AI Security Engineer
Cross River provides API-driven banking infrastructure enabling embedded financial services including payments, lending, card programs, and cryptocurrency solutions.
Funding history
Projects
About Cross River Bank
Cross River operates a proprietary real-time banking core platform that delivers embedded financial services to fintech and technology companies. The platform provides payment rails including ACH, wires, RTP, and FedNow, card issuing and processing capabilities, digital lending infrastructure, and cryptocurrency banking services. Cross River enables partners to access banking functionality through API integrations while maintaining federal regulatory compliance.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will design and enforce AI security guardrails across AWS and Azure. You will assess agentic frameworks, coding agents, and AI vendors; threat-model AI systems; build security monitoring; and integrate secure-by-default controls into the SDLC. You will document audit evidence, conduct AI red-teaming, and provide safe AI development guidance.
Requirements
- 5+ years of experience in Security Engineering, Application Security, Cloud Security, or a similar field
- 1–2+ years of experience securing AI, machine-learning, or data-intensive systems
- Experience with AWS or Azure
- Experience with Python, TypeScript, REST, gRPC, containers, Kubernetes, and Terraform
- Understanding of LLM attack surfaces and mitigation patterns
- Experience assessing agentic architectures and AI coding assistants for secure enterprise deployment
- Knowledge of OAuth2, OIDC, service principals, role tokens, PIM, secret management, and KMS
- Experience with observability, telemetry, and SIEM integration
- Experience translating controls into developer libraries, documentation, and CI/CD checks
- Experience mapping controls to FFIEC, SOC 2, and PCI DSS
- Written communication skills in English and Hebrew
Responsibilities
- Design enterprise AI guardrails across Azure and AWS
- Define secure usage patterns and data-governance controls for agentic frameworks and coding agents
- Threat-model AI systems and build mitigations for misuse scenarios
- Build privacy-preserving monitoring and telemetry for AI systems
- Integrate AI security controls into the SDLC
- Evaluate third-party AI vendors and internal applications
- Map AI controls to FFIEC, SOC 2, and PCI DSS and document audit evidence
- Lead or participate in AI red-teaming and incident-response planning
- Create guidelines, examples, and training for safe AI development and use
Benefits
- Flexible hybrid work model with three days per week at the Jerusalem office
- Monthly wellness reimbursement
- Keren Hishtalmut
- Private health insurance
- Dental insurance
- Volunteer days
- Donation matching
- Yoga and Pilates
