Skip to main content
Tallo logoTallo logo
Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Lead AI Security Engineer

Job

Credit One Bank

Las Vegas, NV (In Person)

Full-Time

Posted 1 week ago (Updated 1 day ago) • Actively hiring

Expires 7/23/2026

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
100
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Description Position Summary We are seeking an experienced AI Security Engineer to lead the design, implementation, and operationalization of security controls for our LLM-powered applications, AI platforms, and model-hosting infrastructure. This role will focus on protecting AI systems from prompt injection, sensitive data leakage, insecure tool use, model abuse, and cloud/infrastructure threats, while helping establish secure engineering patterns for the next generation of AI-enabled products. The role sits at the intersection of Application Security, Cloud Security, and AI Platform Engineering. The ideal candidate combines offensive and defensive security expertise with strong experience in secure system design, cloud infrastructure, CI/CD, containers, and modern software delivery pipelines. You will help define and execute new AI security initiatives across the enterprise, especially in a regulated financial services environment where confidentiality, resilience, governance, and auditability are critical. Sector-specific AI governance and risk management expectations are increasingly being formalized through frameworks such as the
NIST AI RMF.
Essential Job Functions Lead security initiatives for LLM-powered applications, copilots, agentic systems, and AI-assisted workflows. Design and implement controls to reduce the risks of prompt injection, sensitive information disclosure / data leakage, improper output handling, excessive agent autonomy, model and AI supply chain risk, vector / embedding and retrieval-related weaknesses. Partner with engineering teams to embed secure-by-design patterns into AI application development, deployment, and operations. Create guardrails for AI systems that process customers, employees, and regulate financial data. Architect and implement AI gateway controls that centralize security policy enforcement for model traffic, including prompt inspection, response filtering, PII/secret redaction, model access control, rate limiting / abuse prevention, audit logging and evidence generation. Define runtime security policies for AI interactions across internal applications, APIs, tools, and model providers. Build detection and response capabilities for malicious prompts, unsafe model behavior, and data exfiltration attempts. Secure systems built on the Model Context Protocol (MCP) and related AI tool-integration patterns. Define security requirements for MCP servers, proxy servers, and tool connectors, including authentication and authorization, least privilege, schema/input validation, secrets management, network isolation, sandboxing, logging and auditability, third-party server risk review. Assess and mitigate risks associated with MCP architecture, including authorization flaws, confused-deputy scenarios, and unsafe execution paths. Partner with Cloud Security, Platform Engineering, and DevOps to implement hardening, segmentation, identity controls, observability, and incident response readiness. Work closely with Security, Engineering, Legal, Compliance, Risk, and Product teams to align AI security controls with regulatory and internal risk expectations. Help define AI security standards, reference architectures, guardrails, and review processes appropriate for a financial industry environment. Position Requirements 5+ years of experience in cybersecurity with a strong mix of offensive and defensive security tactics. Deep familiarity with the OWASP Top 10 for LLM Applications Hands-on experience with Docker, Kubernetes, and Cloud Security (AWS/Azure/GCP). Experience designing and securing AI gateways, API proxies, or centralized policy enforcement layers for AI workloads. Working knowledge of MCP server security and secure tool-integration patterns, including identity, authorization, validation, proxy risks, and logging. Strong communication skills with the ability to work across Application Security, Cloud Infrastructure, Platform Engineering, and Product Engineering teams. Familiarity with AI red teaming methodologies and adversarial testing for LLM applications. Ability to translate complex AI risks into actionable technical requirements for developers and executive stakeholders. Familiarity with regulatory frameworks (e.g., NIST
AI RMF, ISO/IEC 42001
) Credit One Bank, N.A. is a data-driven financial services company based in Las Vegas. Founded in 1984, Credit One Bank offers a spectrum of credit card products for people in all stages of financial life. Credit One Bank is an equal opportunity employer committed to diversity and inclusion and does not discriminate against any employee or applicant for employment because of age, race, religion, color, disability, sex, sexual orientation, or national origin. Reasonable accommodations can be made for those who require them, including access to job applications and workplace accommodations. Employment at Credit One Bank is based on mutual consent (also known as at-will). This means that employees and the Bank may terminate the employment relationship at any time, with or without cause and with or without notice. Please contact the recruiter for this position to learn more. Credit One Bank does not accept unsolicited resumes from agencies and is not responsible for related fees.