Jobs · Information Technology · California

Cloud Security Engineer III (AI/ML Platforms)

ICW Group · San Diego, CA · 2 wk ago
HybridInformation Technology$122k–$218k/yrFull-time

Are you looking to make an impactful difference in your work, yourself, and your community? Why settle for just a job when you can land a career? At ICW Group, we are hiring team members who are ready to use their skills, curiosity, and drive to be part of our journey as we strive to transform the insurance carrier space. We're proud to be in business for over 50 years, and its change agents like yourself that will help us continue to deliver our mission to create the best insurance experience possible. Headquartered in San Diego with regional offices located throughout the United States, ICW Group has been named for ten consecutive years as a Top 50 performing P&C organization offering the stability of a large, profitable and growing company combined with a focus on all things people.

About the role

The Cloud Security Engineer III designs secure architectures and develops cybersecurity approaches for cloud or SaaS solutions. This position assists with strategic initiatives to identify and reduce the attack surface across cloud, SaaS, and on-premises applications and systems, including support for AI/ML platforms such as data pipelines, model development environments, and model serving infrastructure. Responsibilities include keeping cloud and AI/ML platform infrastructure current, making recommendations, and participating in implementation and continuous improvement of technologies and services. The role monitors and defends ICW Group’s technology—cloud platforms, SaaS solutions, and AI/ML systems—against threats that jeopardize financial growth, data integrity, and security goals.

Responsibilities

  • Monitors and defends cloud-based information systems against unauthorized access, modifications, and destruction.
  • Monitors networks and systems for security breaches using software that detects intrusions and anomalous system behavior; develops strategies to respond to and recover from security breaches.
  • Leads security incident response, including preparation, detection, analysis, containment, eradication, and recovery.
  • Researches and implements methods to remediate network and application security vulnerabilities.
  • Leads and participates in security controls reporting, compliance audits, monthly and ad-hoc statistics and trends, and risk-focused reports, including internal and third-party risk assessments.
  • Utilizes automated tools to identify, assess, and report security concerns, emphasizing effective communication to stakeholders.
  • Takes an active lead to inform, advise, and partner with business units to help secure operations.
  • Provides management of cloud security solutions/platforms, including access management, data protection, coordination of security services, and support during incident cases.
  • Directs and influences multi-disciplinary teams in implementing and operating cybersecurity controls.
  • Collaborates with internal teams to support implementation of security best practices.
  • Collaborates with application developers and database administrators to deliver creative solutions to cloud technology challenges and business requirements.
  • Leads and runs complex cloud security-related projects and resolves security-related issues.
  • Develops security standards to respond to and recover from security breaches focused on cloud, SaaS, and AI/ML systems.
  • Proposes solutions, coordinates implementation, and enforces information systems security policies, standards, and methodologies.
  • Uses advanced technologies including Intrusion Detection & Prevention Systems, Lambda, CloudFront, CloudFormation, AWS Security Hub, S3, Batch, API Gateway, VPC, IAM, KMS, CloudWatch, CloudTrail, SFTP, DynamoDB, and Config.
  • Prepares and analyzes system security reports by collecting, analyzing, and summarizing data and trends, systems usage and access patterns, and makes recommendations to improve security.
  • Maintains cloud operational security posture to ensure information system security policies, standards, and procedures are established and followed.
  • Creates and updates technical cloud security standards for assets and software.
  • Provides subject matter expertise on cloud information security architecture and systems engineering to other IT and business teams.
  • Executes security architectures for cloud/hybrid systems.
  • Serves as a cloud cybersecurity technical subject matter expert, trainer, and primary resource for the organization.
  • Provides cloud information security expertise to system development teams throughout the development life cycle process.
  • Partners with internal teams to ensure system design and implementation are consistent with company policies, requirements, and directives.
  • Leads and conducts information security risk assessments, including documenting processes, service level agreements, and best practices.
  • Develops the overall cloud security design, development, testing, and implementation of security solutions.
  • Recommends compliance strategies that support customer requirements and alignment to company policy.
  • Ensures cloud security quality, adherence to security guidelines/controls, profitability, and information security-related metrics for self and assigned projects.
  • Collaborates with key stakeholders on remediation strategies and follows remediation activities through closure.
  • Provides support on incident response for security incidents and participates in the development of business cases and presentations on information security technologies.
  • Counsels project teams, application owners, and other information security teams on cloud information or AI/ML security controls.
  • Partners with project management and other internal teams in determining overall security solutions.
  • Executes technical and process changes required to adopt, maintain, and adjust security controls to manage the company's risks and align with industry best practices.
  • Works with peers in other internal groups to drive technical security risk down in targeted areas.
  • Takes end-to-end ownership of one or more security tools and metrics, actively driving risk down across the company.
  • May support administration and monitoring of tools used for AI/ML environments.
  • Contributes to the continual enhancement, understanding, and adoption of IT security practices through governance, core processes, leading technology, and enhancement of the team’s skill sets.
  • Coaches and educates others to increase early detection rates and decrease IT risk and security.

AI/ML Responsibilities

  • Assists in monitoring AI/ML platforms for anomalous behavior such as unusual model access patterns, unexpected data usage, or irregular inference activity.
  • Assists in identifying and remediating vulnerabilities in AI/ML pipelines, including insecure configurations and access control gaps.
  • Collaborates with data scientists and ML engineers to help implement secure AI/ML solutions aligned with business requirements.
  • Gains familiarity with ML platform tooling (e.g., model registries, pipeline orchestration tools) and applies security best practices to their use.
  • Develops foundational knowledge of AI/ML security concepts and contributes to team knowledge sharing.
  • Supports implementation of security controls for AI/ML systems and related infrastructure.
  • Develops awareness of emerging AI/ML security risks and communicates relevant observations to the team.
  • Shares knowledge and learns from senior engineers regarding AI/ML security practices.

Requirements

  • Bachelor’s degree required in Engineering, Cybersecurity, Networking, Computer Science, Data Science, or related field.
  • Minimum 8 years of experience working in a security engineering role designing secure networks, systems, and application architectures or equivalent combination of education and experience.
  • Minimum 3-5 years of experience in AWS Cloud Security services.
  • Experience in a cybersecurity role requiring knowledge of data analysis, risk assessment, risk mitigation, investigation methods, incident management concepts and practices, and policy and procedure development.
  • Exposure to or experience with AI/ML platforms, data pipelines, or analytics environments preferred.
  • Basic understanding of ML lifecycle concepts and data handling practices preferred.

Qualifications

  • Certification in GSEC, CISSP, and/or Security+ preferred.
  • AWS Certified Security – required.
  • AWS Developer or Solutions Architect Associate - Security Emphasis preferred.
  • AI/ML or data-related certifications are a plus but not required.

Skills

  • Direct experience using advanced technologies such as Intrusion Detection & Prevention Systems (IDS/IPS), Firewalls, SIEM, Antivirus software, Network Packet Analyzers, content filtering, Malware analysis, and forensics tools to detect intrusions.
  • Experience with AWS Services such as AWS Identity & Access Management, AWS Organizations, AWS Security Hub, Guard Duty, CloudTrail, and AWS CloudTrail.
  • Knowledge of risk assessment tools, technologies, and methodologies.
  • Knowledge of disaster recovery, computer forensic tools, technologies, and methods.
  • Knowledge of enterprise security platforms.
  • Ability to communicate network security issues to peers and management.
  • Strong understanding of endpoint security solutions, including File Integrity Monitoring and Data Loss Prevention.
  • Demonstrated experience as a lead engineer in the design, implementation, and support in an enterprise IT environment.
  • Ability to hypothesize on root cause of inefficiencies and test probable solutions.
  • Must be able to read, write, and speak English effectively.
  • Ability to effectively communicate/present technical information to a non-technical audience.
  • Ability to cross-train and share information with team members.
  • Basic understanding of AI/ML security concepts such as data protection, access control, and model usage risks.
  • Familiarity with ML-related components such as data pipelines and model deployment environments is a plus.
  • Willingness to learn model risk and AI governance concepts.
  • Understanding of data privacy considerations in analytics and ML environments is a plus.

Physical Requirements

Office environment – no specific or unusual physical or environmental demands. Employees are regularly required to sit, walk, stand, talk, and hear. Employees are required to reach with hands and arms; stoop, kneel, crouch, or crawl. Must occasionally lift and/or move up to 30 pounds. Requires visual acuity and the capability to operate and view computers and other electronic devices for extended periods.

Pay

The current range for this position is $121,624.81 - $217,710.99, exclusive of fringe benefits and potential bonuses. Final base salary compensation will be determined by factors unique to each candidate, including experience, education, and location, and considers employees performing substantially similar work.

Similar jobs

AI Cloud Engineer III

Murphy USAEl Dorado, AR· 2 mo ago
Information Technologyapply on sjobs.brassring.com