Staff Security Engineer - AI Security
Qube Research & Technologies London, England, United Kingdom
Financial Services · 1,001-5,000 employees
About the role
Design and implement security controls for AI inference gateways, platforms, and developer tooling to ensure safe adoption of frontier AI. Establish standards for agent identity, permissioning, and telemetry while performing threat modeling across the AI supply chain.
What they look for
Requirements
Requires eight or more years of experience in security, software, or platform engineering with a strong academic background in computer science. Candidates must possess hands-on experience with cloud platforms, CI/CD pipelines, and the ability to build production-grade security controls.
Benefits
Full description
QRT is a global quantitative and systematic investment manager, operating across all liquid asset classes. We are a data- and technology-driven organization applying scientific methods to investing. Our collaborative culture and focus on innovation enable us to solve complex challenges and deliver high-quality returns for our investors.
The AI Security function is engineering the controls that allow the firm to adopt frontier AI quickly and safely. The function works across engineering, infrastructure, cloud and security to build controls into the platforms, inference gateways and developer tooling already used across the firm.
Your future role within QRT
We are seeking an exceptional Staff Security Engineer to join our AI Security function. The role is expected to involve the following activities:
- Design and implement security controls in the inference gateways, platforms and developer tooling used across the firm, delivered as code and configuration.
- Embed controls in the systems that engineering teams already work in, so that the secure option is the default.
- Define the standards and patterns other teams adopt when building with AI.
- Define who an internal agent acts as, what it is permitted to reach and how those decisions are enforced.
- Build telemetry that records what ran, on whose behalf and against what.
- Establish how agent and automation activity is proven after the fact for audit and investigation.
- Secure developer harnesses, plugins, and the dependency and model provenance they rely on.
- Own secrets handling and vulnerability management across the AI tooling the firm depends on.
- Set provenance and integrity requirements for models and components introduced into the firm.
- Threat model live systems across platform and gateway security, agent identity and permissioning, and the AI supply chain.
- Deliver the remediation resulting from threat modelling directly.
- Identify gaps in control coverage and prioritise remediation against risk and delivery constraints.
- Take and document control decisions in areas where no established answer exists.
- Set and own the technical direction for the function’s core areas and help define how the function works.
- Drive the adoption of secure defaults and governed identities and gateways with a reliable audit trail.
Your present skillset
- Experience with LLM platforms, inference gateways or agent frameworks.
- Eight or more years of experience in security engineering, software engineering, platform engineering or a closely related technical discipline.
- A strong academic record in computer science or software engineering.
- The software engineering ability to build and ship controls in production systems, not only review them.
- Depth in at least one of application security, platform and cloud security, or security architecture, with working breadth across the others.
- Hands-on experience securing cloud platforms and CI/CD pipelines.
- The judgment to work in an area with no established practice and make control decisions using incomplete information.
- Fluent day-to-day use of coding agents.
Desirable to have experience or a willingness to learn in the following areas
- Working in a regulated or high-security environment.
- Detection engineering or incident response.
- Defining security practice in a function or capability that did not previously exist.
QRT is an equal opportunity employer. We welcome diversity as essential to our success. QRT empowers employees to work openly and respectfully to achieve collective success. In addition to professional achievement, we are offering initiatives and programs to enable employees achieve a healthy work-life balance.
Similar roles
-
Director Cybersecurity Operational Risk Oversight
Citizens Bank Johnston, Rhode Island, United States · $178K–$220K/yr
-
Senior Security Engineer, Detection & Response
Aircall.io, Inc. San Francisco, California, United States · $180K–$220K/yr
-
Senior Security Engineer (m/w/d)
Yoummday GmbH Munich, Bavaria, Germany
-
Senior Security Engineer, Cloud and Infrastructure Security
Weight Watchers United States · $210K–$225K/yr
-
Cybersecurity Engineer - CBO
INNOVIM United States · $90K–$107K/yr
-
Security Engineer
Orange Services Romania