AI Summary
Deloitte is seeking a Manager, AI Security Engineer to join the US Tax Transformation technology team. The role involves safeguarding advanced AI models, data, and infrastructure. The ideal candidate will have 5+ years of experience in cybersecurity and a deep understanding of AI-specific threat vectors.
Key Highlights
Implement defenses against AI-specific attacks
Conduct AI-focused security assessments and penetration tests
Analyze AI system vulnerabilities and develop mitigation strategies
Technical Skills Required
Benefits & Perks
Competitive salary range: $113,890 - $227,370
Discretionary annual incentive program
Hybrid work model with 2-3 days of in-person work per week
Limited immigration sponsorship may be available
Job Description
If you are a technology visionary with a passion for transforming global tax business with digital technology, consider working with the US Tax Transformation technology team. This is an exciting opportunity to support global execution of Deloitte's tax strategy as we shift from "doing digital" to "being digital" by reimagining how we engage with our clients, deliver our services, operate our business, and create value.
Work you'll do
As a Deloitte Manager, AI Security Engineer, you will be crucial in safeguarding our advanced AI models, data, and infrastructure. You'll work closely with Data Scientists, Data Engineers, and MLOps/DevOps teams.
Additional responsibilities include:
- Implement defenses against AI-specific attacks (adversarial, prompt injection, data leakage)
- Conduct AI-focused security assessments, penetration tests, red/purple team exercises
- Analyze AI system vulnerabilities, develop mitigation strategies, and create AI risk heat maps
- Implement security controls throughout the AI/ML lifecycle (data handling, training with GPU isolation, deployment, monitoring, versioning, provenance). Integrate SAST/DAST for ML artifacts
- Manage audit trails and automated compliance checks
- Implement AI-specific incident response and develop regulatory disclosure playbooks
- Manage AI security monitoring, implement executive dashboards linking security to business KPIs, develop security metrics (Adversarial Risk Score, Model Drift Index)
- Implement secure training environments and fine-grained data access controls
- Contribute to AI-generated fraud detection in transaction monitoring systems.
- Act as an AI security SME, continuously research emerging threats
Deloitte Tax LLP's Tax Transformation Office (TTO) is responsible for the design, development, and deployment of innovative, enterprise technology, tools, and standard processes to support the delivery of tax services. The TTO team focuses on enhancing Deloitte Tax LLP's ability to deliver comprehensive, value-added, and efficient tax services to our clients. It is a dynamic team with professionals of varying backgrounds from tax technical, technology development, change management, Six Sigma, and project management. The team consults and executes on a wide range of initiatives involving process and tool development and implementation including training development, engagement management, tool design, and implementation.
Qualifications
Required:
- Bachelor's degree in computer science, Engineering, or a related field.
- Ability to perform job responsibilities within a hybrid work model that requires US Tax professionals to co-locate in person 2 - 3 days per week.
- 5+ years of experience in cybersecurity (application, cloud and data security) with strong proficiency in security scripting, automation, and tool development.
- Deep understanding of AI-specific threat vectors (adversarial attacks, prompt injection, data leakage).
- Demonstrated, hands-on experience with the Azure Cloud ecosystem and its security services.
- Proven experience translating regulatory frameworks (NIST AI RMF, EU AI Act) into technical controls.
- Ability to travel 20%, on average, based on the work you do and the clients and industries/sector you serve.
- Limited immigration sponsorship may be available.
- One of the following active accreditations obtained:
- Licensed CPA in state of practice/primary office if eligible to sit for the CPA
- If not CPA eligible:
- Licensed Attorney
- Enrolled Agent
- Technology Certifications:
- AWS Certified Solutions Architect
- Certified in Risk and Information Systems Controls (CRISC)
- Certified Information Systems Security Professional (CISSP)
- Certified SAFeĀ® Advanced Scrum Master
- Certified SAFeĀ® Agile Software Engineer
- Certified SAFeĀ® Architect
- Certified SAFeĀ® DevOps Practitioner
- Certified SAFeĀ® Practitioner
- Certified SAFeĀ® Scrum Master
- Certified Secure Software Lifecycle Professional (CSSLP)
- Certified Secure Software Lifecycle Professional (CSSLP) - (ISC)2
- IASA's Certified IT Architect (CITA) (Level F or A)
- ITIL Certification
- Lifecycle Management and Advanced Functional Testing Certifications (HP)
- Microsoft Azure
- SEI - Software Engineering Institute Certification
- Master's degree in computer science or related field.
- Knowledge of AI security frameworks.
- Familiarity with relevant data privacy and security regulations (GDPR, DORA).
- Azure Cloud security services ecosystem (Microsoft Sentinel, Azure Monitor, Azure Policy, Purview, Key Vault, Azure ML security).
- Securing MLOps/LLMOps pipelines (data versioning, provenance, GPU isolation).
- Security frameworks (OWASP AI Security & Privacy Guide).
- Automated compliance checks (e.g., via Azure Monitor).
- Security monitoring (e.g., Microsoft Sentinel with KQL).
- Secure training environments (Azure ML, HSMs).
- Data access controls (Azure Policy, Purview).
- Security assessment tools (SAST, DAST) adapted for ML.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html