
Principal AI Governance & Security Engineer
Toyota North America1 day ago
Plano, TX, USAStaff+
Responsibilities
- Design and maintain enterprise AI governance standards, policies, procedures, risk tiers, lifecycle gates, approval workflows, monitoring, and remediation processes.
- Own the Agent Registry and AI inventory, including registration, versioning, and prevention of shadow-AI deployments.
- Translate governance, security, privacy, risk, and compliance requirements into repeatable, testable engineering controls and staged enforcement.
- Perform AI-specific threat modeling and risk assessments covering prompt injection, data poisoning, adversarial attacks, model theft, and data exfiltration.
- Design agent guardrails, isolation, least-privilege access, sandboxed execution, non-human identity, secrets management, and mediated tool access.
- Build AI incident response playbooks, lead red-team exercises, and integrate AI security events with enterprise SIEM systems.
- Embed with product, use-case, and platform teams to design and ship guardrails, evaluation pipelines, agent and MCP registrations, and human-in-the-loop approval flows.
- Lead design reviews, establish engineering standards, and mentor engineers across the governance and security control stack.
Requirements
- 12+ years of software engineering experience with demonstrated AI/ML or data governance and AI/ML information-security experience.
- Experience designing and implementing enterprise AI or data governance frameworks and operational governance processes in production.
- Ability to translate security, risk, privacy, and compliance requirements into executable controls, measurable tests, and working software.
- Deep understanding of AI/model risk and responsible AI, with working knowledge of SR 11-7, NIST AI RMF, the EU AI Act, and ISO/IEC 42001.
- Practical AI security experience including threat modeling, guardrails, identity and access management, secrets management, and least-privilege design.
- Experience governing and securing GenAI, RAG, and agentic systems, including registries, MCP or comparable tool mediation, and evaluation frameworks.
- Strong software, data-engineering, or automation skills with production experience on a major cloud platform; AWS is preferred.
- Strong communication skills for explaining technical AI risks and control gaps to engineers and senior executives.
- Preferred experience governing or securing enterprise AI/GenAI programs in financial services or another regulated industry.
- Preferred hands-on experience with AWS Bedrock, AgentCore, Bedrock Guardrails, Cedar, LLM and agent evaluation frameworks, NeMo Guardrails, or Llama Guard.
- Relevant certifications such as CISSP, CCSP, CRISC, CISA, a Certified AI Security/Governance credential, or a model-risk certification are preferred.
Benefits
- Teamwork-focused and flexible work environment with professional growth, development programs, and tuition reimbursement.
- Team Member Vehicle Purchase Discount and Toyota Team Member Lease Vehicle Program when applicable.
- Comprehensive health care and wellness plans for the employee’s family.
- Toyota 401(k) Savings Plan with company match and, when applicable, an annual employer retirement contribution.
- Paid holidays and paid time off.
- Referral services for prenatal services, adoption, childcare, schools, and related needs.
- Health Savings Account, Health Care FSA, and Dependent Care FSA.
- Relocation assistance when applicable.
About Toyota North America
At Toyota, we’re known for making some of the highest quality vehicles on the road. But there is more to our story. We believe in putting people first and creating opportunities for our team members to build careers as unique as they are. As one of the world’s most admired brands, we are leading the way to the future of mobility, so everyone can move freely, happily and comfortably. We have big dreams and believe that nothing is impossible. Ready to Dream, Do and Grow with us?