远程工作雷达

资深信息安全工程师 - 以人工智能为核心

Staff Information Security Engineer - AI First

AI开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差
公司Rithum
薪资$170,000 - $220,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求与中国几乎无重叠,需长期倒时差
用工类型permanent
发布时间2026-07-28
数据来源4dayweek.io
前往 4dayweek.io 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。
作息提示:与中国几乎无重叠,需长期倒时差。

Rithum™ 是全球最值得信赖的商务网络,加速品牌、供应商和零售商之间的协作,以提供无缝的电子商务体验。我们为品牌和零售商提供无与伦比的平台,使他们能够加速增长,优化跨渠道运营,扩展产品供应并提升利润率。

目前,超过 40,000 家公司信任 Rithum 在数百个渠道上拓展业务,年交易额超过 500 亿美元。通过我们的商务、营销和交付解决方案,我们的客户从头到尾打造优化的消费者购物旅程。

**概述**

Rithum 希望所有岗位的员工利用人工智能和技术提高效率,简化工作流程,并创建可扩展的工作方式。

Rithum 正在将人工智能嵌入其运营的每个角落——安全也不例外。

作为资深 AI 首席信息安全工程师,你将负责人工智能采用与信息安全的交汇点:为人工智能驱动的产品设计保障机制,构建自动化安全工具,为 AI 首席团队设计安全控制和监控,帮助 Rithum 的每个团队快速推进而不产生他们无法看到的风险。这不是一份典型的安全部门职位。你花同样多的时间进行构建和自动化,而不是仅仅审查,将重复的控制转化为基础设施即代码,将手动审查转化为工作流,将模糊的人工智能风险转化为具体的、强制执行的保障机制。你能够自主工作,平衡研究与快速交付,并与平台工程、IT、安全倡导者和外部审计师紧密合作。

**职责**

- 作为架构意图与操作现实之间的桥梁;调解安全要求与可行实现之间的冲突,提出补偿控制措施,协助注册、跟踪和修复剩余风险。
- 在云和企业环境中实施预防性、默认开启的安全控制措施,以策略和基础设施即代码的形式编码,使安全成为设计的一部分,包括管理人工智能工具和模型使用方式的控制措施。
- 与平台工程和 IT 合作,实现并强制执行符合标准的身份和访问控制措施,包括人工智能系统的访问边界和非人类/代理身份的访问边界,确保工具和策略与架构保持一致。
- 协助维护信息安全风险登记册;跟踪新兴威胁和趋势。

查看英文原文

Rithum™ is the world’s most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. We provide an unmatched platform for brands and retailers, enabling them to accelerate growth, optimize operations across channels, scale product offerings and enhance margins.

Today, more than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV. Using our commerce, marketing, and delivery solutions, our customers create optimized consumer shopping journeys from beginning to end.

**Overview**

Rithum expects employees across all roles to leverage AI and technology to improve efficiency, streamline workflows, and create scalable ways of working.

Rithum is embedding AI into every corner of how it operates — and security is no exception.

As a Staff AI-First Information Security Engineer, you own the intersection of AI adoption and information security: designing guardrails for AI-powered products, building automated security tooling, designing security controls and monitoring for an AI-First workforce, helping every team at Rithum move fast without creating risk they cannot see. This is not a typical security role. You spend as much time building and automating as you do reviewing, turning a repeating control into infrastructure-as-code, a manual review into a workflow, and a vague AI risk into a concrete, enforced guardrails. You work autonomously, balancing research with fast-paced delivery, and collaborating closely with Platform Engineering, IT, Security Champions, and external auditors.

**Responsibilities**

- Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks.
- Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used.
- Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture.
- Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams.
- Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines.
- Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius.
- Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses.
- Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries.
- Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.

**Qualifications**

Minimum Qualifications

- 5+ years of security engineering experience with demonstrated AI/ML security depth (prompt injection, model supply chain, adversarial inputs, RAG).
- Experience using AI tools (ChatGPT, Copilot, Claude, etc.) and LLM frameworks and APIs (OpenAI, Anthropic, LangChain, or similar) to accelerate and elevate your work.
- Hands-on identity and access expertise across modern enterprise and cloud identity stacks, including access models for AI systems and non-human identities.
- Infrastructure and policy-as-code (e.g. Terraform, OPA/Rego) and proficiency in a scripting language for automation (Python preferred).
- Cloud security expertise: AWS Solutions Architect / Security Specialty or equivalent demonstrated expertise, including multi-account governance, preventive guardrails, and policy-as-code.
- Application security (OWASP Top 10 and the OWASP LLM/GenAI Top 10, secure SDLC) and threat-modelling methodologies (STRIDE, PASTA, or equivalent). Practical experience building or operating AI agents, and integrating security tooling (SIEM, CSPM, SAST/DAST/SCA) so it surfaces action rather than raw alerts.
- Working knowledge of SOC 2 and/or ISO 27001 control frameworks.

Preferred Qualifications

- Experience building or operating AI agents in a production environment.
- Awareness of privacy regulation (GDPR/CCPA) as it touches AI including privacy-by-design and DPIAs.
- Red teaming or adversarial ML research backgrounds.
- Experience implementing privileged-access, key-management, posture-management, or data-protection programs.
- Experience with EDR, CASB, DLP, Security automation and SAST, DAST, IAST and SCA tools.
- Cloud Architecture or Security certifications (CCSK, TAISE, AWS).

**Travel Required**

Up to 10%

**Other Duties**

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

**What it’s like to work at Rithum**

When you join Rithum, you can expect to work with smart risk-takers, courageous collaborators, and curious minds.

As part of the Rithum team, you are valued, supported, and included. Guided by a transparent culture and accessible, approachable leadership, we offer career opportunities aligned to your ambitions and talents. To ensure work and life balance works for you, we also offer an array of resources to support you and your families, including comprehensive benefits and wellness plans.

At Rithum you will:

- Partner with the leading brands and retailers.
- Connect with passionate professionals who will help support your goals.
- Participate in an inclusive, welcoming work atmosphere.
- Achieve work-life balance through remote-first working conditions, generous time off, and wellness days.
- Receive industry-competitive compensation and total rewards benefits.

We believe in transparency and fairness in our compensation practices.

For this position, the expected base pay range is: $170,000-$220,000 per year.

This range represents the base pay for the role across all U.S. locations and is determined based on market data, internal equity, and experience. Final compensation may vary depending on geographic location, skills, and relevant experience.In addition to base pay, we offer a discretionary bonus for non-sales roles, a comprehensive benefits package, and, where applicable, sales incentives.

For this position, the expected discretionary bonus is 12% of the annual base salary.

**Benefits**

- Medical, dental and vision benefits: Affordable health care plans and company HSA contributions, starting on Day 1
- A 6% 401(k) match
- Competitive time off package with 20 days of Paid Time Off, 9 Company-Paid holidays, 2 paid floating holidays, 7 paid sick days, 2 Wellness days, and 1 Paid Volunteer Day; at 3 years of service PTO increases to 22 days, and at 5 years it increases to 25 days
- 12 weeks primary caregiver leave & 4 weeks secondary caregiver leave
- Accident, critical illness, and hospital indemnity insurance
- Pet insurance
- Legal assistance and identity theft insurance plans
- Life insurance 2x salary
- Access to the Calm app and the Employee Assistance Program
- $65/month Remote work stipend for internet
- Culture and team-building activities
- Tuition assistance
- Career development opportunities
- Charitable contribution match up to $250 per year

Rithum is an equal opportunity employer. We are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other protected characteristic. All employment is decided on the basis of qualifications, merit, and business need.

We're committed to providing reasonable accommodations in accordance with the law for qualified applicants. If you require assistance during the interview process due to a medical condition or need support accessing our website or completing the application process, please reach out to us by completing the [Accommodations Request Form](https://forms.office.com/r/v1qDcUpHLw). Your comfort and accessibility are important to us, and we're here to ensure a seamless experience as you explore opportunities with our team.

本页面信息整理自 4dayweek.io,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

广告运营经理

RithumUnited States$50,000 - $85,000/年permanent4 天前
市场运营职能支持限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级软件工程师I

RithumUnited States$100,000 - $192,000/年permanent2026-08-05
开发工程限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

业务系统分析师

RithumUnited States$65,000 - $117,000/年permanent2026-07-31
AI职能支持限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

高级销售工程师

RithumUnited States$110,000 - $150,000/年permanent2026-07-28
开发工程市场运营限定地区(需当地身份)与中国几乎无重叠,需长期倒时差

← 返回全部职位