- Company Name
- Electronic Arts (EA)
- Job Title
- Security Engineer, AI Security
- Job Description
-
**Job Title:** Security Engineer, AI Security
**Role Summary:**
Offensive‑focused security engineer responsible for assessing and protecting AI‑enabled applications, agents, and large‑language‑model (LLM) integrations across gaming and enterprise platforms. Builds scalable testing frameworks, automation, and AI‑driven security agents to reduce risk and embed secure design practices.
**Expectations:**
- Apply attacker mindset to AI systems and identify real‑world abuse paths.
- Deliver practical, repeatable security solutions rather than one‑off fixes.
- Collaborate effectively with application engineers, AppSec, and Red Team partners.
- Communicate findings and mitigation guidance clearly to technical and non‑technical stakeholders.
**Key Responsibilities:**
- Conduct security testing and architectural reviews of AI‑enabled applications, agents, and workflows.
- Identify and validate vulnerabilities such as data leakage, insecure tool use, authentication gaps, and prompt‑injection attacks.
- Perform adversarial testing on commercial AI platforms (e.g., Microsoft Copilot, Google AgentSpace, OpenAI ChatGPT) and internal AI systems.
- Assess multi‑agent and agentic workflows for privilege escalation, unsafe action chaining, and cross‑agent abuse.
- Design, develop, and operate AI‑driven security agents and automation (Python, Go, JavaScript, etc.).
- Create tooling, test harnesses, and repeatable validation frameworks to expand AI security coverage.
- Partner with engineers to translate findings into actionable mitigations, secure design patterns, and engineering guidance.
- Integrate AI attack techniques into broader offensive security activities with Red Team and AppSec teams.
- Produce reusable documentation, guardrails, and best‑practice guidance for secure AI adoption.
**Required Skills:**
- Strong background in application security and/or offensive security.
- Hands‑on experience finding and exploiting vulnerabilities in modern applications and services.
- Experience testing or securing AI‑enabled systems, LLM integrations, or agent‑based workflows.
- Ability to model attacker misuse, abuse scenarios, and emergent AI behaviors.
- Proficiency in building automation/tools using Python, Go, JavaScript, or similar languages.
- Familiarity with source‑code analysis tools (e.g., CodeQL, Semgrep).
- Excellent collaboration and communication skills for cross‑functional work.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent practical experience).
- Relevant security certifications (e.g., OSCP, CEH, CISSP) preferred but not mandatory.