Jobs · Information Technology · Washington

Information Security Engineer (AI & Data Privacy)

McKinstry · Seattle, WA · 3 wk ago
Information Technology$89k–$151k/yrFull-time

Buildings are a leading contributor to the climate crisis, generating nearly 40% of total global energy-related carbon emissions. We’re making a lasting impact on our industry and within our communities by addressing the climate, affordability, and equity crises through renewables and energy services, engineering and design, and construction and facility services.

About the role

McKinstry is actively integrating artificial intelligence across our business and client solutions—and we’re looking for an Information Security Engineer to help ensure this adoption is secure, responsible, and defensible. This role sits at the intersection of AI security, data privacy, and enterprise governance. You’ll play a key role in securing AI systems, guiding AI tool adoption, and ensuring compliance with data protection agreements and privacy regulations as AI becomes embedded in how we operate. You’ll have the opportunity to shape how AI is adopted responsibly across a complex, real-world enterprise—working alongside security, legal, and engineering leaders to solve problems that truly matter. This role is based in our Seattle, WA corporate office and follows a hybrid schedule with three days onsite.

Responsibilities

  • AI Security & Governance
    • Help design and implement security controls for AI/ML systems, GenAI tools, and LLM-based applications used across the enterprise
    • Support development and maintenance of McKinstry’s AI security framework aligned with industry standards (e.g., NIST AI RMF, OWASP LLM Top 10)
    • Participate in AI threat modeling and risk assessments across data ingestion, model use, and API integrations
    • Help establish guardrails for enterprise AI adoption, including vendor onboarding and shadow AI detection
  • Privacy & Data Protection
    • Review and assess AI vendor Data Processing Agreements (DPAs) in partnership with Legal and Procurement
    • Support ongoing compliance with data handling, retention, and residency obligations
    • Assess AI tools against applicable privacy and compliance requirements (CCPA/CPRA, SOC 2, and similar frameworks)
    • Contribute to data classification and handling standards for AI training, fine-tuning, and inference
  • AI Rollout & Risk Management
    • Participate in security reviews for AI platforms and tools, including Microsoft Copilot and third-party AI services
    • Support AI risk assessments and vendor governance documentation for leadership visibility
    • Assist with AI-specific incident response planning and escalation scenarios
    • Monitor changes in AI vendor security posture, data use policies, and sub-processor disclosures
  • Collaboration & Enablement
    • Serve as a security partner to Legal, Compliance, IT, and Engineering teams on AI initiatives
    • Help educate technical and business teams on secure AI usage, data minimization, and privacy-by-design principles
    • Contribute to executive-ready reporting on AI security posture and program maturity

Requirements

  • 2–3+ years of experience in cybersecurity, with exposure to AI/ML security, data privacy, or cloud security
  • Hands-on experience supporting vendor risk assessments, DPAs, or privacy reviews
  • Understanding of common GenAI and LLM security risks (e.g., data leakage, prompt injection, model misuse)
  • Familiarity with AI security frameworks such as NIST AI RMF, OWASP LLM Top 10, or similar
  • Ability to explain security and privacy concepts to non-technical stakeholders
  • Experience working with privacy or compliance programs (CCPA/CPRA, SOC 2, or related frameworks)
  • Familiarity with the Microsoft security and cloud ecosystem (Azure, Defender, Sentinel, Purview)
  • Preferred certifications include: CISSP, CIPP/US, CIPM, CCSP, AZ-500, SC-200, or Security+

Benefits

  • Core Benefits
    • Competitive pay
    • 401(k) with employer match and profit-sharing plan
    • Paid time off and holidays
    • Comprehensive medical, prescription, dental, and vision with low or zero deductible options and low out-of-pocket maximums
  • People-First Benefits
    • Family formation benefits, including adoption and IVF assistance
    • Up to 16 weeks paid parental leave
    • Transgender-inclusive benefits
    • Commuter benefits
    • Pet insurance
    • “Building Good” paid community service time
    • Learning and advancement opportunities via McKinstry University
    • McKinstry Moves onsite gyms or reimbursement for remote workers

Pay

The pay range for this position is $89,010 - $151,300 per year; however, base pay offered may vary depending on job-related knowledge, skills, and experience. A bonus may be provided as part of the compensation package, in addition to a full range of medical, financial, and/or other benefits.

Schedule

This role follows a hybrid schedule with three days onsite at our Seattle, WA corporate office.

Similar jobs

AI Security Engineer

ChatGPT JobsPalo Alto, CA· 1 mo ago
Information Technologyapply on chatgpt-jobs.com

AI Security Engineer

EMCOR Group, Inc.Norwalk, CT· 2 mo ago
Information Technology$100/hrapply on careers-emcorgroup.icims.com

AI Security Engineer

tmsChicago, IL· 2 mo ago
Information Technology$110k–$140k/yrapply on careers.morganstreet.com