Sr AI Security Engineer, GenAI Tooling & Agent Security
MatchPoint Solutions - Sunnyvale, CA
Apply NowJob Description
MatchPoint Solutions is a fast-growing, young, energetic global IT-Engineering services company with clients across the US. We provide technology solutions to various clients like Uber, Robinhood, Netflix, Airbnb, Google, Sephora, and more! More recently, we have expanded to working internationally in Canada, China, Ireland, UK, Brazil, and India. Through our culture of innovation, we inspire, build, and deliver business results, from idea to outcome. We keep our clients on the cutting edge of the latest technologies and provide solutions by using industry-specific best practices and expertise. We are excited to be continuously expanding our team. If you are interested in this position, please send over your updated resume. We look forward to hearing from you! Job Title: Sr AI Security Engineer, GenAI Tooling & Agent Security Location: Hybrid - Sunnyvale, SF, CA/ Seattle, WA Employment Type: ContractPay Range: 110-120/hr About the role The client is scaling the use of GenAI developer tools, IDE/CLI agents, desktop agents, MCP-based workflows, and new model providers. We're hiring a senior AI Security engineer to standardize how we evaluate and govern AI tools, reduce "bespoke review" overhead, and design enforceable guardrails . This role blends AI red teaming + security architecture + standards ownership. You will work closely with the engineering teams and other EngSe partners to create a consistent, capability-based approach for approving and operating AI tools safely. What you'll do 1. Be the in-house expert on AI security threat models & standards • Apply and operationalize the OWASP Top 10 for LLM Applications and Agentic Applications (2026) • Create cleint specific mappings: required controls and approval conditions 2. Lead AI security testing that is faster, deeper, and AI-accelerated • Design and run adversarial evaluations for agentic tools • Use AI to accelerate security work: build automated test harnesses, reproducible PoCs and regression suites for new releases. • Produce crisp outputs: reproduction steps, severity rationale, mitigations, vendor asks, and side guardrails, but also push beyond findings into systemic fixes. 3. Shape client side defenses and reference architectures • Define the "minimum bar" guardrail architecture for AI developer tooling • Partner with other security teams to make policies enforceable, not just documented. 4. Standardize vendor and model onboarding a. Create reusable artifacts: standard security requirements, telemetry requirements, and default trust tiers b. Define guidance for OSS model hosting 5. Drive developer-facing clarity and adoption: Publish and maintain clear guidance on: • desktop agents vs IDE/CLI agents • safe defaults vs restricting behavior, with measurable outcomes • run office hours / enablement sessions and align stakeholders on the same playbook. Minimum qualifications • 8+ years in security engineering (AppSec, offensive security, or security architecture), with 1+ years focused on GenAI/LLM/agentic security. • Demonstrated expertise in the OWASP LLM Top 10 and ability to apply it to real systems. • Demonstrated expertise in agentic system risks and ability to apply the OWASP Agentic Top 10 (2026). • Demonstrated experience in secure software architecture • Strong hands-on ability to execute and explain complex security testing (reproducible PoCs, clear mitigations). • Proven ability to write standards that scale (not one-off reviews) and drive cross-team alignment. • Strong communication skills with senior engineers and security specialists Preferred qualifications • Experience securing developer tooling (IDEs, CLIs, desktop agents), plugin ecosystems, and execution environments. • Familiarity with MCP-style tool calling/agent integrations and the unique governance challenges. • Experience building policy-as-code, evaluation automation, or security gates for tool onboarding. • Experience engaging vendors to drive product changes • Security certifications (OSCP/CISSP/etc.) are a plus, but demonstrated AI security depth is more important MatchPoint Solutions provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
Created: 2026-03-04