Senior Staff Security Engineer, AI Security
Ripple · New York, NY, United States
About this role
**Senior Staff Security Engineer, AI Security** **About Ripple** At Ripple, we’re building a world where value moves like information does today—improving the global financial system and creating greater economic fairness and opportunity. --- **THE WORK** As a Senior Staff Security Engineer focused on AI Security, you’ll be Ripple’s deepest technical expert at the intersection of artificial intelligence and security. This is a high-impact individual contributor role spanning two mandates: - Securing AI systems that Ripple builds and operates - Using AI to make Ripple’s security function faster, smarter, and more scalable You’ll lead AI security strategy across the agentic SDLC, define and operationalize guardrails for LLM and agentic AI adoption, and build AI-powered security tooling in partnership with the broader organization. You’ll also help shape Ripple’s external posture on AI security through industry standards, regulatory discussions, and published security practices. --- **WHAT YOU’LL DO** - Drive the AI Security technical strategy and roadmap, including how Ripple secures AI systems and embeds controls into the AI development lifecycle. - Design and implement security controls for LLM-integrated and agentic AI systems (e.g., sandboxing, identity/permission scoping, runtime monitoring, and containment of autonomous actions beyond authorized scope). - Own AI security across the Controlled Agentic SDLC: establish guardrails, AI provenance standards, dual-review requirements, and audit trail controls for AI-assisted development. - Lead security reviews and risk assessments for AI integrations entering production (LLM APIs, SaaS copilots, AI code editors, agentic workflows, third-party MCP servers, and vendor-embedded AI). - Build and scale Ripple’s Shadow AI detection capability to surface unsanctioned AI usage and ensure workflows operate within Ripple’s auditable perimeter. - Serve as the go-to technical resource on agentic AI risks (e.g., MCP server security, tool poisoning, prompt injection at the orchestration layer, and excessive agency in multi-agent systems) and translate emerging threats into mitigations. - Shape Ripple’s external AI security posture by contributing to industry frameworks, engaging regulators, and publishing research. --- **WHAT YOU’LL BRING** - 10+ years of Security Engineering experience with depth in at least two domains (e.g., Product Security, Cloud Security, Security Operations), plus meaningful hands-on exposure to AI/ML security. - Strong understanding of AI/LLM security concepts (prompt injection, jailbreaks, data poisoning, model extraction, RAG manipulation, and agentic risks like tool poisoning and MCP server vulnerabilities). - Experience securing agentic AI systems (sandboxing, permission scoping, human-in-the-loop design, runtime monitoring). - Fluency across core Security Engineering domains (AWS/GCP/Azure cloud security, CI/CD pipeline security, container/Kubernetes security, IAM, API security) and how they apply in AI contexts. - Strong threat modeling instincts (e.g., STRIDE, MITRE ATLAS, OWASP LLM Top 10, or your own approach). - Experience in FinTech/crypto or other highly regulated environments is a plus (e.g., NYDFS, MAS, DORA, SOC 2 as they relate to AI adoption). - Ability to work across teams and influence technical direction without direct authority. - A builder’s mindset—comfortable building in ambiguity and raising the bar in an area still being defined. *Other common
Listing freshness
CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.