
Lead AI Application Security Engineer
GXO Logistics14 days ago
Remote, United StatesStaff+
Responsibilities
- Lead security testing and AI red teaming for LLMs, agentic AI systems, ML models, and the Enterprise AI Platform.
- Identify and address risks involving prompt injection, model manipulation, data leakage, RAG pipelines, and AI supply chains.
- Design, implement, and maintain AI-aware DevSecOps practices across CI/CD pipelines, cloud infrastructure, model deployments, and runtime environments.
- Develop secure AI development standards, threat models, and security architecture for AI/ML workloads.
- Evaluate and manage AI security tooling, including AI firewalls, prompt-injection detection, runtime protections, model scanning, and security automation.
- Partner with application, cloud, infrastructure, data engineering, and Information Security teams on architecture, platform development, incident response, governance, and continuous improvement.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or equivalent related work or military experience.
- Relevant AI, cloud, or application security certifications.
- At least 7 years of experience in application security, DevSecOps, cloud security engineering, or security engineering with progressive technical leadership responsibilities.
- Hands-on experience securing AI/ML platforms, LLM applications, agentic AI systems, or enterprise AI infrastructure.
- Strong expertise in application security, secure CI/CD pipelines, Kubernetes, container security, API security, Infrastructure-as-Code, cloud security, and DevSecOps practices.
- Experience with Google Cloud Platform security, including Vertex AI, GKE, IAM, KMS, VPC Service Controls, Cloud Logging, and cloud-native AI workloads.
- Deep understanding of OWASP Top 10 for LLMs, OWASP Agentic Applications, MITRE ATLAS, NIST AI RMF, AI threat modeling, prompt-injection defense, model supply-chain security, and AI red teaming.
- Preferred experience securing AWS, Azure, OCI, or hybrid cloud environments, enterprise identity and access management platforms, and Snowflake security.
- Preferred experience with NVIDIA Garak, Microsoft PyRIT, Promptfoo, Wiz, Checkmarx, Invicti, or similar AI security platforms.
- Preferred knowledge of EU AI Act requirements, AI governance, model lifecycle security, MLOps/LLMOps, Lean automation, and enterprise AI compliance frameworks.
Benefits
- Full medical, dental, and vision insurance.
- 401(k), life insurance, disability insurance, and participation in a company incentive plan.
- Equal Opportunity employer, including Disabled/Veterans.
- Employees and visitors must comply with GXO COVID safety policies and applicable CDC, OSHA, state, and local requirements.
- Conditional employment offers may require passing a pre-employment drug test.
Tech Stack
Categories
About GXO Logistics
GXO Logistics provides contract logistics services, designing and operating warehouses and fulfillment centers with advanced automation, robotics, and data-driven processes for retailers, e-commerce platforms, consumer goods companies, and manufacturers. Its offerings include e-commerce fulfillment, reverse logistics, and supply chain management. The company was formed in 2021 as a spin-off from XPO Logistics, is headquartered in Greenwich, Connecticut, and is publicly traded on the NYSE.