Skip to content

Open nowPosted 44 days ago

Sr AI Security Engineer

healthfirst4 open roles

Where
New York NY
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr AI Security Engineerhealthfirst · New York NY
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on healthfirst's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. healthfirst postings stay open a median of 5 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 33.9%30 days
This job: posted 44 days ago

healthfirst median: 5 days open

The posting

The Sr AI Security Engineer continuously monitors the vulnerability of the enterprise and develops engineering solutions to improve the security of the Healthfirst infrastructure. The Sr AI Security Engineer applies expertise across the Cyber Security discipline by demonstrating competency in IT Infrastructure and Application Development. The ideal candidate has a strong background in application, product, or cloud security combined with hands-on knowledge of modern AI technologies such as LLMs, Retrieval-Augmented Generation (RAG), and AI agents.

Duties and Responsibilities:

  • Perform security architecture reviews and threat modeling for AI-enabled applications.
  • Conduct hands-on security testing of LLM, RAG, and agentic AI solutions.
  • Identify vulnerabilities including prompt injection, sensitive-data exposure, insecure retrieval, excessive permissions, unsafe tool use, and authorization weaknesses.
  • Assess security risks associated with AI agents, APIs, model integrations, vector databases, and third-party AI services.
  • Partner with developers and AI engineering teams to design and implement practical security controls.
  • Develop reusable security patterns and guardrails for common AI architectures.
  • Build or automate security tests and tools used to evaluate AI applications.
  • Help protect PHI, PII, credentials, and other sensitive information used by AI systems.
  • Evaluate emerging AI security threats and translate relevant findings into engineering guidance.
  • Support the organization's broader application security and secure AI development practices.
  • Help ensure AI systems handling sensitive healthcare and enterprise information are designed with appropriate security and privacy controls.
  • Assess how PHI, PII, and other sensitive information moves through prompts, models, APIs, retrieval systems, embeddings, vector stores, logs, agents, and downstream systems.
  • Partner with privacy, compliance, legal, risk, and AI governance teams to translate requirements into practical technical controls.
  • Support secure and responsible AI adoption consistent with organizational policies and applicable healthcare and regulatory requirements.
  • Additional duties as required.

Minimum Qualifications:

  • Technical Degree in Computer Science or Cyber Security and/or equivalent work experience
  • Prior work Cyber Security work experience
  • Experience in security engineering, vulnerability assessment, threat hunting, and incident response
  • High School diploma or GED from an accredited institution

Preferred Qualifications:

  • 5+ years of experience in application security, product security, security engineering, cloud security, offensive security, or a related technical security discipline.
  • Strong understanding of application and API security, authentication, authorization, identity, data protection, and secure software development.
  • Hands-on experience with security architecture reviews, threat modeling, vulnerability assessment, penetration testing, or security testing.
  • Working knowledge of modern AI application architectures, including LLMs, model APIs, RAG, vector databases, and AI agents.
  • Understanding of AI security risks such as prompt injection, data leakage, insecure output handling, excessive agency, and unsafe tool or API access.
  • Programming or scripting experience, preferably Python.
  • Experience working with cloud-based applications and services.
  • Ability to communicate technical security risks and remediation recommendations effectively to engineering teams.
  • Experience securing production generative AI or LLM applications.
  • Experience with AI/LLM security testing or red teaming.
  • Familiarity with agentic AI security, including tool permissions and least-privilege access.
  • Familiarity with Model Context Protocol (MCP) security considerations.
  • Experience with Azure OpenAI, AWS Bedrock, Google Vertex AI, or comparable AI platforms.
  • Familiarity with OWASP guidance for LLM/GenAI applications, MITRE ATLAS, or NIST AI security guidance.
  • Experience working with PHI, PII, or other sensitive data in a regulated environment.
  • Experience integrating security testing into CI/CD or DevSecOps workflows.
  • Experience with software supply-chain security and SBOM practices, including assessing third-party libraries, dependencies, models, prompts, and other AI application components for security risk.
  • Experience designing secure tool and API consumption patterns for agentic AI, including authentication, authorization, least privilege, trust boundaries, credential management, and control of agent actions.
  • Experience reviewing or implementing Infrastructure as Code (IaC) and applying security controls to cloud and AI infrastructure; experience with Terraform, Bicep, CloudFormation, or comparable frameworks preferred.

Compliance and Regulatory Responsibilities: See Above

  • License/Certification: See Above

WE ARE AN EQUAL OPPORTUNITY EMPLOYER. HF Management Services, LLC complies with all applicable laws and regulations. Applicants and employees are considered for positions and are evaluated without regard to race, color, creed, religion, sex, national origin, sexual orientation, pregnancy, age, disability, genetic information, domestic violence victim status, gender and/or gender identity or expression, military status, veteran status, citizenship or immigration status, height and weight, familial status, marital status, or unemployment status, as well as any other legally protected basis. HF Management Services, LLC shall not discriminate against any disabled employee or applicant in regard to any position for which the employee or applicant is otherwise qualified.

If you have a disability under the Americans with Disability Act or a similar law and want a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to [email protected] or calling 212-519-1798 . In your email please include a description of the accommodation you are requesting and a description of the position for which you are applying. Only reasonable accommodation requests related to applying for a position within HF Management Services, LLC will be reviewed at the e-mail address and phone number supplied. Thank you for considering a career with HF Management Services, LLC.

Know Your Rights

All hiring and recruitment at Healthfirst is transacted with a valid “@healthfirst.org” email address only or from a recruitment firm representing our Company. Any recruitment firm representing Healthfirst will readily provide you with the name and contact information of the recruiting professional representing the opportunity you are inquiring about. If you receive a communication from a sender whose domain is not @healthfirst.org, or not one of our recruitment partners, please be aware that those communications are not coming from or authorized by Healthfirst. Healthfirst will never ask you for money during the recruitment or onboarding process.

Hiring Range*:

  • Greater New York City Area (NY, NJ, CT residents): $134,600 - $194,480
  • All Other Locations (within approved locations): $119,600 - $177,905

As a candidate for this position, your salary and related elements of compensation will be contingent upon your work experience, education, licenses and certifications, and any other factors Healthfirst deems pertinent to the hiring decision.

In addition to your salary, Healthfirst offers employees a full range of benefits such as, medical, dental and vision coverage, incentive and recognition programs, life insurance, and 401k contributions (all benefits are subject to eligibility requirements). Healthfirst believes in providing a competitive compensation and benefits package wherever its employees work and live.

*The hiring range is defined as the lowest and highest salaries that Healthfirst in “good faith” would pay to a new hire, or for a job promotion, or transfer into this role.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against healthfirst's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on healthfirst's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    healthfirst's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.