Senior Security Engineer – AI & Application Security
Indexed description
Location: South Florida / Miami area
Work Model: Hybrid / Onsite
Engagement: Contract with potential Contract-to-Direct Hire
Duration: 6–12 months + with potential contract-to-direct
US Citizen and Green Cards candidates only.
Help Secure How AI Connects Into the Enterprise
We are looking for a senior security professional who can understand complex application environments, determine where security controls belong, and help business, engineering, identity, AI, and security teams move from problem to outcome.
This is not a coding role and it is not a narrow AppSec position.
The right person can look across:
Front End → Middleware → APIs → Backend Systems → Identity → Cloud → AI
…and quickly understand how the pieces connect, where trust can break, and what needs to happen next.
US Citizen and Green Cards candidates only.
What You’ll Do
- Review complex application and AI-enabled architectures
- Identify appropriate security control points across applications, APIs, IAM, cloud, and AI
- Evaluate authentication, authorization, identity flows, and backend connectivity
- Apply practical AppSec and API security concepts
- Help assess Agentic AI, MCP/tool interactions, and runtime security considerations
- Support and close security technology PoVs and provide best-fit recommendations
- Act as a technical connection point between the business and Information Security
- Coordinate actions across Security, Engineering, Product, IAM, Cloud, and Architecture teams
- Track decisions and outcomes through Jira and Confluence
- Operate independently with limited day-to-day direction
What We’re Looking For
- 8+ years across security engineering, architecture, AppSec, platform security, or related disciplines
- Strong understanding of enterprise application architecture
- Good API and backend-system knowledge
- Working AppSec knowledge
- Understanding of IAM concepts, authentication, authorization, and identity flows
- Familiarity with technologies such as Ping/ForgeRock, Entra, OAuth, OIDC, and token-based access
- Working knowledge of cloud and distributed systems
- Exposure to Agentic AI, AI-enabled systems, MCP, or AI security
- Ability to understand code concepts without needing to be a developer
- Strong communication, autonomy, and outcome orientation
What Will Separate You
The most important capability is critical thinking.
You should be able to take an ambiguous, multi-layer technical problem and clearly explain:
What is happening? Where is the risk? Where should the control sit? Who owns it? What needs to happen next?
We will want to hear real examples of difficult technical problems you have worked through and the outcomes you created.
Helpful, Not Required
- Direct eCommerce experience
- Agentic AI / MCP
- API gateways / WAF
- Non-human or workload identity
- DevSecOps
- Policy enforcement
- High-volume consumer platforms
Direct eCommerce experience is teachable.
Location
This role is based in South Florida and requires onsite presence 4 days per week.
If you are a senior security architect who can connect AI, applications, APIs, identity, and security controls -- and drive complex issues to an outcome -- we would like to talk.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search