layiq
worthy; deserving; fitting; suitable.
A role, opportunity, or path that merits attention, time, and pursuit.
Loading LAYIQ…Job opportunity
Remote
Source: GuidePoint Security careers · View original posting
From GuidePoint Security's posting. “We” and “our” refer to the employer.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
General Description
The GuidePoint Security North Central region is seeking a skilled AI Security Engineer to join our growing AI Security Services team within the Automation and AI Practice. You will assist customers in the design, implementation, security, and operational management of generative AI security solutions — including AI governance assessments, LLM and agent security testing, shadow AI discovery, agentic workflow development, and architecture reviews.
You will work closely with peers across multiple domains including AppSec, Cloud Security, and Identity and Access Management to deliver holistic and secure solutions adhering to industry best practices. This role offers the opportunity to contribute directly to the continued growth of our AI security practice and its expanding service portfolio.
Conduct secure configuration reviews and security assessments of enterprise AI platforms (e.g., Anthropic Claude Enterprise, OpenAI ChatGPT Enterprise, Microsoft Copilot) against established control domains — including identity and provisioning, network and access enforcement, data protection and retention, and audit and compliance — identifying vulnerabilities, attack surfaces, and gaps against industry frameworks (e.g., OWASP LLM Top 10, MITRE ATLAS)
Lead threat modeling exercises specific to AI workloads, covering prompt injection, model inversion, data poisoning, supply chain risks, excessive agency, privilege escalation through tool chaining, and unauthorized cross-application data movement across SaaS, self-hosted, and local AI deployments
Assess AI coding tools and development environments — including Claude Code, OpenAI Codex, Open Code, Cursor, and MCP servers — for sandbox isolation, plugin allowlisting, secrets access, network egress controls, and CI/CD pipeline security
Advise client teams on securely integrating SaaS AI services and APIs (e.g., OpenAI, Azure OpenAI, AWS Bedrock) into enterprise applications, including safe handling of credentials, outputs, and user data
Evaluate and recommend controls for data ingestion pipelines, RAG architectures, and vector databases to prevent unauthorized data exposure, leakage through model outputs, or non-compliant data processing — including zero data retention enforcement, sensitivity labeling, data classification, and encryption key management
Conduct shadow AI discovery engagements to inventory unsanctioned AI tool usage and assess associated data exposure risks across client environments
Evaluate security controls and guardrails across AI platforms, including identity and access management, DLP integration, conditional access policies, SIEM and logging configurations, human-in-the-loop mechanisms, and AI-specific runtime protections
Design, build, and deploy AI agent workflows including use-case design, agent architecture, and integration with security tooling and automation platforms
Perform security architecture reviews for organizations deploying AI agents that connect to tools, data sources, or other agents via MCP or agentic frameworks, delivering reference architectures and recommendations
Develop and deliver engagement artifacts including secure configuration review reports, prioritized findings registers, AI security control matrices, reference architectures, risk assessments, control frameworks, and secure enablement roadmaps
Contribute to the development of long-term AI security strategies for clients, including prioritized remediation roadmaps, capability maturity assessments, and investment recommendations
Serve as a trusted security advisor bridging business stakeholders, AI/ML engineers, IT operations, and information security teams — conducting stakeholder interviews and facilitating knowledge transfer sessions covering AI platform administration, troubleshooting, and operational runbooks
Continuously track emerging AI security research, adversarial techniques, regulatory developments, and vendor security advisories (e.g., Anthropic, OpenAI, Microsoft feature releases) to keep client guidance relevant and proactive
3+ years of experience in security engineering with a significant focus on cloud security and/or application security
Hands-on experience implementing, managing, securing, and supporting agentic AI solutions within an enterprise context, including enterprise AI platforms such as Anthropic Claude (Enterprise, Desktop, Cowork, Code), OpenAI (ChatGPT Enterprise, Codex, API), or Microsoft Copilot
Understanding of AI-specific security challenges including prompt injection, data poisoning, supply chain security, model extraction attacks, excessive agency, and privilege escalation through tool chaining
Up to 10% travel
Sedentary work
Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day
We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.
Employer posted:
Reddit · San Francisco, CA
Chalk · San Francisco, California, United States; New York, United States
Alpha Financial Markets Consulting · United States
Uber Freight · Frisco, TX 75034, United States
Reddit · San Francisco, CA
Anduril · Reston, Virginia, United States; Santa Ana, California, United States