7+ years of experience in information technology or cybersecurity, including at least five years in security engineering or a related technical area such as cloud security, identity and access management, data protection, application security, security operations, vulnerability management, incident response, or platform security.
Hands-on experience designing and implementing security controls in modern environments, including cloud platforms, APIs, identity systems, data protection, and monitoring.
Experience defining security requirements, standards, guardrails, or control frameworks in complex enterprise environments.
Practical experience or strong working knowledge of AI or LLM-based systems, including their behavior, risks, and security implications.
Experience partnering with engineering and platform teams to integrate security into architecture, design, delivery pipelines, and operations.
Demonstrated ability to evaluate technologies and guide technical decision-making.
Experience operating in complex, cross-functional environments and driving initiatives from concept through implementation.
Strong technical knowledge of cybersecurity principles, including identity and access management, data protection, monitoring, secure architecture design, and security operations.
Strong understanding of AI and LLM-related risks, including data exposure, prompt manipulation, unsafe tool use, misuse of agent capabilities, and auditability challenges.
Ability to develop security and risk requirements from ambiguous or emerging technology risks.
Ability to translate security requirements into practical engineering solutions, configurations, and implementation patterns.
Familiarity with industry frameworks and guidance such as NIST Risk Management Framework, MITRE ATLAS, OWASP Top 10, and OWASP guidance for large language model applications.
Bachelor's degree in information security, Computer Science, Information Technology, or related field (Equivalent experience may be considered)