AI Security Engineer

11 hours ago

Charlotte, NC, United States SunTrust Investment Services, Inc. Full-time
AI Security Engineer

The AI Security Engineer is responsible for implementing, validating, and supporting security controls for artificial intelligence, generative AI, and agentic solutions across the enterprise. This role works closely with AI engineering, application development, platform, cybersecurity, governance, and architecture teams to help ensure AI-enabled solutions are secure, resilient, compliant, and operationally ready. As a key contributor within the Forge AI Security organization, the AI Security Engineer assists in the design, implementation, testing, monitoring, and validation of security capabilities for AI-enabled applications, intelligent agents, retrieval-augmented generation (RAG) solutions, and enterprise AI platforms. The role supports security reviews, threat modeling activities, adversarial testing exercises, control validation efforts, and deployment readiness assessments throughout the AI delivery lifecycle. This position requires hands-on security engineering experience and a strong understanding of modern application security principles, cloud security, and AI security concepts. The role regularly partners with developers and solution teams to implement security controls, troubleshoot security issues, validate configurations, and improve the overall security posture of AI-enabled systems. The successful candidate will be comfortable working across no-code, low-code, and pro-code AI development environments and supporting AI solutions deployed within Microsoft Azure and AWS cloud platforms, including services such as Azure AI, Azure OpenAI, and Amazon Bedrock. Essential Duties and Responsibilities

The following is a summary of the essential functions for this role. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time. AI Security Engineering Implement and maintain security controls for AI-enabled applications, agentic workflows, intelligent automation solutions, and AI platforms. Support secure integration of AI services, APIs, orchestration frameworks, and external tool connections. Configure and validate security controls including identity protections, access controls, secrets management, logging, monitoring, and deployment safeguards. Assist engineering teams in implementing secure patterns for AI and generative AI solutions. Support AI solution development across no-code, low-code, and pro-code environments. Security Reviews and Testing Participate in security architecture reviews, threat modeling activities, and AI security assessments. Assist in identifying security risks, design weaknesses, and control gaps within AI-enabled solutions. Perform validation testing to verify effectiveness of implemented controls and security requirements. Support adversarial testing, misuse-case analysis, vulnerability assessments, and deployment readiness reviews. Document findings, recommendations, remediation activities, and validation results. Detection, Monitoring, and Observability Build and maintain monitoring and alerting capabilities for AI-enabled applications and workflows. Develop and enhance detection logic designed to identify suspicious prompts, unusual workflow behavior, unauthorized access attempts, and policy violations. Support collection and analysis of telemetry used to monitor AI system health, security, and compliance. Assist cybersecurity operations teams with investigation and remediation of AI-related security events. Project Support and Collaboration Partner with software engineering, platform, product, architecture, and cybersecurity teams to implement security requirements throughout the development lifecycle. Support project teams by providing technical guidance on secure implementation practices and control requirements. Participate in design reviews, working sessions, and implementation discussions to ensure security considerations are included early in the delivery process. Assist in remediation planning and implementation activities for identified security findings. Continuous Improvement Stay current on emerging AI security risks, threats, technologies, and industry trends. Contribute to the improvement of AI security controls, monitoring capabilities, testing practices, and implementation standards. Assist in the development of security documentation, implementation guides, runbooks, and operational procedures. Support automation efforts that improve security efficiency, consistency, and control effectiveness. Required Qualifications The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Bachelor's degree or equivalent education, training, and work-related experience. Minimum of 5 years of experience in security engineering or related cybersecurity roles. Advanced knowledge in cybersecurity principles, t