HimalayasHimalayas logo
J.S. HeldJH

AI Security Engineer

J.S. Held is a global consulting firm founded in 1974, offering technical, scientific, financial, and strategic expertise to help clients manage risk and navigate complex situations. They serve a wide range of industries from over 100 offices worldwide.

J.S. Held

Employee count: 1001-5000

Colombia only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

J.S. Held, a global consulting firm providing specialized technical, scientific, financial, and advisory services, is seeking an AI Security Engineer is a senior, hands‑on technical role responsible for designing, engineering, and operationalizing AI security across J.S. Held’s enterprise.

This role serves as the central Cyber Security owner for all AI Security, ensuring AI technologies are securely designed, implemented, and operated across AI‑enabled third‑party applications, internal AI agents, models, MCP, RAG architectures, training and fine‑tuning pipelines, and supporting AI platforms.

The role balances hands‑on engineering, solution design, and architectural leadership. While expected to influence standards, patterns, and roadmaps, this is not a purely strategic role—the engineer will actively design and enable controls.

Role weighting:

  • ~70% AI Security Engineering (primary)
  • ~30% Data Security Engineering (secondary), with emphasis on Microsoft Purview, especially where enterprise data is used by AI systems.

Core Responsibilities

AI Security Engineering (Primary – ~70%)

AI Security Architecture & Guardrails

  • Define and evolve the enterprise AI Security Architecture, guardrails, and security requirements aligned to business objectives.
  • Establish secure‑by‑design patterns across AI development, deployment, and operations, including requirements for hardening, hosting, access control, monitoring, and testing.

Platform & Engineering Enablement (Hands‑On)

  • Design and engineer security controls for:
    • AI‑enabled SaaS applications
    • Internal AI agents and automation workflows
    • Model hosting, inference services, APIs, and orchestration layers
    • RAG architectures, vector databases, and embeddings
    • Model training and fine‑tuning pipelines
    • MCP and agent‑to‑agent interaction patterns

AI Identity, Authentication & Authorization

  • Extend identity and access principles to non‑human identities and autonomous agents.
  • Treat AI agents as first‑class identities, defining authentication, authorization, lifecycle management, and revocation.
  • Implement delegated and “on‑behalf‑of” authorization patterns to distinguish human‑initiated actions from agent‑initiated actions.
  • Apply least‑privilege and scope‑limiting controls to prevent privilege escalation in automated and multi‑agent workflows.

Threat Modeling & Risk Reduction

  • Identify and mitigate AI‑specific risks including data leakage, prompt injection, jailbreaks, model abuse, data poisoning, model extraction, and AI supply‑chain risk.
  • Ensure appropriate security testing and validation is embedded into AI development and deployment workflows.

Monitoring & Incident Readiness

  • Define logging, monitoring, and detection requirements for AI systems, models, and agent activity.
  • Partner with SecOps to ensure AI‑related events are observable, auditable, and actionable.
  • Support incident response and post‑incident analysis for AI‑related security events.

Cross‑Functional Delivery

  • Work closely with IAM, SecOps, AppSec, GRC, IT engineering, AI platform teams, and business stakeholders to embed security controls where they belong.

Data Security Engineering (Secondary – ~30%)

Data Protection & Governance

  • Design and enhance enterprise data security controls with a focus on AI‑driven data access.
  • Implement and optimize Microsoft Purview, including data classification, sensitivity labeling, DLP, information protection, and visibility.

AI‑Aware Data Security

  • Ensure data security controls are aligned to AI architectures, reducing risk of sensitive data exposure via prompts, agents, outputs, and downstream sharing.
  • Support secure use of enterprise data in RAG pipelines, AI workflows, and training environments.

Multi‑Platform Data Flows

  • Contribute to data protection strategies across collaboration platforms, cloud services, and endpoints, ensuring consistent enforcement where possible.

Required Qualifications

  • 8+ years of experience in cybersecurity engineering, cloud security, application security, or data security
  • Direct, hands‑on experience with Azure AI Foundry and Copilot Studio in enterprise environments
  • Strong experience securing cloud and SaaS platforms (Azure preferred)
  • Deep understanding of identity, access control, data protection, and secure application/API design
  • Proven ability to translate security requirements into practical, deployable controls

Preferred Qualifications

  • Experience securing generative AI, LLM‑based systems, and agentic architectures
  • Experience with Microsoft Copilot Administration, Anthropic and other AI platforms (e.g., OpenAI ecosystems)
  • Experience with Microsoft Purview (sensitivity labels/information protection, DLP, Insider Risk Management)
  • Familiarity with RAG architectures, vector databases, embeddings, and MCP integrations
  • Scripting or automation experience (e.g., Python or PowerShell) to integrate security controls into engineering workflows
  • Strong cross‑functional communication and influence skills

Some of the Benefits We Have Include

J.S. Held understands all our employees are people and sometimes life needs flexibility. We work to always provide an environment that best supports and suits our team’s needs.

  • Our flexible work environment allows employees to work remotely when needed
  • Generous Annual Leave Policy
  • Comprehensive Medical Insurance

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

By submitting your application, you acknowledge that you have read the J.S. Held Online Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as required and described therein. California residents can click here to learn more about the personal information we collect and here to learn about additional privacy rights that may be available.

Please explore what we’re all about at www.jsheld.com.

EEO and Job Accommodations

We embrace diversity and our commitment to building a team and environment that fosters professional and personal enrichment is unwavering. We are greater when we are equal!

J.S. Held is an equal opportunity employer that is committed to hiring a diverse workforce. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

If you are an individual with a disability and would like to request for a reasonable accommodation, please email jobs@jsheld.comand include “Applicant Accommodation” within the subject line with your request and contact information.

Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work?

J.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate risk. Our professionals serve as trusted advisors to organizations facing high stakes matters demanding urgent attention, staunch integrity, proven experience, clear-cut analysis, and an understanding of both tangible and intangible assets.

The firm provides a comprehensive suite of services, products, and data that enables clients to navigate complex, contentious, and often catastrophic situations.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Experience

8 years minimum

Location requirements

Hiring timezones

Colombia +/- 0 hours

About J.S. Held

Learn more about J.S. Held and their company culture.

View company profile

We are a global consulting firm, established in 1974, dedicated to combining technical, scientific, financial, and strategic expertise. Our mission is to serve as trusted, expert advisors to organizations around the world. We assist clients who are seeking to realize value and mitigate risk, especially when facing high-stakes matters that demand urgent attention, staunch integrity, proven experience, and clear-cut analysis. We pride ourselves on our understanding of both tangible and intangible assets, providing a comprehensive suite of services, products, and data that empower our clients to navigate complex, contentious, and often catastrophic situations.

What truly differentiates us is our people — a team of over 1,500 world-class professionals. We are driven by a common set of core values: integrity, excellence, teamwork, and service. These shared values inspire a culture of collaboration and inclusivity across our diverse workforce, operating from more than 100 offices across five continents. We have a rich history of advising on some of the most significant matters globally, from complex property damage claims to intricate financial investigations and large-scale bankruptcies. As we've grown and evolved based on changing client and industry needs, our foundational principle of being a trusted advisor, known for delivering crucial insights and helping clients make well-informed decisions, remains steadfast. We are committed to the continued professional growth of our people and to helping our clients navigate their most challenging situations with confidence.

Employee benefits

Learn about the employee benefits and perks provided at J.S. Held.

View benefits

401(k) Retirement Account

Retirement savings plan.

Dental Insurance

Comprehensive dental coverage.

Vision Insurance

Comprehensive vision coverage.

Long Term Disability

Long-term disability coverage.

View J.S. Held's employee benefits
Claim this profileJ.S. Held logoJH

J.S. Held

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

23 remote jobs at J.S. Held

Explore the variety of open remote roles at J.S. Held, offering flexible work options across multiple disciplines and skill levels.

View all jobs at J.S. Held

Remote companies like J.S. Held

Find your next opportunity by exploring profiles of companies that are similar to J.S. Held. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan