The role will focus on applying existing security expertise to AI use cases, supporting the implementation of the organisation's AI Security framework and working with technology teams to ensure security requirements are understood and adopted.
Key Responsibilities:
AI Security & Application Security
- Support the implementation of the organisation's AI Security framework, standards and security controls.
- Apply Application Security and secure-by-design principles to AI-enabled applications and solutions.
- Conduct security reviews of AI applications, APIs, integrations and AI platforms.
- Identify and assess AI-specific risks such as prompt injection, data leakage, insecure integrations and excessive permissions.
- Provide practical security guidance to development and technology teams throughout the SDLC.
Framework Adoption & Assurance
- Help translate AI security requirements into practical controls and guidelines for technology teams.
- Work with engineering and application teams to drive adoption and adherence to AI security requirements.
- Identify gaps in AI security controls and work with stakeholders to drive remediation.
- Support security assessments, vulnerability reviews and AI-related testing activities.
- Contribute to the continuous improvement of the organisation's AI Security framework.
Stakeholder Engagement
- Partner with Application Security, Cybersecurity, Technology Risk, GRC and engineering teams.
- Act as an AI Security SME and provide guidance on emerging AI security risks.
- Influence stakeholders and drive security improvements without direct people-management responsibility.
- Keep abreast of emerging AI security threats, vulnerabilities and industry practices.
Requirements:
- 5-8+ years of cybersecurity experience, preferably with a strong background in Application Security, Product Security, Security Architecture or DevSecOps.
- Strong understanding of secure application development and SDLC practices.
- Experience conducting application security assessments, architecture reviews or vulnerability assessments.
- Exposure to GenAI, LLMs, AI applications or emerging AI technologies.
- Understanding of AI security risks and frameworks such as OWASP LLM Top 10, NIST AI RMF or MITRE ATLAS.
- Strong stakeholder management and influencing skills, with the ability to drive security requirements across technology teams.
- Experience in financial services or another regulated environment would be advantageous.
Interested candidates are encouraged to apply. Please note that only shortlisted candidates will be contacted.
Pam Lim
EA Licence No: 11C5502
EAP Registration No: R1106192
