Qualys

Qualys

Senior Security Engineer, AI/ML

Foster City, USA · Senior

Sponsorship not specified$115k-$140kDetected 21 days ago
PythonSQLVector DatabasesAWSGCPAzureCloud PlatformsCI/CDMachine LearningDeep LearningTensorFlowPyTorchscikit-learnPandasNLPLLMsRAGAgentic AIMLOpsCybersecurityPenetration TestingDetection EngineeringSupply ChainResearch

About the role

  • With a strong focus on innovation and scale, Qualys empowers organizations to achieve continuous security and compliance through real-time visibility and analytics.
  • This is a senior, dual-mandate role for an engineer who is equally comfortable orchestrating multi-agent pipelines and RAG architectures as they are tearing them apart to find weaknesses.
  • Our Work Environment - Collaborative & Transparent: We use virtual collaboration and pairing tools to share ideas openly.

Responsibilities

  • Build and deploy GenAI applications using LangChain, LlamaIndex, or similar frameworks, and orchestrate agentic AI workflows with tools such as AutoGen, CrewAI, or custom agent-based architectures.
  • Implement and optimize RAG pipelines using embeddings and vector databases (e.g., FAISS, Pinecone, Qdrant ), with security and data-leakage controls built in from the start.
  • Design and execute offensive security assessments and red teaming campaigns against GenAI and ML-powered systems, including the agentic pipelines built in-house.
  • Contribute to and build internal tooling for scanning, fuzzing, and automating LLM vulnerability discovery.
  • Lead & Communicate
  • Collaborate cross-functionally with product and engineering teams to design secure AI-powered features and define hardening strategies.
  • Develop proof-of-concepts, technical whitepapers, or blog posts on emerging threats and best practices
  • Develop proof-of-concepts, technical whitepapers, or blog posts on emerging threats and best practices; monitor threat intelligence and academic research on AI model security and supply chain risks.
  • Help drive a security-first culture and shape the defense landscape of next-generation AI systems at global scale.

Requirements

  • Experience training ML models using Scikit-learn, TensorFlow, or PyTorch, and a strong working knowledge of LLM architectures (transformers, embeddings, fine-tuning, RAG).
  • Hands-on experience with LangChain, LlamaIndex, or other GenAI frameworks, and with building multi-agent or autonomous AI workflows.
  • Ability to analyze logs, API interactions, inference responses, and prompt chains to identify anomalous or risky behavior.

Nice to have

  • Background in AI/ML security red teaming or adversarial ML.
  • Knowledge of vector database risks, insecure RAG pipelines, model fingerprinting, and AI model supply chain attacks.
  • Experience using or contributing to tools such as AutoGen, CrewAI, MetaGPT, Guardrails.ai, LLM Guard, or Tracer.
  • Familiarity with LLMs such as GPT-4, Claude, Mistral, LLaMA, or Falcon, and integrating them via APIs.
  • Experience with cloud platforms (AWS, GCP, Azure), containerized deployments, and MLOps tooling for monitoring, retraining, and CI/CD automation.
  • Familiarity with Secure SDLC and threat modeling frameworks (e.g., STRIDE, MITRE ATLAS) and AI-specific security checklists.
  • Publications or presentations at conferences such as Black Hat, DEF CON, USENIX, NeurIPS, or OWASP, and contributions to AI/ML projects in security, compliance, or enterprise applications.
  • Our Work Environment

Skills

  • Company Overview
  • Position Overview
  • Siloed work is discouraged - teamwork is our strength.

Compensation

  • The salary range for this position is $115,000 - $140,000 per year.
  • Final compensation will be determined based on several factors, including but not limited to skills, relevant experience, and work location.
  • Please note this range reflects base salary and does not include incentive compensation or potential equity grants.

Benefits

  • Design, train, and evaluate ML models from scratch, spanning both classical ML and deep learning, and develop end-to-end pipelines for ingestion, preprocessing, training, evaluation, and deployment.
  • We offer a comprehensive benefits package, including healthcare, retirement plans, and more.
  • We also offer a comprehensive and highly competitive benefits package.

Company info

  • Our people are our most valuable asset.
  • We invest in personal growth and align individual strengths to company objectives.
  • Why Join Us?
  • Join a team that values diverse thinking, critical research, openness, and continuous improvement.

Equal opportunity

  • Qualys is an Equal Opportunity Employer, please see our EEO policy.

This listing is sourced directly from Qualys's careers page and normalized into a canonical job model.