Principal AI Security Engineer

SCAN Health PlanLong Beach, CA
Hybrid

About The Position

SCAN is seeking a visionary Principal AI Security Engineer to serve as the primary architect and guardian of our Artificial Intelligence ecosystem. This role reports directly to the Director of Cybersecurity and is responsible for the end-to-end security of our AI architectures, ensuring that innovation never comes at the expense of integrity. This is a high-impact, "player-coach" role where you will provide strategic governance and framework development while remaining deeply hands-on with enterprise AI configurations, specifically within the Azure AI stack. You will be the technical authority ensuring our AI identities and data workflows are impenetrable, from securing Model Context Protocol (MCP) implementations to building robust guardrails in Azure AI Foundry.

Requirements

  • 10+ years in Cybersecurity, with at least 3+ years focused specifically on AI/ML Security.
  • Proven track record securing Azure OpenAI, Azure AI Search, and Azure Foundry.
  • Deep understanding of LLM vulnerabilities (Prompt Injection, Insecure Output Handling, Training Data Poisoning).
  • Expertise in securing data workflows for AI, including vector database security and sensitive data masking.
  • Extensive knowledge of AI Governance frameworks and the regulatory landscape (EU AI Act, etc.).
  • Platforms: Azure AI Studio, Azure Machine Learning, Azure Kubernetes Service (AKS).
  • AI Protocols: Experience with Model Context Protocol (MCP) and API security (REST, gRPC).
  • Languages: Proficiency in Python and PowerShell/Bash for automation and security tooling.
  • Identity: Expert-level knowledge of Azure Entra ID (formerly Azure AD) and Managed Identities for AI workloads.

Responsibilities

  • Design and implement secure-by-design architectures for the entire AI lifecycle, including data ingestion, model training, fine-tuning, and inference.
  • Lead the security configuration for Azure OpenAI Studio, Azure AI Foundry, and Azure AI Search, ensuring enterprise-grade protection.
  • Develop and deploy security controls, including prompt injection mitigations, rate limiting, and content filtering.
  • Securely implement and oversee Model Context Protocol (MCP) to facilitate safe communication between AI models and local/remote data sources.
  • Establish and maintain AI security standards based on global frameworks (e.g., NIST AI RMF, ISO/IEC 42001, OWASP Top 10 for LLMs).
  • Draft enterprise-wide policies for responsible AI usage, data privacy, and model risk management.
  • Architect sophisticated identity management for AI agents (Workload Identities) and ensure data-at-rest/motion is encrypted and permissioned via Azure RBAC and Entra ID.
  • Build automated guardrails to prevent data leakage and ensure model outputs remain within ethical and legal boundaries.
  • Conduct AI-specific threat modeling and red-teaming exercises to identify vulnerabilities in RAG (Retrieval-Augmented Generation) patterns.
  • Partner with the SOC to develop monitoring dashboards for AI-related anomalies and security events.

Benefits

  • Base salary range: $125,400 to $181,419 annually
  • An annual employee bonus program
  • Robust Wellness Program
  • Generous paid-time-off (PTO)
  • 11 paid holidays per year, 1 floating holiday, birthday off, and 2 volunteer days
  • Excellent 401(k) Retirement Saving Plan with employer match
  • Robust employee recognition program
  • Tuition reimbursement
  • An opportunity to become part of a team that makes a difference to our members and our community every day!
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service