AI Security Specialist

Saxon Global•Wilmington, IA

About The Position

We are seeking an AI Security Specialist to protect AI systems, applications, and tools from evolving security threats and vulnerabilities. The ideal candidate will have hands-on experience securing large language models (LLMs), generative AI applications, APIs, identity and access management, and OAuth-based authentication. This role will work closely with AI engineering, application development, cloud, infrastructure, and security teams to identify risks, implement security controls, monitor for threats, and establish secure-by-design practices for new AI products and platforms.

Requirements

  • 10+ years of experience in cybersecurity, application security, cloud security, IAM, or a related security discipline.
  • Hands-on experience securing or supporting LLMs, generative AI applications, AI platforms, or AI-enabled enterprise systems.
  • Strong understanding of API security principles and common API vulnerabilities.
  • Hands-on experience with IAM concepts, platforms, roles, permissions, authentication, authorization, and access controls.
  • Strong experience implementing OAuth 2.0 and/or OpenID Connect (OIDC).
  • Understanding of SAML, JWTs, RBAC, MFA, service accounts, tokens, and identity federation.
  • Experience performing security assessments, threat modeling, vulnerability analysis, or security architecture reviews.
  • Ability to identify security risks and translate findings into practical remediation requirements.
  • Strong written and verbal communication skills, including the ability to explain technical security risks to non-technical stakeholders.
  • Experience working collaboratively with software engineers, architects, DevOps, cloud, and product teams.

Nice To Haves

  • Experience with AWS, Azure, or GCP security.
  • Experience securing Azure OpenAI, AWS Bedrock, Google Vertex AI, or comparable enterprise AI platforms.
  • Knowledge of LLM security, prompt injection, data leakage, model abuse, insecure tool use, excessive agency, and AI application security.
  • Experience with API gateways, WAFs, secrets management, SIEM, EDR, and security monitoring platforms.
  • Familiarity with AI security frameworks and standards such as OWASP Top 10 for LLM Applications, NIST AI RMF, and MITRE ATLAS.
  • Experience with DevSecOps and CI/CD security controls.
  • Experience with Python, JavaScript/TypeScript, or other programming languages used to integrate and secure AI applications.
  • Experience with Terraform or Infrastructure as Code is a plus.
  • CISSP, CEH, Security+, CCSP, or other relevant cybersecurity certification.
  • Experience working in a fast-paced technology, startup, financial-services, or enterprise environment.

Responsibilities

  • Review and assess LLM-based applications, generative AI tools, AI agents, and supporting platforms for security vulnerabilities and risks.
  • Develop and implement security controls for AI applications throughout the development and deployment lifecycle.
  • Identify, assess, and remediate API security vulnerabilities, including authentication, authorization, access control, input validation, and data exposure risks.
  • Secure APIs supporting AI applications, LLM services, model gateways, and enterprise integrations.
  • Manage user identities, roles, permissions, and access policies using Identity and Access Management (IAM) platforms.
  • Implement and maintain OAuth 2.0/OIDC-based authentication and authorization for AI applications and APIs.
  • Evaluate security risks associated with LLM prompts, model interactions, AI agents, tool calling, data access, and external integrations.
  • Monitor AI systems, APIs, and identity platforms for unusual activity, unauthorized access, abuse, and potential security threats.
  • Participate in security assessments, vulnerability reviews, threat modeling, and incident-response activities involving AI systems.
  • Partner with engineering teams to incorporate security-by-design principles into new AI products and services.
  • Develop security requirements and technical controls for AI applications before production deployment.
  • Establish and maintain AI security policies, standards, procedures, and governance requirements.
  • Assist with security reviews of third-party AI platforms, SaaS solutions, APIs, and AI-enabled applications.
  • Communicate technical security findings and remediation recommendations to both technical and non-technical stakeholders.
  • Stay current with emerging AI security threats, LLM vulnerabilities, API attacks, identity threats, and generative AI security practices.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service