Negotiable
Outside
Remote
USA
Summary: The Gen AI Security Consultant role requires a seasoned professional with over 10 years of experience in cybersecurity services, particularly in customer-facing roles. The consultant will be responsible for delivering high-quality security solutions, influencing stakeholders, and articulating complex concepts related to Generative AI security. The position demands a strong technical background in security infrastructure and a willingness to travel domestically. This is a remote position with a focus on consulting and implementing security measures for Generative AI applications.
Key Responsibilities:
- Deliver client-facing professional services in security/cybersecurity.
- Influence and interact with stakeholders at all levels.
- Articulate complex security concepts and build consensus.
- Work on project teams adhering to defined methodologies.
- Travel domestically 50% or more as required.
- Consult on Generative AI security risks and solutions.
- Implement and monitor security measures in enterprise environments.
- Identify and mitigate risks associated with Generative AI applications.
Key Skills:
- 10+ years of experience in cybersecurity services delivery.
- Strong understanding of Artificial Intelligence and security risks.
- Experience in consulting on Generative AI security.
- Technical expertise in security infrastructure and monitoring.
- Knowledge of attack surfaces and mitigation strategies.
- Professional Cybersecurity Certifications (CISSP, CISA, etc.).
- Ability to implement SIEM/MDR solutions.
- Bachelor's degree in relevant fields; Master's degree is a plus.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Position: Gen AI Security Consultant
Location: Remote Duration: 6 Months+
- 10+ years of related experience with 5+ years of progressive professional growth in a customer-facing security/cybersecurity services delivery role
- Ability to influence and interact with confidence and credibility at all levels within and with our customers, partners, and vendors
- Proven experience with client facing professional services delivery from presentations, documentation, workshops, and interviews to full-scale enterprise-wide security/cybersecurity services delivery.
- Ability to articulate complex concepts, build consensus and deliver high quality work products.
- Experience working on project teams within a defined methodology while adhering to margin, planning and SOW requirements.
- Desire and ability to travel domestically 50% or more.
- Technical skills as outlined below.
- Desirable Requirements
- 8+ years of experience Consulting, Assessing, implementing, and supporting security/cybersecurity services.
- Good understanding of Artificial Intelligence and associated security risks
- Experience with consulting and advocating customers on Generative AI security space
- General knowledge of Machine Learning
- Bachelor's degree from an accredited institution (Management, Computer Science / Technical); Master's degree from an accredited institution (Management, Computer Science / Technical) is a plus.
- Required Techno-functional Skills:
- Subject matter expertise in consultation, design, implementation, administration, and monitoring of security/cybersecurity services in large enterprise environments.
- Robust technical knowledge of Generative AI infrastructure security design and monitoring: including SOC (Security Operations Center) solutions such as SIEM (Security Information and Event Management), EDR/MDR/XDR (Endpoint/Managed/Extended Detection and Response), SOAR (Security Orchestration, Automation, and Response), DLP (Data Loss Prevention) architectures.
- Knowledge of attack surfaces and mitigation strategies to protect Data through all stages of Generative AI application life cycle (From defining Gen AI strategy through data preparation, use case identification, platform implementation, model training & Gen AI operationalization).
- Expertise in identifying, prioritizing, and mitigating Generative AI model, execution, data, and application risks: by leveraging existing and evolving industry standard:
- MITRE ATLAS
- OWASP Client Top 10
- OWASP LLM Top 10
- NIST AI 100-1 RMF
- EU Artificial Intelligence Act
- E.g., Knowledge of techniques to protect Gen AI application components against various attacks including but not limited to
- Data Poisoning
- Input Manipulation
- Model Poisoning or Weaponization of AI models
- Sponge poisoning
- Model theft / Data Exfiltration
- Software supply chain attacks (Malware)
- Ability to identify sensitive data to be secured from being attacked, tampered with or exfiltrated from the Generative AI application components.
- Ability to review and recommend Generative AI relevant enhancements to existing Security Governance, Risk, Regulatory Compliance to enterprises.
- Experience in aligning the organization's GenAI solution to data governance requirements.
- Expertise to reduce Gen AI data related cyber risks, Improve the resiliency and confidence of the model outcomes through a wider and deeper examination of attack surfaces towards zero trust posture.
- Candidate proactively learns upcoming frameworks and best practices in securing ever changing Generative AI capabilities.
- Desired Technical Skills:
- Experience with general application attack surfaces and mitigations.
- Experience with Generative AI attack surfaces and mitigations when integrating Generative AI into other/existing applications & architectures.
- Professional Cybersecurity Certifications such as CISSP, CISA, CRISC, CEH, TOGAF
- Ability to bring in visibility & control by planning, implementing, and configuring e.g., SIEM / MDR solutions for Gen AI application components.