AI Agent Security Architect
Remote • Foster City, CA • FullTime
Posted 13d ago
Job Location
Foster City, CA
Tech Stack
Remote Work Policy
Fully remote
Employment Type
FullTime
Categories
AI Agent Engineer
About the job
Replit is seeking an AI Agent Security Architect to serve as the primary technical authority for the security blueprint of Replit's autonomous and AI agents. This role involves designing, implementing, and maintaining runtime defense systems, guardrail frameworks, and sandboxing architectures for AI agents that execute code and interact with tools on the platform. The ideal candidate will lead high-impact AI security initiatives, bridging the gap between unpredictable AI behavior and robust cybersecurity controls for both technical and executive audiences.
Responsibilities
- Define the long-term vision and architectural patterns for securing autonomous agent workflows, MCP integrations, multi-turn reasoning loops, and multi-agent coordination.
- Architect and deploy dynamic input/output guardrail systems, semantic firewalls, and real-time intent verification filters.
- Design secure, isolated environments for agent code execution and tool interaction.
- Conduct specialized threat modeling and lead AI red-teaming initiatives against non-deterministic systems.
- Architect fine-grained permission models and human-in-the-loop authorization patterns for agents.
- Design data isolation and poisoning prevention controls for vector databases and RAG pipelines.
- Define, document, and maintain secure design patterns and SDKs for AI agent development.
- Identify, quantify, and document non-deterministic and agentic security risks.
- Design tamper-evident logging and telemetry standards for agent operations.
- Translate AI security controls into audit documentation and support sales inquiries regarding AI safety.
Requirements
- 6+ years of experience in security engineering or architecture, with at least 2 years in AI/ML security, LLM application security, or securing agentic frameworks.
- Deep understanding of agentic architectures and protocols (e.g., MCP, LangChain, AutoGen, CrewAI, ReAct, vector databases).
- Hands-on expertise with agentic AI threat vectors (Indirect Prompt Injection, Goal Hijacking, Tool Parameter Tampering, Data Poisoning, Context Contamination).
- Strong background in safety standards and risk frameworks (OWASP Top 10 for LLMs & AI Agents, NIST AI RMF, MITRE ATLAS).
- Proficiency in Python, Go, or TypeScript/JavaScript with experience in code review and building security tooling.
- Experience authoring, maintaining, and evangelizing technical security architecture documentation.
- Exceptional ability to communicate complex AI risks to technical and executive stakeholders.
- Proven track record of contributing to an enterprise Cybersecurity Risk Register.
- Experience designing runtime sandboxing and isolation technologies (e.g., Firecracker, gVisor, Docker, WebAssembly) is a bonus.
Benefits
- Competitive Salary & Equity
- 401(k) Program with a 4% match (US Only)
- Health, Dental, Vision and Life Insurance
- Short Term and Long Term Disability
- Paid Parental, Medical, Caregiver Leave
- Flexible Time Off (FTO) + Holidays
- Commuter Benefits (In-Office & US Only)
- Monthly Wellness Stipend
- Autonomous Work Environment
- In Office Set-Up Reimbursement (In-Office Only)
- Quarterly Team Gatherings
- In Office Amenities (In-Office Only)