Lead MLSecOps Security Engineer

Advanced Tech Placement
  • Roseland, NJ
  • Instant Apply
11 days ago

Job Description

We are seeking a Lead MLSecOps Security Engineer. 

What You’ll Do:

  • Design, implement, and maintain secure ML pipelines for AI/ML model evaluation, validation, deployment, and inference.
  • Assess and mitigate security risks throughout the ML lifecycle, including data ingestion, model storage, and deployment.
  • Evaluate, secure, and govern AI coding agents, autonomous agents, and agentic workflows used throughout the software development lifecycle.
  • Define and implement security guardrails for AI-assisted software development platforms, agent orchestration frameworks, and autonomous development pipelines.
  • Develop and operationalize an Agentic Development Lifecycle (ADLC) framework that incorporates security requirements, threat modeling, testing, deployment governance, and continuous security monitoring.
  • Evaluate AI Security Posture Management (AI-SPM) capabilities and establish processes for identifying, categorizing, prioritizing, and remediating risks associated with AI assets, agents, prompts, datasets, and AI-enabled applications.
  • Assess emerging threats against frontier AI models and agentic systems and recommend preventative and detective security controls to reduce enterprise risk.
  • Develop and maintain code for AI/ML pipelines using Python and CICD, ensuring robust security controls and compliance with best practices.
  • Institutionalize security scanning of AI/ML models in line with shift left strategy; interpret results and remediate identified issues.
  • Evaluate and optimize model inference deployment strategies, balancing security, performance, and resource utilization.
  • Stay current on top vulnerabilities affecting Machine Learning Models, Large Language Models (LLMs), and AI agents, such as prompt injection, data poisoning, model theft, and adversarial attacks.
  • Collaborate with data scientists, ML engineers, and security teams to drive adoption of secure ML practices.
  • Establish strong partnership with key stakeholders in technology and product organizations.
  • Perform other duties as required.

Experience You'll Need:

  • Hands-on experience with MLOps pipelines and model deployment tools (e.g., Kubeflow, MLflow, SageMaker).
  • Strong programming skills in Python and CICD for automation and pipeline development.
  • Hands-on experience with major AI coding assistants and coding agents such as GitHub Copilot, Microsoft Copilot, Cursor, Claude Code, Windsurf, or similar AI-assisted development platforms.
  • Experience using AI-driven development techniques across multiple programming languages including Python, Java, JavaScript, C#, .NET, Go, or similar technologies.
  • Strong understanding of agentic architectures, AI agents, autonomous workflows, Retrieval-Augmented Generation (RAG), and associated security considerations.
  • Experience assessing Agent Sandboxes, agent runtime environments, agent-to-tool communications, and agent execution workflows.
  • Understanding of security limitations and control mechanisms governing agent behavior, including permissions, approval workflows, runtime controls, and data protection guardrails.
  • Ability to identify, categorize, prioritize, and operationalize risks associated with AI assets, models, prompts, datasets, agents, and AI-enabled applications.
  • Deep understanding of Agentic Development Lifecycle (ADLC) principles and integration of security controls throughout planning, development, testing, deployment, and operations.
  • Knowledge of frontier AI model cybersecurity programs and the ability to reason about layered controls that mitigate AI-driven cyber attacks, adversarial ML threats, model and agent abuse.
  • Familiarity with structured (SQL, data warehouses) and unstructured (object storage, NoSQL) data systems.
  • Familiarity with Databricks
  • Experience with ML security tools for model scanning and vulnerability assessment.
  • Knowledge of top OWASP AI/ML vulnerabilities, including:

- Prompt injection
- Data and model poisoning
- Model extraction and inversion
- Adversarial example attacks
- Supply chain risks in ML components

  • Strong communication skills and ability to document and explain Cybersecurity and AI/ML security controls to technical and non-technical stakeholders.
  • Understanding of AL/ML model formats such as pickle, tensorflow, safetensors
  • Experience in rolling out model scanning solution as part of model development.
  • Understanding CI/CD pipelines covering source control, integration, and deployment (ex: Bitbucket, Jenkins, JIRA, Artifactory, Nexus, SonarQube, git, Snyk scanner).
  • Previous software engineering/architecture experience (Java, C#, .Net, JavaScript, Python) preferred.
  • Strong analytical/problem solving skills and cross functional knowledge across multiple development and security disciplines.
  • Experience with development of RESTful web services preferred.
  • Understanding of advanced iterative Agile, Cloud and Container Security, GenAI Security
  • Exceptional problem-solving skill
  • Excellent communication and presentation skills
  • Ability to be a good team player as part of remote teams
  • Self-motivated with positive attitude
  • Should be able to work independently.


Qualifications:

  • Bachelor's degree in computer science, Information / Cyber Security, Computer Systems Engineering, Computer Information Systems or equivalent education and experience required
  • Eight years or more experience in various IT or cybersecurity roles, with five or more years of experience specifically in software engineering roles.
  • Deep knowledge and understanding of AI/ML and Agentic Security and related risks
  • Candidate should be very thorough in internet technologies and highly versed with web development best practices.
  • Strong analytical/problem solving skills and cross functional knowledge across multiple development and security disciplines.
  • Ability to communicate security-related concepts to a broad range of technical and non-technical stakeholders.
  • Understanding of advanced iterative Agile and container & cloud security
  • Familiarity with micro-services architecture and Design Patterns
  • Excellent analytic skills, including qualitative and quantitative data analysis to support and defend data-driven decision-making regarding system threats, vulnerabilities, and risk
  • Any of the following are a plus but not necessary: CEH, CISSP, CSSLP, GCIA, GPEN, GWAPT

Numbers & Facts

LocationRoseland, NJ

Skills

  • Agent Communicationunmatched
  • Agile Programming Methodologiesunmatched
  • Alliance/Partner Managementunmatched
  • Analysis Skillsunmatched
  • Artificial Intelligence (AI)unmatched
  • Artificial Intelligence (AI) Agentsunmatched
  • Artificial Intelligence (AI) Programming Languagesunmatched
  • Atlassian JIRAunmatched
  • Automationunmatched
  • Best Practicesunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • Computer Programmingunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Computer Systemsunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Integrationunmatched
  • Cross-Functionalunmatched
  • Data Analysisunmatched
  • Data Modelingunmatched
  • Data Scienceunmatched
  • Data Setsunmatched
  • Data Warehousingunmatched
  • Design Patterns Programming Methodologiesunmatched
  • Establish Prioritiesunmatched
  • GCIA - GIAC Certified Intrusion Analystunmatched
  • GPEN - GIAC Penetration Testerunmatched
  • Gitunmatched
  • GitHubunmatched
  • Go Programming Language (Golang)unmatched
  • Identify Issuesunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Injectionsunmatched
  • Internet Securityunmatched
  • Internet Technologyunmatched
  • Javaunmatched
  • JavaScriptunmatched
  • Jenkinsunmatched
  • Microservicesunmatched
  • Microsoft .NETunmatched
  • Microsoft C# (C Sharp)unmatched
  • Microsoft Product Familyunmatched
  • Model Validationunmatched
  • NoSQLunmatched
  • Operations Planningunmatched
  • Presentation/Verbal Skillsunmatched
  • Problem Solving Skillsunmatched
  • Process Developmentunmatched
  • Product Lifecycleunmatched
  • Product/Service Launchunmatched
  • Programming Languagesunmatched
  • Programming Methodologiesunmatched
  • Python Programming/Scripting Languageunmatched
  • Quantitative Analysisunmatched
  • REST (Representational State Transfer)unmatched
  • Resource Utilizationunmatched
  • Riskunmatched
  • Risk Managementunmatched
  • SQL (Structured Query Language)unmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Monitoringunmatched
  • Software Developmentunmatched
  • Software Development Lifecycle (SDLC)unmatched
  • Software Engineeringunmatched
  • Source Code/Configuration Management (SCM)unmatched
  • Supply Chainunmatched
  • Systems Engineeringunmatched
  • Test Plan/Scheduleunmatched
  • Threat Modelingunmatched
  • Training Data Setsunmatched
  • Vulnerability Scannersunmatched
  • Web Programmingunmatched
  • Web Servicesunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder