CybersecurityJobs.io
← Back to all jobs

Job Description

Compest Solutions Inc is seeking an experienced AI Security Engineer / Application Security Engineer for an onsite contract engagement supporting security work across applications, APIs, cloud services, and AI integrations. The role is based in Seattle, WA and Sunnyvale, CA, with a focus on threat modeling and hands-on adversarial testing of AI and LLM agents.

In this position, you will help teams improve security and privacy outcomes through design reviews, vulnerability identification, and practical remediation guidance, while also supporting security automation and AI-assisted security workflows where appropriate.

Role focus

  • Application, API, and cloud security reviews
  • Threat modeling for critical services and AI agents
  • Adversarial testing of AI/LLM agent behaviors and integrations

Responsibilities

  • Conduct security and privacy design reviews for applications, APIs, cloud services, engineering proposals, and AI integrations.
  • Review system architecture and data flows, including access controls, trust boundaries, authentication, authorization, and security safeguards.
  • Perform threat modeling to identify attack surfaces, attack scenarios, attack paths, mitigations, and residual risks for critical services and AI agents.
  • Conduct hands-on security and adversarial testing of AI/LLM agents, including scenarios such as:
    • Prompt injection
    • Tool misuse
    • Excessive agency
    • Unauthorized data access
    • Permission and access-control issues
    • External integrations
    • Sensitive-data exposure
  • Identify, validate, and document security vulnerabilities and provide practical remediation recommendations.
  • Collaborate with engineering, security, privacy, and third-party teams to drive remediation and validate security controls.
  • Develop reusable security assessment methodologies, checklists, threat models, test cases, and reporting templates.
  • Support security automation and AI-assisted security workflows when appropriate.

Requirements

  • 8+ years of professional experience in security engineering, application security, product security, offensive security, systems architecture, or a related technical security field.
  • Experience reviewing complex technical designs and identifying security risks in: Applications, APIs, Cloud services, Microservices, and Distributed systems.
  • Strong understanding of threat modeling, vulnerability assessment, and risk modeling.
  • Strong understanding of authentication and authorization and least-privilege principles.
  • Strong understanding of data protection and security architecture.
  • Hands-on experience with security testing, vulnerability investigation, penetration testing, adversarial testing, or security-control validation.
  • Strong technical communication skills, including the ability to explain security findings to engineering and business stakeholders.

Preferred qualifications

  • Experience assessing AI/LLM applications and autonomous AI agents.
  • Knowledge of prompt injection, jailbreaks, unsafe tool use, excessive agency, and AI data-security risks.
  • Experience with privacy and security design reviews.
  • Experience securing cloud environments.
  • Security automation experience using Python, Go, Bash, or similar languages.
  • Familiarity with application-security frameworks and industry security practices.

Technology

  • Python
  • Go
  • Bash

Location and work type

  • Onsite in Seattle, Washington and Sunnyvale, California (local candidates required)
  • Contract position

Compensation

  • USD 50 - 55 per hour

Similar Jobs