JustJoin.IT Hybrydowo Senior New

Principal AI Security Engineer

Grid Dynamics Poland

⚲ Gdańsk, Kraków, Warszawa, Wrocław

Wymagania

  • Application Security
  • AWS
  • DevSecOps
  • GenAI
  • threat modeling

Opis stanowiska

We are seeking a highly experienced Principal AI Security Engineer to take ownership of the platform’s security posture. In this high-impact role, you will act as a true "Security Champion" with a high level of decision-making authority. You will not only shape the Cloud-Native DevSecOps architecture (specifically in AWS) but also pioneer the safe adoption of AI-assisted development tools within our engineering teams. This is a unique opportunity to work at the intersection of advanced cybersecurity and emerging Artificial Intelligence. Essential functions • Security Champion: Foster a "security-first" mindset across all engineering teams through training, collaboration, and the development of secure coding guidelines. • AI Security Governance: Establish robust guardrails to mitigate emerging AI risks, including prompt injection, data leakage, and insecure output handling. • Spec-Driven AI Development: Guide and mentor engineering teams in crafting robust, secure specifications for AI tools (like Claude) to ensure generated code adheres to strict standards from day one. • Threat Modeling: Conduct proactive architecture reviews and threat modeling for microservices, new features, and AI/LLM integrations before code is written. • Collaborative Code Review: Conduct security code reviews, successfully balancing the productivity benefits of AI tools with their inherent security risks. • Executive Communication: Explain complex security risks to diverse audiences, including developers, product managers, and C-level executives, with clarity and empathy. • Vulnerability Management: Triage, prioritize, and assist development teams in remediating security findings. Qualifications • Seniority & Leadership: Proven track record operating at a Principal, Architect, or Lead level within Application Security or Product Security. • Cloud-Native DevSecOps: Hands-on experience working with modern CI/CD tools and seamlessly integrating automated security testing into AWS environments. • AppSec Mastery: Deep understanding of OWASP standards, secure Software Development Life Cycles (SDLC), and modern web and mobile application architectures. • Security Automation: Proficiency in managing and automating SAST, DAST, SCA, and container security scanning tools without negatively impacting engineering velocity. • AI-Assisted Development: Practical background working with AI coding assistants (specifically Claude) and a strong understanding of spec-driven AI development. • Coding & Scripting: Proficiency in at least one modern programming language to write automation scripts and independently review complex codebases. Would be a plus • Industry Certifications: Relevant advanced security certifications (e.g., CISSP, AWS Certified Security - Specialty, CISM, CSSLP). • Compliance Knowledge: Experience with European data privacy and compliance regulations (e.g., GDPR), given the client's location. • Domain Experience: Previous experience securing platforms in the HR, payroll, fintech, or Employee Benefits sectors. • Broader AI Ecosystem: Familiarity with other GenAI models (e.g., OpenAI, Gemini) and orchestration frameworks beyond Claude. We offer • Opportunity to work on bleeding-edge projects • Work with a highly motivated and dedicated team • Competitive salary • Flexible schedule • Benefits package - medical insurance, sports • Corporate social events • Professional development opportunities • Well-equipped office About us Grid Dynamics (NASDAQ: GDYN) is a leading provider of technology consulting, platform and product engineering, AI, and advanced analytics services. Fusing technical vision with business acumen, we solve the most pressing technical challenges and enable positive business outcomes for enterprise companies undergoing business transformation. A key differentiator for Grid Dynamics is our 8 years of experience and leadership in enterprise AI, supported by profound expertise and ongoing investment in data, analytics, cloud & DevOps, application modernization and customer experience. Founded in 2006, Grid Dynamics is headquartered in Silicon Valley with offices across the Americas, Europe, and India.

🔍 Dekoder Ogłoszenia

🔴
take ownership of the platform’s security posture
Będziesz odpowiedzialny za wszystkie aspekty bezpieczeństwa platformy, co może oznaczać dużą odpowiedzialność i presję.
🔴
act as a true "Security Champion"
Oczekuje się, że będziesz aktywnie promować kulturę bezpieczeństwa i wpływać na innych, co może być trudne w przypadku braku formalnej władzy.
🔴
high level of decision-making authority
Choć brzmi to zachęcająco, faktyczny zakres decyzyjności może być ograniczony przez hierarchię firmy lub potrzebę uzyskiwania zgód.
🔴
pioneer the safe adoption of AI-assisted development tools
Może to oznaczać pracę nad nowymi, nieprzetestowanymi rozwiązaniami i konieczność radzenia sobie z nieprzewidzianymi problemami.
🔴
successfully balancing the productivity benefits of AI tools with their inherent security risks
Będziesz musiał znaleźć kompromis między szybkością rozwoju a zapewnieniem bezpieczeństwa, co może być trudne i czasochłonne.