{"id":1452391,"url":"https://alion.io/job/invoicecloud-senior-ai-security-engineer","title":"Senior AI Security Engineer","company":{"id":37427,"name":"InvoiceCloud","domain":"invoicecloud.net","url":"https://alion.io/company/invoicecloud","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"B","score":80,"open_postings":20,"ghost_share":0.25,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":89,"computed_at":"2026-10-09T06:01:00Z"}},"role":"AI/ML","role_family":"AI/ML","seniority":"senior","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Hyderabad, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":20000,"max_usd":42000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":28},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"IAM","optional":false},{"name":"Least Privilege","optional":false},{"name":"LLM","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"NIST AI RMF","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Platform Engineering","optional":false},{"name":"RAG","optional":false},{"name":"Red Teaming","optional":false},{"name":"SIEM","optional":false},{"name":"Threat Modeling","optional":false}],"status":"live","first_seen_at":"2026-09-29T06:09:07Z","employer_posted_date":"2026-09-29","last_verified_at":"2026-10-09T23:42:42Z","board_verified":true,"closed_at":null,"days_open":10,"trust":{"level":"ok","repost_count":0,"flags":["company_stale"],"days_open":8},"description":"About InvoiceCloud: \nInvoiceCloud is a fast-growing fintech leader recognized with 20 major awards in 2025, including USA TODAY and Boston Globe Top Workplaces, multiple SaaS Awards wins for Best Solution for Finance and FinTech, and national customer service honors from Stevie and the Business Intelligence Group. Judges also highlighted our mission to reduce digital exclusion and restore simplicity and dignity to how people pay for essential services, as well as our leadership in AI maturity and responsible innovation. It’s an award-winning, purpose-driven environment where top talent thrives. To learn more, visit InvoiceCloud.com. \nAI Security Engineer\nInvoiceCloud is a fast-growing fintech company with an award-winning culture and a leading disruptor in the electronic bill presentment and payment (EBPP) space. Serving more than 3,200 customers across the utility, government, and insurance industries, InvoiceCloud's secure and innovative SaaS platform enhances the customer experience, driving higher digital payment, AutoPay, and paperless adoption rates. By switching to InvoiceCloud, clients can improve customer engagement and satisfaction while lowering costs, accelerating payments, and reducing staff workloads. To learn more, visit InvoiceCloud.com. \nExcellence in technology, information security, and regulatory compliance are foundational to our success. InvoiceCloud has chosen an AI First approach with the technology augmenting human activities across the globe. The AI Security Engineer designs and implements security controls for AI/ML systems and generative AI capabilities, enabling safe innovation across InvoiceCloud products and internal operations. This role partners with Engineering, Data Science, Product, DevSecOps, and Security Operations to threat model AI use cases, build secure AI/ML delivery pipelines (MLSecOps), perform adversarial testing and AI red teaming, and ensure AI solutions meet security, privacy, and compliance expectations.\nMission:\nThe AI Security Engineer plays a key role in the InvoiceCloud Cybersecurity Program. This role requires strong attention to detail, persistence, expertise in application security and AI/ML risk, planning skills, self-motivation, organization, communication, and problem-solving abilities. The primary objective of this position is to consistently identify, prioritize, and reduce AI-specific security risks across the model lifecycle-data, training, evaluation, deployment, and operations-while maintaining business velocity and product quality.\nResponsibilities:\n AI Security Architecture & Secure Design\nDesign and implement security controls for AI/ML and generative AI systems across the full lifecycle (data → training → evaluation → deployment → monitoring).\nEstablish secure reference architectures for common patterns (e.g., retrieval-augmented generation (RAG), model gateways, tool/agent execution) with least privilege, data minimization, and isolation.\n Threat Modeling & Risk Assessment\nPerform AI/ML threat modeling for new and existing systems, including prompt injection, data poisoning, model extraction, data leakage, and abuse/misuse scenarios.\nMap risks to industry frameworks (e.g., OWASP Top 10 for LLM Applications, MITRE ATLAS, NIST AI RMF) and drive mitigations with engineering teams.\n Secure MLOps / MLSecOps\nPartner with DevSecOps/MLOps to integrate security into AI delivery pipelines (secure model registry, artifact signing, provenance, access control, dependency scanning, secrets management, CI/CD guardrails).\nEnsure training and inference environments are hardened (cloud IAM, network segmentation, key management, container security).\n AI Security Testing & Red Teaming\nBuild and execute AI security test plans and adversarial evaluations (prompt injection, jailbreaks, data exfiltration, content policy bypass, model evasion).\nDevelop automated test harnesses and regression suites to validate controls over time.\n Monitoring, Detection & Incident Response\nDefine and implement telemetry for AI systems (prompt/output logging, tool calls, policy decisions) with appropriate privacy controls.\nIntegrate AI security signals into SIEM/SOC workflows; create detection logic and response playbooks for AI-specific incidents.\nGovernance, Privacy & Third-Party Risk\nSupport AI governance by defining security requirements for AI use cases, third-party models/vendors, and data usage.\nPartner with Legal/Privacy/Compliance to ensure AI implementations align with internal policy and applicable regulations.\nCross-Functional Collaboration & Enablement\nProvide security guidance, training, and documentation for engineers and data scientists; raise overall AI security maturity.\nCommunicate risks and progress updates to Security leadership, ELT stakeholders, and the CISO as needed.\nQualifications:\nThis role has privileged access to highly sensitive information, intellectual property, legal matters, and complex business scenarios. The successful candidate has:\nBachelor’s degree in Computer Science, Cybersecurity, Engineering, Data Science, or related field (or equivalent practical experience).\n5+ years of experience in security engineering, application/product security, cloud security, or DevSecOps.\n2+ years of experience building or securing AI/ML systems (including LLM-based applications) in production environments.\nStrong understanding of AI/ML threats and defenses (e.g., prompt injection, data poisoning, model extraction, model inversion, adversarial inputs, data leakage, abuse/misuse).\nExperience integrating security into CI/CD and MLOps pipelines; comfortable with containerization and cloud platforms (AWS and Azure).\nPreferred: Familiarity with OWASP GenAI guidance/Top 10 for LLM Applications, MITRE ATLAS, and/or NIST AI RMF.\nPreferred: Certifications such as CISSP, CSSLP, CCSP, Azure Security certifications, or relevant GIAC certifications.\n\nPersonal Skills \nOptimistic, persistently driving for the positive outcome \nTeam player; collaborative and can work independently\nExcellent coordination and orchestration abilities \nStrong work ethic, interpersonal skills, time management, planning and execution skills \nResourceful, collaborative, ‘out of the box’ thinking \nDemonstrates a personal code of ethics, integrity, and trust\nAble to successfully navigate within varying degrees of ambiguity in a fast-paced environment \nEfficient communications skills (written/verbal) and interpersonal savvy \nPossess a good sense of self and a strong, approachable personal presence. \nPossess the determination to get results without harm, provide transparent feedback, and prioritize a positive outcome\nOutcomes \nFirst 30 days- Immersion and Formulation \nInventory current and planned AI/ML and generative AI use cases across products and internal operations; document architecture, data flows, and sensitive-data touchpoints.\nEstablish a baseline AI security posture by reviewing existing controls (access, secrets, logging, content filtering, data governance) and identifying immediate gaps.\nDefine/confirm an AI security taxonomy and intake process (risk rating, approvals, documentation, and ownership) aligned with the SDLC.\nMeet with Engineering, Data Science, Product, DevSecOps, Legal/Privacy, and SOC to align priorities, risk appetite, and escalation paths.\nSelect and socialize the primary frameworks and references for AI security (e.g., OWASP Top 10 for LLM Applications, MITRE ATLAS, NIST AI RMF) and map them to InvoiceCloud’s environment.\nIdentify and prioritize the top 2-3 near-term initiatives (e.g., secure GenAI reference architecture, AI red teaming process, model and data protection controls).\nObserve meetings and insert yourself into communications streams (design reviews, security reviews, SOC and incident review cadences). \n\nFirst 150 days- Execution \nDeliver threat models and secure design recommendations for priority AI/ML systems, including GenAI/RAG patterns and any agent/tool integrations.\nImplement a secure reference architecture and guardrails for GenAI applications (prompt injection defenses, least-privilege tool access, data-loss prevention for prompts/outputs, isolation/sandboxing where needed).\nIntegrate AI/ML security controls into MLOps pipelines (artifact integrity, model registry protections, access control, environment hardening, dependency scanning, secrets management).\nStand up an AI security testing and red teaming workflow; build a repeatable test plan and automate regression tests for known abuse cases.\nDefine and implement runtime monitoring for AI systems (prompt/output/tool telemetry, abuse detection, anomaly signals) and integrate key signals into SIEM/SOC workflows.\nDevelop AI-specific incident response playbooks (prompt injection/data exfiltration, model theft, training data compromise, malicious output) and run at least one tabletop exercise.\nProvide recurring progress updates and metrics to Security leadership and partner teams; track remediation through to closure. \n\nFirst 210 days- Results \nDeliver documented value for the top priorities defined in the Immersion and Execution phases (e.g., measurable risk reduction, improved guardrails, improved monitoring coverage, reduced data exposure).\nEstablish a sustainable operating rhythm for AI security: intake/design reviews, security testing cadence, red team findings → remediation pipeline, and monitoring/alerting ownership.\nPublish a forward-looking 6-month and 12-month AI security maturation plan (outcomes, key metrics, tooling needs, and process improvements) aligned to business goals.\nEnsure AI security requirements are embedded into product SDLC, procurement/vendor evaluations, and platform engineering standards.\nCreate executive-ready reporting that communicates AI security posture and trend insights to ELT stakeholders and the CISO.\nCompetencies \nLeadership - humble but confident, persuasive, inspirational, determined, patient, accountable, and objective \nSubject Matter Expert - recognized as, demonstrates, and qualifies as the as key knowledge base for risk \nBusiness Acumen - tempers and overlays all actions, outcomes, and initiatives with a consideration of business impact, leverages knowledge of management, development, product, legal, and business development in execution of objectives \nCritical, Multi-Dimensional Thinker - digs deep, doesn’t settle for surface answers or “how” answers to “what and why” questions; looks for the truth, not the easy and potentially wrong or most disruptive solution \nOrganization - gravitates towards bringing order to chaos and can quickly organize and maintain order from disorder \nAccountability and responsibility - ability to embrace and foster a culture of ownership by accurately forecasting, reporting, and monitoring of key metrics; recognize successful achievement \nBenefits\nWe offer a competitive benefits program including:\nMedical, dental, vision, life & disability insurance\n401(k) plan with company match\nFlexible Time Off (FTO), wellbeing days, paid holidays, and summer Fridays\nMental health resources\nPaid parental leave & Backup Care\nTuition reimbursement\nEmployee Resource Groups (ERGs)\nInvoiceCloud is committed to providing equal employment opportunities to all employees and applicants. We do not tolerate discrimination or harassment of any kind based on race, color, religion, age, sex, nationality, disability, genetic information, veteran or military status, sexual orientation, gender identity or expression, or any other characteristic protected under applicable laws.\nThis commitment applies to all aspects of employment, including recruitment, hiring, placement, promotion, termination, layoff, recall, transfer, leave, compensation, and training.\nIf you require a disability-related or religious accommodation during the application or recruitment process, and wish to discuss possible adjustments, please contact .\nClick here to review InvoiceCloud’s Job Applicant Privacy Policy.\nFor recruitment agenci...","description_format":"text","description_chars":12245,"description_truncated":true,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Flexible time off","Parental leave"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Financial Services","Billing & Subscription Management","Payment Processing & Gateways"],"lifecycle":[{"event":"open","at":"2026-09-29T08:02:57Z"}],"visa":[],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":9,"expected_fill_days":89,"reasons":["conf:1","win:early"],"computed_at":"2026-10-09T06:01:00Z"},"pay":null,"html_url":"https://alion.io/job/invoicecloud-senior-ai-security-engineer","json_url":"https://alion.io/job/invoicecloud-senior-ai-security-engineer.json","meta":{"generated_at":"2026-10-10T02:40:18Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4907,"day_limit":5000,"remaining_today":93,"minute_limit":60,"resets_at":"2026-10-11T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":37427},"rest":"https://alion.io/mcp/rest/get_company?id=37427"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Finvoicecloud-senior-ai-security-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Finvoicecloud-senior-ai-security-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Finvoicecloud-senior-ai-security-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/invoicecloud-senior-ai-security-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Finvoicecloud-senior-ai-security-engineer"}]}