Gallo Glass Company is a family-owned company with a rich legacy in the alcohol beverage industry. They are seeking an AI Security Engineer to secure AI/ML systems, implement security controls, and partner with various teams to ensure the security and compliance of AI models.
Responsibilities:
- Secure AI/ML systems across the entire lifecycle
- Partner with Data & AI, IT, Legal, and Compliance to embed security, governance, and observability into model development, deployment, and operations
- Implement AI-specific controls and automation for generative and agentic AI
- Perform technical risk and threat assessments (including prompt injection, data poisoning, model inversion, leakage, and adversarial attacks)
- Integrate AI security tools into our stack while operationalizing responsible AI practices aligned to NIST, ISO, and emerging regulations
- Embed security into the SDLC for training pipelines, inference services, and data flows
- Define controls like model validation, access controls, provenance, bias mitigation, explainability, and integrity checks
- Design and maintain behavioral monitoring, drift and anomaly detection, and SIEM integrations
- Develop security automation and AI-driven workflows for detection, incident response, and compliance reporting
- Run adversarial evaluations and penetration tests
- Manage remediation plans
- Evaluate and pilot model scanners and content-safety solutions
- Produce clear technical reports and metrics for leadership
- Create targeted training and playbooks for secure AI development
Requirements:
- Bachelor's degree in Computer Science, Information Security or Data Science plus 2 years of experience in cybersecurity, cloud security, or application security with exposure to AI/ML systems OR High School Diploma plus 6 years of experience in cybersecurity, cloud security or application security with exposure to AI/ML systems
- Strong understanding of ML workflows (training/inference), data pipelines, and model architectures (including LLMs and generative models)
- Hands-on experience with secure coding practices, threat modeling, vulnerability assessment, and penetration testing
- Familiarity with AI-specific threats and mitigations (prompt injection, model poisoning, data leakage, adversarial examples)
- Experience in scripting and automating security tasks (Python, PowerShell, or similar) at an intermediate level
- Experience with cloud platforms and cloud-native security controls (Azure and AWS)
- Analytical, problem-solving, and communication skills at an advanced level
- Required to travel to company offices, sites, and/or meeting locations for onboarding, training, meetings, and events for development, department needs, and business delivery up to 5% of the time, with or without reasonable accommodation
- Required to be 18 years or older
- Bachelor's degree in Computer Science, Information Security or Data Science plus 4 years of experience in cybersecurity, cloud security, or application security with exposure to AI/ML systems
- Experience with AI security tools and platforms
- Certifications such as CISSP, CISM, CEH, CCSK, or AI/ethics credentials
- Experience integrating security tooling with SIEM, SOAR, and observability stacks
- Knowledge in low-code platforms (Power Platform, Power BI) and DLP/governance controls
- Experience implementing model governance, MLOps security controls, or model risk management
- Experience in agile environments and cross-functional team collaboration