Senior AI Security Engineer
Wilson Sonsini Goodrich & Rosati4 months ago
Remote, United States +10 moreSenior
Base Salary
$147k - $221k/yr
Responsibilities
- Design secure-by-default patterns for LLM integrations, agentic workflows, RAG pipelines, and MCP server deployments.
- Lead security architecture reviews for MCP integrations, including tool definitions, trust boundaries, prompt injection surfaces, and authorization models.
- Build and operate AI threat-modeling and red-team capabilities covering prompt injection, jailbreaking, data exfiltration, model inversion, and supply-chain attacks.
- Engineer secure AI data pipelines with data-loss prevention, confidentiality boundaries, and least-privilege access controls.
- Evaluate and approve AI vendor integrations with IT, Information Security, and practice group leaders.
- Develop AI security standards and engineering guardrails, including secure coding practices, output validation, hallucination detection, and audit logging.
- Secure agentic AI systems through guardrails, human-in-the-loop controls, and scoped permissions.
- Serve as the firm’s technical authority for AI security and communicate complex security concepts to nontechnical stakeholders.
Requirements
- Bachelor’s degree in Computer Science, cybersecurity, or a related technical field.
- At least 5 years of experience in application security, cloud security, or AI/ML engineering, including at least 2 years focused on AI system security.
- Hands-on familiarity with Model Context Protocol, including MCP server structure, tool definitions, code auditing, and secure enterprise deployment patterns.
- Experience with AI threat modeling, OWASP LLM Top 10, prompt injection, jailbreaking, data poisoning, model extraction, and production mitigations.
- Strong command of AWS, Azure, or GCP cloud security fundamentals applied to AI workloads.
- Experience securing multi-step, tool-using, and autonomous agentic AI systems.
- Ability to communicate complex AI security concepts clearly to attorneys and firm leadership.
- Law firm experience is a plus.
- Relevant certifications such as OSCP, GREM, or Azure Security Engineer are valued.
- Hands-on experimentation, original research, a strong GitHub profile, or CTF wins are valued.
Benefits
- Fully virtual opportunity.
- Highly competitive salary and benefits package.
- Compensation may include a discretionary year-end merit bonus based on performance.
- Primary posting location is Palo Alto, with other listed locations available.