TTC Group is looking for a Senior Application Security Engineer to secure AWS cloud environments and containerized applications. The role involves collaborating with Engineering, Product, and DevOps teams to implement security controls and respond to incidents in cloud environments.
Responsibilities:
- Helped implement security guardrails for AI/ML systems, including secure model access, environment hardening, and pipeline governance
- Supported efforts to reduce AI risk exposure by improving monitoring, logging, and control validation around model endpoints and data flows
- Worked alongside product and engineering to ensure AI development efforts met internal security and compliance expectations
- Design and implement cloud and application security controls
- Secure AWS infrastructure and containerized workloads
- Integrate security into the CI/CD pipeline
- Perform security assessments and remediation
- Lead or support incident response in cloud environments
- Document cloud security standards and procedures
- Partner with Product, Engineering, and DevOps
Requirements:
- 8+ years of experience securing AWS cloud environments, containerized applications, and CI/CD pipelines
- Strong background in cloud security architecture, DevSecOps, Kubernetes/Docker security, Terraform, IAM, encryption, and incident response
- Experienced in implementing security controls for AI/ML systems, securing model access, governing AI pipelines, and reducing AI-related risks through monitoring and automation
- Proven ability to partner with Engineering, Product, and DevOps teams to build scalable, secure, and compliant cloud solutions
- Bachelor's degree required
- Must have experience securing AI systems and enhancing ongoing AI development efforts
- AWS Cloud & Application Security
- Docker / Kubernetes Security
- CI/CD Pipeline Security + Terraform (IaC)
- Hands-on ownership of cloud security implementations
- Experience with AI/ML
- Experience securing containerized environments
- AWS cloud security architecture and services
- Cloud application security engineering
- Docker and Kubernetes security
- Infrastructure as Code (Terraform)
- CI/CD pipeline security integration
- Identity management, encryption, and access controls
- Incident response and cloud monitoring
- Minimum 8 years relevant experience
- Knowledge of regulated or government cloud standards (FedRAMP, IL5 preferred)
- Relevant security and cloud certifications