We have a need for an AI Security Engineer for a contract
to hire role with a client. The client is currently only considering
candidates who do not require a work visa now or in the future.
Rate: $80/h C2C
Length: 6 months+ contract to hire
Location: Remote
Must
have 10+ years of experience in Unix environments.
7+
years of experience developing using Python.
Must
have experience developing in a public cloud such as AWS, Azure, GCP,
prefer candidates with experience with at least 2 clouds.
3+
years with AI/ML or GenAI security – will dig into this area.
The ideal candidate for this role will also have experience
in the following domains:
• Strong Software Development experience with demonstrable proficiency in one
or more languages – Python(preferred), Java, PowerShell, NodeJS, AngularJS, etc
• Working knowledge of infrastructure concepts and administration (Linux or
Windows, DNS, Network, Firewalls, etc)
• Extensive experience and advanced knowledge with one or more hyperscale cloud
providers - GCP, Azure, AWS & OCI
• Demonstrated ability to write security policy that is specific and testable,
and to translate it into automated enforcement (policy-as-code, CI/CD gates,
gateway-level controls, DLP rules)
• A track record of self-directed learning on fast-moving technical topics —
comfortable digging into how a brand-new tool, protocol, or framework actually
works (architecture, trust boundaries, auth model) well enough to give a
defensible security opinion on it within days, not months.
• Working knowledge of AI/LLM security risks: prompt injection, jailbreaking,
unsafe outputs, tool-use abuse, identity misuse, agentic workflow escalation.
• Hands-on familiarity with AI security frameworks: NIST AI RMF, MITRE ATLAS,
OWASP LLM Top 10 / OWASP Agentic Top 10.
• Experience with cloud security across at least two of AWS, GCP, and Azure,
including native AI/ML security tooling (Bedrock Guardrails, Vertex AI floor
settings, Azure AI Content Safety).
• Identity and access management fundamentals — OAuth 2.0/2.1, OIDC, mTLS —
with interest in or exposure to non-human/workload identity (SPIFFE/SPIRE) and
agent identity models.
• Experience in a highly regulated industry (healthcare, financial services)
with HIPAA or equivalent compliance obligations.
• Strong technical writing — you can turn a vendor capability gap or a new
tool's risk profile into a control requirement someone else can implement and
test.
• Direct experience with MCP (Model Context Protocol) and A2A protocol security
Information
Locations Position Open to RemoteIndustry Information TechnologyStatus OpenJob Age 7 Day'sCreated Date 07/30/2026No.of Positions 1Duration 6 months+Zip Code