30 sep
|
BONbLOC
|
México
AI Security Engineer
We’re looking for an AI Security Engineer to make a meaningful contribution to the strategic growth of our clients IT&D; Cybersecurity organization. The ideal candidate will be a passionate security professional with a strong interest in AI, application security, and cloud security.
? Remote – Mexico only
Key Responsibilities
- Support the secure adoption and development of AI solutions and integrations using common AI patterns and protocols, including LLMs, RAG, AI agents, MCP, A2A, and APIs.
- Execute defined AI security assessments and tests to identify risks such as prompt injection, sensitive data exposure, insecure output handling, excessive agency, unauthorized actions, model or data poisoning, and supply chain threats.
- Promote AI SbD across the AI solution lifecycle through architecture reviews, threat modeling, and risk assessments.
- Partner with cross-functional teams to embed security throughout the AI solution lifecycle.
- Document AI security risks, findings, remediation recommendations, and progress through clear technical documentation, metrics, reporting, and dashboards.
- Create AI security testing playbooks and test cases to identify security risks across AI solutions, RAG, agents, MCP integrations, tools, and supporting services.
- Triage AI security findings and support vulnerability tracking, remediation, and validation.
- Support AI supply chain and third-party reviews for models, datasets, dependencies, repositories, connectors, and services.
- Contribute to secure AI guidance by AI reference architecture, policies, processes and standards.
- Perform other duties as assigned.
Requirements
- Experience in cybersecurity with exposure to one or more of the following domains: application security, cloud security, DevSecOps, or software engineering.
- Foundational understanding of IAM, application security, cloud security, data protection, and vulnerability management practices.
- Foundational understanding of AI concepts, including LLMs, RAG, AI agents, models, datasets, and APIs.
- Foundational understanding of security assessments, threat modeling, vulnerability analysis, security testing, and remediation practices.
- Basic proficiency in Python or another scripting or programming language.
- Strong analytical, communication, documentation, and collaboration skills.
Preferred
- Familiarity with OWASP Top 10, OWASP Top 10 for LLM, or NIST AI RMF.
- Experience with Google Enterprise Agent Platform, Google Cloud Run, or a comparable platform.
- CompTIA SecAI+, ISC2, or another relevant cybersecurity certification.
Adecuado candidate: Passionate security professional with a strong interest in AI, application security, and cloud security.
📌 AI Security Engineer (México)
🏢 BONbLOC
📍 México