Job Description
Responsibilities
AI Security
- Design and enforce security controls for all internal and external AI/LLM deployments
- Conduct threat modeling on AI pipelines using MITRE ATLAS and STRIDE frameworks
- Implement prompt injection defenses, output filtering, and AI audit logging
- Lead shadow AI discovery programs and define acceptable use policies
- Perform red teaming exercises against AI models and RAG systems
DevSecOps
- Own the end-to-end security of CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins)
- Integrate SAST (Semgrep,CodeQL), DAST (OWASP ZAP, Burp Suite), SCA (Snyk,Dependabot), and secrets scanning (TruffleHog,Gitleaks)
- Implement policy-as-code using OPA/Gatekeeper for Kubernetes andIaCenvironments
- Establish container security standards: image signing (Cosign/Notary), runtime policy (Falco), RBAC hardening
- Drive developer security training and threat modeling in sprint planning
Firmware Reverse Engineering & Embedded Security
- Lead firmware security assessments on IoT and edge devices usingGhidra, IDA Pro,Binwalk, Radare2
- Design and enforce secure firmware development lifecycle: signed OTA, secure boot, encrypted comms
- Develop and maintain UART/JTAG/SPI flash extraction capabilities
- Perform vulnerability research on embedded Linux, RTOS, and bare-metal firmware
- Produce actionable firmware security findings with CVSS-scored remediation roadmaps
Wireless & Network Security
- ConductWiFipenetration tests across enterprise WPA2/WPA3, 802.1X, and guest network segments
- Assess IoT wireless protocols: BLE, Zigbee, LoRa, Z-Wave for security weaknesses
- Deploy and tune Wireless Intrusion Detection Systems (WIDS)
- Develop wireless hardening standards and migration roadmaps (e.g., PSK 802.1X)
- Investigate rogue AP incidents, PMKID captures, anddeauthenticationattacks
Security Architecture & Operations
- Design Zero Trust network architecture withmicrosegmentationand identity-aware access
- Own SIEM integration (Splunk, Elastic, Sentinel) and threat intelligence operationalization
- Lead incident response for security events across firmware, cloud, AI, and wireless layers
- Produce executive-level risk reports translating technical findings into business impact
Required Qualifications & Domain Expertise
- 3+ years in security engineering, with demonstrableexpertiseacross at least 3 of the 4 core domains (AI security,DevSecOps, firmware RE, wirelesspentesting)
- Deep hands-on experience with firmware analysis toolchains:Ghidra, IDA Pro,Binwalk,Firmwalker, QEMU/Firmadyne
- ProvenWiFi/wirelesspentestingskills:Aircrack-ng, Kismet,Bettercap,Hostapd, Wireshark, HCXTOOLS
- StrongDevSecOpspipeline experience: SAST/DAST/SCA integration, secrets management,IaCsecurity
- Experience securing AI/ML systems and LLM-powered applications in production environments
- Familiarity with MITRE ATT&CK, MITRE ATLAS, OWASP LLM Top 10, NIST AI RMF
- Strong scripting skills: Python, Bash; familiarity with Go or Rust is a plus
- Relevant certifications preferred: OSCP, OSWP, GREM, GWAPT, CKS, or equivalent
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline
#WebDesignRemoteJobs
#FreelanceGraphicDesigner
#WorkFromHomeDesignJobs
#OnlineWebDesignWork
#RemoteDesignOpportunities
#HireGraphicDesigners
#DigitalDesignCareers
# Dynamicbrand guru