Principal AI & Cloud Security Engineer
Agent
Agentic Ai
Agentic Ai Systems
Ai Security
Artificial Intelligence
Azure
Cloud
Cloud Platform
Cloud Platforms
Cloud Security
Cloud Security Posture Management
Data Security
Defender For Cloud
Engineer
Identity and Access Management
Information Security
InfoSec
Risk Governance
Security
Security Automation
Security Compliance
Security Operations
Security Standards
Security Testing
Solution Architecture
Job Description
Principal AI & Cloud Security Engineer role for a remote, senior individual contributor responsible for securing AI-powered solutions and Azure cloud adoption across the organization.
Responsibilities
- Define and lead enterprise security strategy and architecture for AI-powered systems and Azure cloud environments, covering identity, network security, data protection, and secure cloud and hybrid designs.
- Establish and govern security controls, guardrails, and runtime protections for agentic AI workflows, including tools such as Claude, GitHub Copilot, and custom AI agents.
- Lead threat modeling for AI systems and Azure-hosted workloads, addressing risks from adversarial inputs, cloud vulnerabilities, autonomous agents, and emerging attack vectors.
- Assess AI-generated and cloud-integrated code for security, quality, correctness, and performance; define enterprise standards for secure code review.
- Architect and oversee security tooling and monitoring to evaluate, monitor, and harden AI agents and Azure resources at scale using Microsoft Defender for Cloud, Azure Monitor, and Microsoft Sentinel.
- Embed security governance into the software development lifecycle and Azure DevSecOps pipelines via Security Posture Management, Azure Policy, Key Vault, and Infrastructure-as-Code standards.
- Research emerging AI and cloud security threats, regulations, and industry trends; translate findings into actionable enterprise security improvements.
- Mentor and influence engineering teams on secure AI adoption, cloud security best practices, and enterprise security standards.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field (Required). An equivalent combination of education and experience may be considered in lieu of a degree.
- Master’s degree (Preferred).
- 8+ years of experience in security engineering, secure SDLC, threat modeling, and Azure cloud security, including designing and governing security controls for AI/ML, generative AI, and agentic systems in enterprise cloud environments (Required).
- Financial services or banking environment experience (Preferred).
- Industry-recognized security certifications such as CISSP, Azure Security Engineer, GIAC, or similar credentials (Preferred).
Technologies
- Azure
- Claude
- GitHub Copilot
- Microsoft Defender for Cloud
- Azure Monitor
- Microsoft Sentinel
- Microsoft Entra ID
- Azure Policy
- Key Vault
- Security Posture Management
- Infrastructure-as-Code
- Bicep
- ARM
- Terraform
- Python
- Go
- Rust
- C/C++
Benefits
- Targeted starting salary range (based on geography & experience): $135,000 - $178,000 per year.
- Comprehensive employee benefits: medical, dental, vision, LTD, STD, and life.
- Paid vacation, sick time, and 11 company paid holidays.
- 401k with up to 4% match.
- Tuition reimbursement.
What Helps You Shine
- Ability to communicate complex security concepts clearly to both technical and non-technical audiences.
- Strength in analyzing emerging threats and translating risks into practical enterprise security strategies.
- Deep expertise in Azure cloud security, including Microsoft Entra ID, network security, data protection, defense-in-depth, and zero-trust architecture.
- Understanding of how to secure and govern AI/ML platforms, large language models, and agentic AI architectures.
- Hands-on experience evaluating AI-generated outputs and implementing guardrails, validation controls, and runtime protections.
- Advanced secure coding and DevSecOps experience across modern languages such as Python, Go, Rust, or C/C++.
- Knowledge of Cloud Security Posture Management and Infrastructure-as-Code, including Bicep, ARM, and Terraform.
- Understanding of regulatory, risk, and security considerations common within financial services environments.
Travel
- Up to 20% travel may be required.
Location: Remote
Minimum experience: 8 years
Education: Bachelor’s degree in a related field (or equivalent education and experience)