|
Search Jobvertise Jobs
| |
Jobvertise
|
Director Ai Security Platform Engineer Location: US-MD-Bethesda Email Job
| Report Job
Position Overview We are seeking a Director, AI Security Platform Engineer to serve as a hands-on engineering leader responsible for defining, building, and evolving a multi-service security compliance platform that serves as the connective tissue across an enterprise AI security program. This platform will bring together capabilities spanning agent governance, edge defense, continuous testing, compliance evidence, and security operations, creating a unified technical architecture for evidence collection, control management, risk scoring, and compliance reporting. This is a player-coach leadership role(link removed) You will lead and grow a small, nimble engineering team while remaining the platform's strongest individual contributor. The role is approximately 60% hands-on engineering and architecture and 40% people leadership and cross-organizational coordination(link removed)> You will be expected to write production code, own architecture and technology decisions, establish integration contracts, mentor engineers, and influence technical direction across security, engineering, privacy, governance, and enterprise architecture teams. The ideal candidate combines senior-level distributed systems engineering, security platform expertise, AI/agentic system knowledge, and hands-on technical leadership(link removed) You should be comfortable resolving an architectural or protocol decision, implementing the service that proves it out, mentoring an engineer, and aligning multiple teams on an integration contract. Candidate Profile Required Experience & Qualifications - Master's degree in Computer Science, Cybersecurity, or a related STEM field, or commensurate experience in the role.
- 8+ years of experience in software engineering or architecture, including production distributed systems at enterprise scale.
- 5+ years of experience in security engineering, compliance automation, or platform development.
- Demonstrated experience designing and shipping platforms consumed by other engineering teams and multiple customer personas(link removed)>
- Proven experience leading a small engineering team as a hands-on player-coach, including hiring, mentoring, and growing engineers while remaining a strong individual contributor.
- Track record of cross-organizational technical leadership, influencing architecture decisions across team boundaries through design quality and stakeholder alignment, including without direct authority.
- Experience implementing regulatory compliance frameworks such as:
- Strong communication skills with the ability to:
- Brief senior leadership
- Draft Architectural Decision Records (ADRs)
- Coordinate across security, engineering, privacy, and governance teams
Preferred Experience - Experience defining and operating a NIST OSCAL-native compliance system of record across multiple OSCAL models, including:
- Catalog
- Profile
- Component Definition
- System Security Plan (SSP)
- Assessment Results
- POA&M
- Experience building agent-native API surfaces, including MCP or equivalent, consumed by AI systems rather than only human clients.
- Prior success establishing an inner-source platform with an active contributor community across multiple engineering teams.
- OSCAL experience is preferred but not mandatory.
Key Responsibilities Platform Architecture & Core Development - Define the end-to-end architecture for a multi-service security compliance platform covering evidence collection, controls system of record, and risk scoring.
- Build the platform's core services and remain accountable for production implementation.
- Own technology selection, protocol decisions, data model design, and architectural direction.
- Design solutions capable of supporting enterprise-scale production adoption.
Team Leadership & Mentorship - Lead, grow, and mentor a small, nimble engineering team.
- Set technical direction and drive code and design reviews.
- Unblock engineers and provide hands-on technical guidance.
- Own hiring, delivery planning, and performance development.
- Maintain a high-leverage, lean engineering team without unnecessary process overhead.
- Lead as a player-coach, shipping alongside the team rather than managing exclusively from above.
AI & Agent-Native Platform Engineering - Design and build the agent consumption layer that enables AI agents across the security organization to access, query, and reason about compliance state.
- Define authentication models, rate limiting, and consumption patterns optimized for AI agent workloads(link removed)>
- Design and troubleshoot agentic systems and AI-powered platform environments.
- Build and maintain agent-native APIs and integrations.
Compliance Data & Security Modeling - Design and implement how security controls decompose from policy to implementation(link removed)>
- Define how evidence maps to compliance verdicts.
- Ensure audit trails remain immutable, versioned, and OSCAL-aligned(link removed)>
- Build schemas, migrations, and query interfaces supporting compliance and audit requirements.
- Develop data structures supporting control hierarchies, compliance relationships, lineage, and risk scoring.
Enterprise Integration Engineering - Build integration services connecting:
- Enterprise architecture platforms
- ITSM systems
- Cloud security tooling
- Security data lakes
- Create a coherent application identity and compliance graph across enterprise systems.
- Develop and operate reconciliation logic to resolve competing data sources.
Architecture & Technical Decision Ownership - Own Architectural Decision Records (ADRs) and technology selection.
- Make and document decisions involving:
- Protocols
- Storage engines
- Data formats
- Deployment topology
- Clearly document technical rationale for engineering teams and platform consumers.
Inner-Source Platform Engineering - Design and implement contribution models that allow other security engineering teams to extend the platform.
- Enable teams to add:
- Evidence adapters
- Control domains
- Consumer integrations
- Maintain architectural consistency and prevent platform drift.
- Support developer experience, API documentation, and platform onboarding.
Cross-Organizational Technical Leadership - Coordinate with:
- Enterprise Architecture
- Security Governance
- Security Operations
- Compliance
- Define integration contracts, data-flow agreements, and adoption roadmaps.
- Influence technical decisions through working code and design quality, not presentations alone.
Scale & Performance Engineering - Design and implement multi-tenant consumption patterns(link removed)>
- Support high concurrency and low-latency query paths for AI agent consumers.
- Ensure the platform can support production-scale enterprise adoption.
Technical Skills & Expertise Distributed Systems & Platform Architecture - Enterprise-scale distributed systems architecture
- High-availability patterns
- Service mesh
- Event-driven architectures
- Multi-service coordination
- Platform architecture
- Infrastructure integration
- Full-stack understanding across front-end and back-end development
Candidates do not need to be specialists in every area, but must be capable of understanding and troubleshooting the entire ecosystem(link removed)> Programming - Python - required
- At least one additional systems language for production platform development:
API & Application Architecture - REST
- GraphQL
- Streaming/SSE
- API design for platform consumers
- Protocol selection and trade-offs
- Agent-native API patterns
Security Architecture - Security frameworks
- Security scoring platforms
- Large distributed security applications
- Access-control models
- RBAC implementation
- Security architecture
- Enterprise deployment models
- Secure platform engineering
- mTLS
- OAuth2 client credentials
- Service identity
- Zero-trust networking
- API security patterns
Cloud & Infrastructure - Kubernetes
- Cloud infrastructure architecture
- AWS preferred
- Service mesh
- Secrets management
- Multi-environment deployment
AI / ML & Agentic Systems - AI/ML agent frameworks
- Agentic system design
- Multi-agent orchestration
- Tool libraries
- M
DKMRBH Inc
|