
Director, Security Products: Key Management
DigitalOcean9 hours ago
Base Salary
$230k - $288k/yr
Responsibilities
- Define and drive DigitalOcean’s AI Security strategy, investment priorities, and multi-year roadmap.
- Partner with Product Security, Engineering, Security Data Science, and Security Engineering to integrate AI security controls into customer-facing products.
- Build, deploy, monitor, and improve AI/ML security models, guardrails, tooling, and automations.
- Lead adversarial testing and AI red teaming, including jailbreaking, prompt injection, evasion, and poisoning assessments.
- Conduct security reviews and provide architectural sign-off and escalation guidance for major AI product initiatives.
- Threat model the AI lifecycle across data ingestion, training, fine-tuning, evaluation, model serving, RAG, agent frameworks, and post-deployment monitoring.
- Establish policies, standards, and controls for responsible AI/ML development, deployment, and monitoring.
- Represent AI security in executive and board-level briefings and translate technical risks into business impact.
- Define organizational positions on agentic AI, model supply-chain risk, synthetic data integrity, and AI-enabled social engineering.
Requirements
- 10+ years of cybersecurity experience, including at least 4–5 years focused on AI/ML security, adversarial machine learning, or security data science in a production cloud or technology environment.
- Demonstrated experience defining and driving AI or security programs and owning organizational strategy.
- Practitioner-level expertise in adversarial ML attacks and defenses, including evasion, poisoning, model extraction, membership inference, and prompt injection.
- Ability to evaluate AI security research and translate it into engineering guidance and organizational policy.
- Experience communicating technical risk to executives and senior leadership and justifying investment decisions.
- Strong programming skills in Python and Go, with experience building security tooling, adversarial testing, detection, and guardrail capabilities.
- Experience reviewing AI/ML architectures involving data ingestion, feature engineering, training pipelines, model serving, and continuous monitoring.
- Hands-on experience with AI red-team and defensive tooling and model supply-chain frameworks.
- Bachelor’s or Master’s degree in Computer Science, Information Security, Mathematics, or a related field, or equivalent practical experience.
- Fluency in OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, and the EU AI Act.
- Experience at a cloud provider, security product company, or large-scale internet platform operating AI/ML systems at significant customer-facing scale.
- Familiarity with production LLM security, including securing RAG pipelines, agentic frameworks, and model APIs against prompt injection, jailbreaking, and data exfiltration.
Benefits
- Remote role.
- Competitive benefits that vary by local regulations and preferences, including an Employee Assistance Program, local employee meetups, and flexible time off.
- Reimbursement for relevant conferences, training, and education, plus access to LinkedIn Learning courses.
- Potential bonus in addition to base salary and equity compensation for eligible employees, including equity grants upon hire and an Employee Stock Purchase Program.
About DigitalOcean
DigitalOcean provides cloud infrastructure and platform services for developers, startups, and small to mid-sized businesses, including virtual machines (Droplets), managed Kubernetes and databases, object/block storage, networking, and GPUs for AI workloads. It operates a usage-based, self-service public cloud with APIs, CLI, and a marketplace to deploy and scale applications. Founded in 2012 and headquartered in Broomfield, Colorado, DigitalOcean is a public company listed on the NYSE.