Sr. Product Security Engineer

Ekman Associates, Inc

Woodland Hills, CA(remote)

JOB DETAILS
JOB TYPE
Full-time, Employee
SKILLS
Analysis Skills, Application Programming Interface (API), Applications Security, Artificial Intelligence (AI), Artificial Intelligence (AI) Agents, Business Development, Code Reviews, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Cross-Functional, Ecosystems, Human Resources, Incident Response, Internet Security, Leadership, Management Consulting, Product Engineering, Product Lifecycle, Product Testing, Risk, Security Analysis, Security Attacks, Software Development Lifecycle (SDLC), Technical Delivery, Technical Strategy, Threat Modeling
LOCATION
Woodland Hills, CA
POSTED
5 days ago
Job Description

Title: Sr. Product Security Engineer
Location: Remote

Ekman Associates is a management consulting firm that specializes in developing business, digital, and technology strategy, delivering solutions, and addressing human resource demands.

Summary:
The Application and Product Security team is looking for an Sr. Product Security Engineer to lead the protection and defense of digital applications and product ecosystem with an emphasis on securing artificial technology (AI). This role will focus on detecting, mitigating, and responding to AI-related security threats, ensuring that applications and services remain resilient against AI-cyber threats.

Responsibilities:
  • Help the team establish, lead, and execute multi-year roadmaps to mature AI security, drawing upon cross-functional partnerships to deliver security posture reviews on a repeatable basis and review new AI systems as they're developed.
  • Conduct application and product security evaluations and lead AI security assessments in a cross-functional environment, driving finding remediations;
  • Secure AI Development Lifecycle: Procure and/or build technical solutions to embed automated security checks into the AI SDLC and ML-Ops;
  • AI Threat Modeling: Threat model complex Agentic and AI systems and design security requirements collaboratively with developers, architects, and business stakeholders;
  • Code Analysis: Review code for security bugs in the context of AI-driven systems;
  • GRC: Provide leadership for AI Security policies and standards in collaboration with technology risk;
  • AI/Agent SME: Provide AI/Agent subject matter expertise for AI Incidents and Security Reviews, and help develop incident response playbooks for AI-related security incidents; and,
  • Assist in the formation of an AI Center of Excellence (ACE).
Qualifications:
  • 10+ years experience in product security, application security, and/or DevSecOps;
  • You have strong knowledge of security of safety risks of LLMs and AI Agents;
  • You have 5+ Years of experience automating security checks, including SAST, SCA, and DAST, directly into CI/CD pipelines;
  • Extensive experience with STRIDE or other threat modeling frameworks;
  • You have knowledge and experience with technologies including K8s, Containers, CI/CD, and CSPs
  • Familiarity with function and purpose of key AI platform components such as AI gateways (Kong, Databricks Mosaic AI Gateway, custom API orchestration), Model Orchestration (Examples LangChain, LlamaIndex, etc.).
Qualified Candidates Only : If you wish to learn more about this opportunity and additional qualifications/responsibilities, please submit your resume. To learn more about Ekman Associates, Inc. please visit our website at www.ekmanassociates.com

About the Company

E

Ekman Associates, Inc

INDUSTRY
Computer/IT Services