We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
Remote New

Senior Security Engineer, AI Infrastructure

ImmunityBio
paid time off, 401(k), retirement plan
United States
Apr 27, 2026

Company Overview
ImmunityBio, Inc. (NASDAQ: IBRX) is a commercial-stage biotechnology company developing cell and immunotherapy products that are designed to help strengthen each patient's natural immune system, potentially enabling it to outsmart the disease and eliminate cancerous or infected cells. We envision a day when we no longer fear cancer, but can conquer it, thanks to the biological wonder that is the human immune system. Our scientists are working to develop novel therapies that harness that inherent power by amplifying both branches of the immune system, attacking cancerous or infected cells today while building immunological memory for tomorrow. The goal: to reprogram the patient's immune system and treat the host rather than just the disease.

Why ImmunityBio?
* ImmunityBio is developing cutting-edge technology with the goal to transform the lives of patients with cancer and develop next-generation therapies and vaccines that complement, harness and amplify the immune system to defeat cancers and infectious diseases.
* Opportunity to join a publicly traded biopharmaceutical company with headquarters in Southern California.
* Work with a collaborative team with the ability to work across different areas of the company.
* Ability to join a growing company with professional development opportunities.

Position Summary

The Senior Security Engineer- AI Infrastructure is a systems-level role integrating security engineering, identity management, and infrastructure hardening across AI and agentic platforms. The role involves close interaction with platform, DevOps, site reliability, and AI/ML engineering functions. The Senior AI Infrastructure Security Engineer will serve as the Subject Matter Expert (SME) for securing AI workloads and will work with cross-functional teams to ensure successful implementation of security architecture across the full AI stack - from Kubernetes and cloud services through AI agents and their tools. This role will support senior engineering and security leadership in driving compliance with relevant security and AI governance frameworks, preparing and adhering to project schedules, and providing technical security support for AI platform operations, identity and access control, logging, and runtime protections for models, agents, and data.

Essential Functions

  • Serve as Subject Matter Expert for the design, maintenance, and implementation of security architectures for AI infrastructure, including model hosting environments, model registries, feature stores, vector databases, and agent orchestration platforms.
  • Engineer robust Identity and Access Management (IAM) for AI systems, including RBAC/ABAC policies for models, agents, tools, and data stores; secrets management; and key and token lifecycle management (creation, rotation, revocation) for AI services and agents.
  • Define and implement guardrails and isolation strategies for agentic workflows, including sandboxing, least privilege tool access, network segmentation, and blast radius reduction.
  • Build and integrate logging and observability pipelines for AI systems - covering prompts, tool calls, model outputs, agent actions, and data access paths - into existing detection and incident response infrastructure.
  • Conduct risk assessments and threat modeling for AI platforms and integrations, including supply chain risks around models, datasets, and third-party AI services.
  • Partner with DevOps and Platform Engineering teams to embed AI security controls into CI/CD pipelines and infrastructure-as-code, including secure deployment patterns, policy-as-code for AI resources, and pre-production security checks.
  • Lead and participate in AI-related incident response and forensics, including investigations into model misuse, compromised agents, or suspicious data flows.
  • Consult and collaborate with SMEs across Security, Platform Engineering, Data Science, Compliance, and Legal to ensure alignment of security controls with business and regulatory requirements.
  • Ensure compliance with relevant security and AI governance frameworks and regulations - including NIST CSF, NIST RMF, NIST AI RMF, ISO 27001, SOC 2 Type 2, and applicable data protection regulations - by delivering technical controls and audit-ready evidence.
  • Lead creation, modification, and maintenance of security documentation, including architecture decision records, threat models, runbooks, and SOPs, maintained in a compliant and audit-ready state.
  • Provide technical mentoring and oversight to less experienced engineers responding to and troubleshooting AI platform security issues.
  • Perform ad-hoc and cross-functional projects assigned to support business needs and provide developmental opportunities.

Education & Experience

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field with 7+ years of relevant experience is required.
  • 5+ years of experience in security engineering, cloud security, or platform security is required.
  • 3+ years of hands-on experience with container orchestration and modern infrastructure stacks (e.g., Kubernetes-based platforms, microservices, or serverless) and their security hardening is required.
  • Experience securing AI/ML or LLM-based systems from an infrastructure or security perspective (e.g., model endpoints, registries, or AI gateways) is preferred
  • Experience working within a regulated industry or organization subject to frameworks such as NIST AI RMF, SOC 2 Type 2, ISO 27001, or equivalent is preferred.

Knowledge, Skills, & Abilities

  • Knowledge of and proficiency in applying NIST CSF, NIST RMF, NIST AI RMF, ISO 27001, and SOC 2 Type 2 controls to technical security programs.
  • Strong knowledge and background in Identity and Access Management (IAM), secrets management, and securing service-to-service communication in distributed systems.
  • Excellent interpersonal skills and ability to work effectively within cross-functional team environments.
  • Excellent technical writing, communication, and organizational skills, including the ability to produce audit-ready security documentation.
  • Demonstrated ability to build security tooling and automation, and to work in close partnership with infrastructure and SRE teams.
  • Strong knowledge of data protection practices relevant to AI workloads, including DLP, encryption, masking, and access pattern monitoring.
  • Familiarity with agentic AI systems - including agents with tools, workflow engines, or multi-step planners - and their associated security risk surface is a strong plus.
  • Knowledge of and proficiency in applying NIST CSF, NIST RMF, NIST AI RMF, ISO 27001, and SOC 2 Type 2 controls to technical security programs.
  • Strong leadership skills with the ability to influence functional groups on security design, feasibility, and risk tradeoffs.

Working Environment / Physical Environment

  • This position works on-site or remote based on the candidate's geographic location.
  • Regular work schedule is Monday - Friday, within standard business hours. Flexibility is available with manager approval.
  • Must possess mobility to work in a standard office setting and to use standard office equipment, including a computer.
  • Lift and carry materials weighing up to 30 pounds.

This position is eligible for a discretionary bonus and equity award. The annual base pay range for this position is below. The specific rate will depend on the successful candidate's qualifications, prior experience as well as geographic location.

National Market (all markets unless identified as Premium)

$135,000 (entry-level qualifications) to $150,000 (highly experienced) annually

Premium Market (Premium markets include Los Angeles, San Diego, San Francisco, New York City, Chicago, & Boston)

$144,000 (entry-level qualifications) to $160,000 (highly experienced) annually

The application window is anticipated to close on 60 days from when it is posted or sooner if the position is filled or closed.

ImmunityBio employees are as valuable as the people we serve. We have built a resource of robust benefit offerings to best support the total wellbeing of our team members and their families. Our competitive total rewards benefits package, for eligible employees, include: Medical, Dental and Vision Plan Options * Health and Financial Wellness Programs * Employer Assistance Program (EAP) * Company Paid and Voluntary Life/AD&D, Short-Term and Long-Term Disability * Healthcare and Dependent Care Flexible Spending Accounts * 401(k) Retirement Plan with Company Match * 529 Education Savings Program * Voluntary Legal Services, Identity Theft Protection, Pet Insurance and Employee Discounts, Rewards and Perks * Paid Time Off (PTO) includes: 11 Holidays * Exempt Employees are eligible for Unlimited PTO * Non-Exempt Employees are eligible for 10 Vacation Days, 56 Hours of Health Pay, 2 Personal Days and 1 Cultural Day * We are committed to providing you with the tools and resources you need to optimize your Health and Wellness.

At ImmunityBio, we are an equal opportunity employer dedicated to diversity in the workplace. Our policy is to provide equal employment opportunities to all qualified persons without regard to race, gender, color, disability, national origin, age, religion, union affiliation, sexual orientation, veteran status, citizenship, gender identity and/or expression, or other status protected by law.

Applied = 0

(web-bd9584865-g58x8)