AI Security Engineer at EMCOR Group, Inc.
CT-Norwalk US-AZ-Phoenix, CT
$134,000–$171,000from the description
Jun 29, 2026
CT-Norwalk US-AZ-Phoenix, CT
Jul 21, 2026
What this job asks for AI summary
This role focuses on protecting an enterprise's AI systems — covering GenAI, ML pipelines, model hosting, and AI integrations — through security architecture, threat modeling, and hands-on engineering. Day-to-day work includes implementing controls against risks like prompt injection and data leakage, operationalizing AI governance, building detection and monitoring capabilities, and assessing AI vendors. It suits an experienced cybersecurity engineer with a background in cloud security and working knowledge of AI/ML concepts.
Senior level · 7+ years · Remote · Full-time
“or” means any one of them counts — you don't need all of them.
Posted 2 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 4,850 people nationally plausibly meet what this posting asks for (information security analysts). range 1,000–7,300
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
The title 'AI Security Engineer' carries no explicit seniority level word, so the title states no level; however, the 7-year minimum cybersecurity experience gate and the breadth of architecture, governance, and hands-on engineering responsibilities support a Senior classification.
The 3-year cloud/API/CI/CD requirement is stated as a single compound gate in the qualifications section; cloud platforms, APIs, and CI/CD are captured as separate skills each carrying that 3-year demand.
Threat modeling, DLP, and prompt injection are drawn from the responsibilities section but are described with firm, operational language ('conduct', 'implement and maintain', 'integrate and maintain') that reads as hard requirements for the role rather than aspirational context.
CISSP, CCSP, and GIAC are explicitly marked 'preferred' in the posting; CCSP and GIAC are listed as alternatives since the JD treats them as interchangeable options for the same certification requirement.
RAG (Retrieval-Augmented Generation) hardening appears in the responsibilities narrative as part of the AI security stack context rather than a standalone gated requirement, so it is marked preferred.
No degree requirement is stated anywhere in the posting.
The role is bonus-eligible in addition to the $134,000–$171,000 salary range.
Caller marked this a fully-remote role — scored against the national candidate pool.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.