At Axians, we value talent — not labels. We believe in a culture of inclusion, where everyone has a place. All applications are considered based on merit, with no discrimination of any kind. This is your opportunity to join an international group, working on a project that needs you to help tackle the challenges of digital transformation.
AI Security Engineer
Location
Portugal
Posted
13 days ago
Salary
0
Seniority
Mid Level
Job Description
AI Security Engineer
AxiansPT
Role Description We are looking for a TechTalent to work as an AI Security Engineer for an international project in the logistic sector. - Ensure that AI use cases, agents, and supporting platform components are built and operated securely by design and in line with the security framework. - Work hands-on with AI product, engineering, and platform teams to translate central security requirements into practical technical controls, implementation patterns, evidence, and delivery guardrails. - Work close to delivery, while maintaining a dotted line to Group Chief Information Security Officer (CISO) department to ensure alignment with client standards, security architecture principles, and control expectations. - Work closely with the Group AI leadership team, the Agentic Platform team, Group CISO, the Data Protection Office, and country IT and security leads. - Embed security by design across AI use cases, agents, and platform integrations, with strong controls for access, secrets, logging, monitoring, sandboxing, tool and API restrictions, and external integrations. - Translate group security policies and architecture into practical controls, reusable patterns, and guidance for AI teams, ensuring alignment with risk, third-party, supplier, and operational requirements. - Prepare security-gate evidence, drive remediation from reviews, and escalate unresolved control gaps, deviations, or delivery risks. - Address AI-specific risks such as prompt injection, data leakage, insecure tool use, excessive permissions, and weak auditability through hardening and secure deployment patterns. - Support due diligence and secure implementation for external AI vendors, models, orchestration components, and APIs, with the right safeguards for data protection and segregation. - Strengthen AI incident readiness through detection, logging, response scenarios, playbooks, exercises, and close collaboration with SOC and central security teams. - Scale secure AI delivery through reusable patterns, stronger hub capability, and lessons shared back into the groupwide security model. Qualifications - 7+ years in IT and cyber security, with at least some of that in transformation, digital or platform contexts. - Solid technical grounding in cloud security, identity and access management, application security and secure SDLC. - Working knowledge of AI/ML and Agentic AI security: prompt injection, data leakage, agent identity, tool-use risk, model supply chain. - Familiarity with OWASP LLM Top 10, MITRE ATLAS and NIST AI RMF. - Experienced with threat modeling, risk assessment and security architecture for distributed systems. - Strong stakeholder management; able to challenge solution designs constructively and influence without full hierarchical authority. - Fluent English; an additional European language is a plus. Benefits - Stable professional career with Axians projects. - Prospects for career advancement through training and new certifications. - Work Life Balance to reconcile work and family requirements. - Attractive, evolving compensation including performance bonuses, health insurance, and an employee assistance program for you and your family.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Configure and operate security scanning tools to effectively identify and analyze vulnerabilities • Remediate infrastructure vulnerabilities as they appear and put in place process to preemptively avoid recurrence • Triage, investigate, and escalate security alerts with remediation recommendations • Document procedures, best practices, and technical security standards • Collaborate with internal and external engineering teams to optimize alert rules and monitoring coverage • Provide technical thought leadership regarding the security of networks and systems • Identify scanning and monitoring gaps as well as ensuring all our dependencies are being fully audited • Support debug/testing and remediation management to enhance infosec posture • Participate in an after-hours on-call rotation to investigate and triage security alerts • Develop a deep knowledge of organizational systems, environments, and security tools • Ensure that products and services meet established security standards set by the company • Monitor networks and systems for intrusions and implement protection and recovery methods • Identify and advise on security risks associated with new development or system changes • Assist in providing access to users and applications using our security standards and best practices
• Lead recurring customer security coaching sessions, including tactical reviews, advisement sessions, and executive-level security discussions. • Review threats, incidents, posture trends, identity risks, compliance insights, and Microsoft security telemetry to identify meaningful areas for improvement. • Translate technical findings into clear, business-focused recommendations, roadmaps, and next steps. • Partner with MDR/SecOps, Customer Success Managers, consultants, and analysts to align customer priorities, risks, workstreams, and communication plans. • Help customers improve their understanding of their security environment and the effectiveness of their tools, processes, and controls. • Review and provide guidance across Microsoft security capabilities, including Microsoft Defender XDR, Microsoft Sentinel, Microsoft Entra ID, Microsoft Purview, Conditional Access, MFA, PIM, email security, insider risk, and cloud app governance. • Build and maintain customer-specific security roadmaps tied to licensing, budget, risk priorities, compliance drivers, and measurable outcomes. • Conduct security architecture and adoption planning to help customers optimize the value of their Microsoft tools and licenses. • Analyze security trends and make recommendations related to external and internal threats, including malware, identity-based risk, data leakage, and attack surface reduction. • Prepare advisement materials, tactical decks, quarterly executive summaries, and customer-facing recommendations using evidence from dashboards, analytics tools, KQL queries, reports, and telemetry trends. • Guide client conversations toward additional security enhancements, roadmap initiatives, and continuous improvement opportunities. • Monitor customer security issues, escalations, and requests, validating context and converting learnings into repeatable guidance. • Contribute to playbooks, best practices, and coaching materials while mentoring supporting consultants or analysts as needed.
• Own US customer trust operations: Manage intake, triage, prioritization, and completion of customer security questionnaires, vendor risk assessments, and RFIs for US-based customers. • Respond to customer security inquiries with technical depth: Complete questionnaires accurately, respond to RFIs, and address customer security concerns with responses that demonstrate understanding of Smartsheet's architecture and security controls. • Manage questionnaire queue and ensure SLA compliance: Maintain visibility into pending assessments, track completion timelines, and escalate delays. Keep customers informed of progress and manage expectations. • Build customer relationships and provide security assurance: Become a trusted resource for customer security teams. Understand their compliance requirements, ask clarifying questions, and provide responses that build confidence in Smartsheet's controls. • Support US sales teams: Work with sales and customer success teams to remove security-related deal blockers, provide compliance assurance materials, and accelerate customer buying cycles. • Escalate and collaborate on complex assessments: Identify questions requiring specialized expertise (AI security, FedRAMP, HIPAA, specific control implementations) and escalate appropriately. Work cross-functionally to gather evidence and provide comprehensive responses. • Understand industry-specific compliance: Respond to questions about HIPAA, NIST, state privacy laws (CCPA, etc.), PCI DSS, and sector-specific requirements relevant to customer industries. • Drive process improvements: Identify opportunities to improve questionnaire completion efficiency, update response templates, and recommend changes that benefit the team and customer experience.
• Design and maintain enterprise security architecture standards across cloud, infrastructure, network, application, and hosting environments • Develop secure reference architectures, security baselines, and operational security standards • Evaluate and recommend security technologies, tools, and controls to improve organizational security posture • Partner with Infrastructure, Engineering, and Platform teams to ensure secure system design and implementation practices • Review infrastructure, network, and application designs for security risks, vulnerabilities, and compliance alignment • Assist with the development and implementation of identity and access management (IAM), segmentation, hardening, encryption, and monitoring strategies • Support secure cloud adoption and infrastructure modernization initiatives • Provide technical guidance on security controls for production systems, customer environments, and internal platforms • Identify, assess, and document security risks across systems, applications, infrastructure, and operational processes • Partner with Compliance and Governance teams to support PCI-DSS, SOC, ISO, customer audits, and other security-related assessments • Assist in developing and maintaining security policies, standards, procedures, and technical controls • Participate in security reviews, risk assessments, vulnerability management, and remediation planning activities • Support operational maturity initiatives related to governance, access management, logging, monitoring, and security controls • Evaluate exceptions to security standards and provide documented risk recommendations • Support incident response activities involving infrastructure, access, operational security, and customer-impacting events • Assist with threat modeling, security investigations, forensic analysis coordination, and root cause reviews as needed • Provide guidance on vulnerability remediation priorities and risk mitigation strategies • Collaborate with operational teams to strengthen monitoring, detection, alerting, and defensive security capabilities • Participate in security awareness initiatives and promote security best practices throughout the organization • Serve as a subject matter expert on infrastructure and operational security practices • Partner cross-functionally with Engineering, Infrastructure, Security Operations, Compliance, and Leadership teams • Communicate technical risks and recommendations clearly to both technical and business stakeholders • Mentor technical teams on secure architecture principles and security best practices • Stay current on emerging threats, vulnerabilities, industry trends, and evolving security technologies • Additional duties as assigned



