FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior AI AppSec Engineer
Capital Group. Work with application teams to ensure the security of custom and procured AI solutions .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive experience in Information Security with a focus on AI solutions, including application security, threat modeling, and automated security checks integrated into CI/CD pipelines. Possesses strong knowledge of security risks associated with Large Language Models and AI Agents, along with effective communication skills to convey security risks to stakeholders.
Highest-signal resume keywords
Information Security LeadershipThreat Modeling FrameworksAutomated Security ChecksLarge Language Models SecurityProgramming Languages: Python, Java, .NET
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Application SecurityPlatform SecurityPenetration TestingDevSecOpsNetwork SecuritySASTSCADASTAgile WorkflowsSecurity Vulnerability Review
Soft Skills
Effective CommunicationCollaborationQuick Learning Under Pressure
Tools & Technologies
KubernetesContainersCI/CDCloud Service ProvidersAgentic ToolsAI GatewaysModel Orchestration Tools
Certifications & Qualifications
CISSPSANS GIACCISA
Industry Keywords
NIST AI RMFMITRE ATLASGDPREU AI ActOWASP for LLM Top 10
Tech Stack
Tools & technologiesCloudJavaKubernetesPythonSDLC.NET
About the role
Key responsibilities & impact- Work with application teams to ensure the security of custom and procured AI solutions
- Enable Capital Group’s AI strategy by building and/or procuring solutions that protect enterprise AI platforms
- Collaborate with platform engineering, security engineering, and risk teams to support scalable, secure AI adoption
- Use agentic tooling to review code and build data-flow diagrams
- Establish threats and countermeasures and funnel them to application teams as security requirements
- Advise diverse teams across the organization and promote AI security principles
- Procure and/or build technical solutions to embed automated security checks into the AI SDLC and ML-Ops
- Threat model complex agentic and AI systems and design security requirements with developers, architects, and business stakeholders
- Review code for security vulnerabilities in AI-driven systems
- Provide thought leadership for Information Security policies and standards for AI in collaboration with technology risk
- Provide AI/Agent subject-matter expertise for AI incidents and security reviews
- Help develop incident-response playbooks for AI-related security incidents
Requirements
What you’ll need- 8+ years of relevant experience in information security
- Depth in one or more areas such as application security, platform security, penetration testing, DevSecOps, or network security
- Equivalent experience from related technical roles or demonstrable security leadership may be considered
- Strong knowledge of security and safety risks of Large Language Models and AI Agents, including OWASP for LLM Top 10, MITRE ATLAS, and NIST RMF
- 5+ years of experience automating security checks, including SAST, SCA, and DAST, directly into CI/CD pipelines
- Extensive experience with STRIDE or other threat-modeling frameworks
- Experience with agile workflows, including Scrum and Kanban
- Experience in at least one programming language: Python, Java, or .NET
- Ability to partner and collaborate effectively with stakeholder teams
- Effective communication skills and ability to outline security risks to leadership
- Ability to learn quickly and use agentic tools under pressure while managing multiple security assessments/tasks
- Preferred: Knowledge and experience with Kubernetes, containers, CI/CD, and cloud service providers
- Preferred: Familiarity with AI gateways, including Kong, Databricks Mosaic AI Gateway, or custom API orchestration
- Preferred: Familiarity with model orchestration tools such as LangChain and LlamaIndex
- Preferred: Familiarity with AI regulatory frameworks including NIST AI RMF, MITRE ATLAS, GDPR, and EU AI Act
- Preferred: Information Security certifications such as CISSP, SANS GIAC, or CISA
Benefits
Comp & perks- Competitive salary
- Individual annual performance bonus
- Capital’s annual profitability bonus
- Retirement plan where Capital contributes 15% of eligible earnings
- Generous time-away and health benefits from day one
- Flexible work options
- 2-for-1 matching gifts for charitable contributions
- Opportunity to secure annual grants for charitable organizations
- On-demand professional development resources
- Compensation and benefits according to applicable plan guidelines, restrictions, and vesting requirements