Senior Artificial Intelligence Product Security Engineer
Posted 47ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior Product Security Engineer at Universal Music Group, leading AI security for digital applications and product ecosystems. Experience in product security, application security, and detecting AI vulnerabilities is essential.
Responsibilities:
- Lead the protection and defense of UMG’s digital applications and product ecosystem with an emphasis on securing artificial technology (AI)
- Detect, mitigate, and respond to AI-related security threats, ensuring that applications and services remain resilient against AI-cyber threats
- Establish, lead, and execute multi-year roadmaps to mature AI security, drawing upon cross-functional partnerships to deliver security posture reviews on a repeatable basis and review new AI systems as they're developed
- Conduct application and product security evaluations and lead AI security assessments in a cross-functional environment, driving finding remediations
- Secure AI Development Lifecycle: Procure and/or build technical solutions to embed automated security checks into the AI SDLC and ML-Ops
- AI Threat Modeling: Threat model complex Agentic and AI systems and design security requirements collaboratively with developers, architects, and business stakeholders
- Code Analysis: Review code for security bugs in the context of AI-driven systems
- GRC: Provide leadership for AI Security policies and standards in collaboration with technology risk
- AI/Agent SME: Provide AI/Agent subject matter expertise for AI Incidents and Security Reviews, and help develop incident response playbooks for AI-related security incidents
- Assist in the formation of an AI Center of Excellence (ACE)
Requirements:
- 10+ years experience in product security, application security, and/or DevSecOps
- Strong knowledge of security of safety risks of LLMs and AI Agents
- 5+ Years of experience automating security checks, including SAST, SCA, and DAST, directly into CI/CD pipelines
- Extensive experience with STRIDE or other threat modeling frameworks
- Knowledge and experience with technologies including K8s, Containers, CI/CD, and CSPs
- Familiarity with function and purpose of key AI platform components such as AI gateways (Kong, Databricks Mosaic AI Gateway, custom API orchestration), Model Orchestration (Examples LangChain, LlamaIndex, etc.)
Benefits:
- Comprehensive medical, dental, and vision coverage
- 100% coverage for out-patient in-network mental health services
- Fertility coverage for eligible medical plan participants
- Wellbeing reimbursements for fitness classes, spa treatments, meal services, travel, and so much more (up to $720/year)
- Student Loan Repayment Assistance and Tuition Reimbursement
- 401(k) with 100% immediate vesting on the first 5% of your contributions, plus an additional UMG contribution
- Flexible Paid Time Off (PTO) for exempt employees
- 3-weeks PTO for non-exempt employees
- 2-weeks paid Winter Break
- 10 Company Holidays (including Juneteenth and Wellbeing Day)
- Summer Fridays (between Memorial Day and Labor Day)
- Generous paid parental leave for every type of parent


















