing for: The Toronto-Dominion Bank (Canada)
Full Time position
Listed on 2026-02-16
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, AI Engineer
  • Engineering
    Cybersecurity, Systems Engineer, AI Engineer
Job Description & How to Apply Below
Position: AI Security Infrastructure Engineer (B3167)

Description

:

We are seeking an AI Security Infrastructure Engineer to be a key technical leader, bridging the gap between cutting-edge AI innovation and core infrastructure security. Your mission will be to drive forward-looking security strategies and engineering solutions for Generative AI and LLM platforms, while specializing in leveraging AI security capabilities to augment and fortify existing enterprise solutions.

Key Responsibilities:
Research, Evaluation, and Design

This role is primarily focused on providing AI Security Infrastructure solutions, researching, evaluating, and designing solutions that mitigate gaps in security controls, and support leadership strategy and road maps. You will be responsible for conducting proof-of-concepts (PoC's) for new security technologies and protocols, and support hardening efforts to protect our mission-critical assets deployed across Azure, Google Cloud, and On-Premises environments.

1. Advanced Protocol and Application Security

  • Generative AI Protocols:
    Evaluate and secure emerging standards for multi-agent workflows, such as the Agent-to-Agent (A2A) and Model Context Protocol (MCP).
  • Third-Party Security:
    Conduct deep security assessments and validation of all infrastructure and connection points for third-party LLM and RAG (Retrieval-Augmented Generation) applications.
  • Threat Modeling:
    Support threat modeling exercises for new AI applications and pipelines to proactively identify design flaws and adversarial attack vectors (e.g., prompt injection paths).
  • Mitigation Solutions:
    Support the design, build, and testing of security controls to mitigate common AI/ML attacks as outlined by frameworks like the OWASP Top 10 for LLM Applications, Mitre Atlas.
  • 2. Access, Identity, and Cloud Controls

  • IAM Design:
    Define and implement security designs for Identity and Access Management (IAM), specializing in securing non-human identities, service principles, and cross-cloud access.
  • API Security:
    Own the security strategy for all AI service consumption, including hardening of API Gateways and securing authentication flows (e.g., OAuth 2.0/OIDC) for model endpoints.
  • Secrets Management:
    Design and PoC the secure storage, injection, and rotation of confidential data (API keys, model weights, database credentials) using solutions like Azure Key Vault and GCP Secret Manager in support of AI Security Infrastructure initiatives.
  • AI Cloud Hardening:
    Establish security configuration baselines and network segmentation (e.g., Private Link, VPC Service Controls) for AI-specific cloud resources on Azure and GCP.
  • 3. Collaboration and Strategy Translation

  • AI Red Team Support:
    Provide essential infrastructure security expertise and tooling to support the AI Red Team program, helping them build secure testing environments and validate attack findings.
  • Translation to Production:
    Collaborate with Dev Ops, Governance, Vulnerability Management, and Platform Engineering partners to translate successful security PoC's and designs into robust, production-ready solutions and Infrastructure as Code (IaC) controls.
  • Qualifications:

  • 7+ years of progressive experience in Cybersecurity, Cloud Security Engineering, or Application Security.
  • Cloud Security Proficiency:
    Hands-on experience securing platforms and services in Microsoft Azure and Google Cloud Platform (GCP), with an understanding of hybrid security models.
  • Identity & Access:
    In-depth knowledge of Identity and Access Management (IAM) concepts, including implementation experience with OAuth 2.0/OIDC and modern token-based authentication systems.
  • API/Application Security:
    Solid background in designing and testing the security of REST APIs and associated middleware (e.g., API Gateways, WAFs).
  • Secrets Management:
    Practical experience designing or implementing solutions for secure secret storage and retrieval (e.g., Azure Key Vault, GCP Secret Manager, Hashi Corp Vault, Hardware Security Modules)
  • Programming/Scripting:
    Ability to script in Python, Go Power Shell, or similar languages (Python preferred) for security tool evaluation, PoC implementation, and security automation scripting.
  • Good understanding of AI security frameworks such as OWASP Top 10 for…
  • Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
    To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)

    Job Posting Language
    Employment Category
    Education (minimum level)
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary