AI Security Analyst
On-sitePune, Maharashtra, India
Job Summary
Monitor enterprise AI usage end to end, hunt for unauthorized ("shadow") AI and rogue agent activity, and turn raw AI telemetry into triaged findings for the security and governance team. Investigate alerts related to autonomous agents and AI-powered workflows, including threats like OpenClaw, while documenting results and driving remediation with Automation Engineers and Identity teams. Continuously monitor CASB/SWG, OAuth, and endpoint telemetry to discover unsanctioned tools, classify risk tiers, and escalate unauthorized deployments. Maintain and validate AI activity logging and data retention controls to support ISO 42001 audits, EU AI Act readiness, and internal impact assessments. Analyze false positive/negative trends to recommend detection logic adjustments and partner with Engineering to ensure developer AI tools operate within approved guardrails.
Required Qualifications
- 3-5+ years in security analysis, SOC, or GRC analyst roles
- Working knowledge of SIEM platforms (Splunk, Microsoft Sentinel, Google Chronicle) and DLP/CASB tooling
- Understanding of AI/LLM risk concepts: prompt injection, data exfiltration via AI tools, model/agent misuse, shadow AI
- Familiarity with non-human identity concepts (service accounts, API keys, OAuth tokens) and their security challenges
- Understanding of threat detection logic (MITRE ATT&CK; exposure to MITRE ATLAS or OWASP LLM Top 10 a plus)
- Comfortable reading and interpreting logs, API telemetry, and structured/unstructured investigation data
- Basic scripting or query proficiency (Python, SQL, or SPL/KQL) for investigation and reporting
- Strong written documentation habits
- Ability to translate technical findings into clear, risk-based narratives
- Familiarity with cloud environments (AWS, Azure, or GCP)
Desired Qualifications
- Exposure to AI governance frameworks (ISO 42001, NIST AI RMF, EU AI Act risk tiers)
- Experience supporting audit evidence collection or control testing (SOC 2, ISO, or similar)
- Familiarity with agentic AI frameworks (LangChain, AutoGen, CrewAI) and MCP-based tool-use architectures
- Experience with browser extension monitoring or OAuth application audits
- Exposure to ML-based anomaly detection or NLP-driven log analysis
- Certifications: Security+, CISSP (Associate), or AI-specific credentials
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.