Base Salary
$121k - $226k/yr
Responsibilities
- Apply AI security design patterns and reference architectures to LLM integrations, agent frameworks, MCP connectors, and data pipelines.
- Lead threat modeling for new AI capabilities and drive risk mitigations into system design.
- Implement controls for agent isolation, least-privilege execution, credential scoping, and data-boundary enforcement.
- Maintain an inventory of AI tools and integrations, including data flows, permission scopes, and access controls.
- Track emerging AI security research, attack techniques, and defensive tooling.
- Run risk assessments for internal AI tools, integrations, and third-party model providers.
- Execute AI red-teaming for prompt injection, data exfiltration, model manipulation, and jailbreaking, and drive remediation.
- Operate the agent and MCP connector lifecycle from proposal through approval, deployment, monitoring, and retirement.
- Evaluate new AI tool requests through vendor risk assessments, data-handling reviews, and baseline configuration.
- Maintain AI security incident response runbooks and assist with incident response.
- Track and report AI security program metrics.
- Produce compliance evidence and documentation for SOC 2 Type II examinations and ISO 42001 certification.
- Explain technical security decisions clearly to auditors, engineers, and stakeholders.
- Partner with AI Operations and Corporate IT on inference API access controls, cloud workload isolation, and endpoint/DLP configuration.
- Contribute employee guidance on safe AI use.
Requirements
- At least 5 years of experience in security engineering, application security, or infrastructure security.
- Hands-on exposure to AI/ML systems and experience securing or building LLM-based systems, agentic frameworks, or ML pipelines in cloud environments.
- Understanding of AI-specific attack surfaces including prompt injection, tool-use exploitation, privilege escalation, data poisoning, and model or training-data leakage.
- Hands-on experience building with AI systems.
- Strong proficiency in Python and experience building security tooling, automation, and testing.
- Strong working knowledge of AWS security, including IAM, networking, container isolation, encryption, and monitoring.
- Familiarity with SOC 2, ISO 27001, ISO 42001, and NIST AI RMF, including mapping technical controls to audit requirements.
- Ability to communicate technical risk clearly to engineers, auditors, and stakeholders.
- Preferred experience with AI red-teaming or adversarial testing.
- Preferred experience with MCPs, agent orchestration frameworks, or similar agentic infrastructure.
- Preferred background in DLP, monitoring, or observability for AI or cloud workloads.
- Experience at a growth-stage B2B SaaS company is preferred.
Benefits
- Annual base salary range of $121,000-$226,000, excluded from benefit details here.
- Equity grants for all employees.
- 4% matching 401(k) program.
- Medical, dental, vision, disability, and life insurance for employees working 30+ hours per week.
- Monthly wellness stipend.
- Paid parental leave.
- Flexible vacation policy.
- Flexible hybrid work environment with attendance at the Boston office 2-3 days per week.
- Opportunities for learning, professional growth, and meaningful work in a fast-growing organization.
Categories
About Hi Marley
Hi Marley is the first intelligent conversational platform built for P&C insurance and powered by SMS. Designed by insurance professionals, Hi Marley enables lovable, convenient conversations across the entire ecosystem, saving money and time for carriers while building customer loyalty through delightful interactions. Hi Marley's industry-leading collaboration, coaching and analytics capabilities deliver crucial insights that streamline carrier operations while enabling a frictionless customer engagement experience . The solution is made for the enterprise; it’s fast to deploy, easy to use and seamlessly integrates with core insurance systems. Through its advanced conversational technology, Hi Marley reduces friction – empowering innovative carriers to reinvent the customer and employee experience.
