
Director, Security Products: Key Management
DigitalOcean9 hours ago
Base Salary
$230k - $288k/yr
Responsibilities
- Define and integrate AI security controls into customer-facing products with Product Security and Engineering leadership.
- Build, deploy, and serve AI/ML security models, guardrails, tooling, and automations, including monitoring for model drift and performance.
- Lead adversarial testing and AI red teaming covering jailbreaking, prompt injection, evasion, and poisoning.
- Conduct security reviews and architectural sign-off for major AI initiatives from design through launch.
- Threat model the AI lifecycle across ingestion, training, fine-tuning, evaluation, serving, RAG, agent frameworks, and monitoring.
- Own the AI Security strategy, multi-year roadmap, investment priorities, and risk prioritization.
- Establish and lead the AI Risk & Governance framework, including policies, standards, and controls.
- Represent AI security in executive and board-level briefings and define positions on emerging AI security topics.
Requirements
- 10+ years of cybersecurity experience, including 4–5 years focused on AI/ML security, adversarial machine learning, or security data science in a production cloud or technology environment.
- Demonstrated ownership of organizational AI or security strategies and programs.
- Practitioner-level expertise in adversarial ML attacks and defenses, including evasion, poisoning, model extraction, membership inference, and prompt injection.
- Ability to evaluate academic AI security research and translate it into engineering guidance and policy.
- Experience communicating technical risk and investment decisions to executives and senior leadership.
- Strong programming skills in Python and Go, with experience building security tooling and automation.
- Experience reviewing AI/ML architectures including data ingestion, feature engineering, training pipelines, model serving, and continuous monitoring.
- Hands-on experience with AI red-team, defensive, and model supply-chain tooling.
- Bachelor’s or Master’s degree in Computer Science, Information Security, Mathematics, or a related field, or equivalent practical experience.
- Fluency in OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, and the EU AI Act.
- Experience with a cloud provider, security product company, or large-scale internet platform operating AI/ML systems at customer-facing scale.
- Familiarity with production LLM security, including RAG pipelines, agentic frameworks, model APIs, prompt injection, jailbreaking, and data exfiltration.
Benefits
- Remote role.
- Base compensation range of $230,400–$288,000, with potential bonus and equity compensation for eligible employees.
- Reimbursement for relevant conferences, training, and education, plus access to LinkedIn Learning courses.
- Employee Assistance Program, local employee meetups, and flexible time off policy.
- Employees may apply to a maximum of three positions within any 180-day period.
About DigitalOcean
DigitalOcean provides cloud infrastructure and platform services for developers, startups, and small to mid-sized businesses, including virtual machines (Droplets), managed Kubernetes and databases, object/block storage, networking, and GPUs for AI workloads. It operates a usage-based, self-service public cloud with APIs, CLI, and a marketplace to deploy and scale applications. Founded in 2012 and headquartered in Broomfield, Colorado, DigitalOcean is a public company listed on the NYSE.