Principal Application Security Engineer – AI & Agentic Systems

Other Jobs To Apply

No other job posts for this day.

<p>We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">ourselves accountable</span> and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.</p><p style="text-align:inherit"></p><p style="text-align:inherit"></p><p style="text-align:inherit"></p><p><b>Position Summary</b></p><p></p><p>Development, Standards & Secure Design</p><ul><li>Lead development and enforcement of application and AI security policies, standards, and guardrails, embedding security-by-design across both traditional and AI-driven systems.</li><li>Establish secure design patterns for AI agent frameworks, covering prompt management, tool invocation, memory handling, autonomy boundaries, and escalation controls.</li><li>Promote organization-wide awareness of AI-specific risks such as model misuse, prompt injection, data leakage, and unsafe agent behavior.</li></ul><p></p><p>AI & Agentic Security Architecture</p><ul><li>Serve as the principal SME for securing AI-enabled applications and agentic system architectures.</li><li>Architect and review secure designs for systems leveraging LLMs/foundation models, autonomous and semi-autonomous agents, RAG pipelines, and tool‑using or decision‑making workflows.</li><li>Define identity, authorization, data access, and observability controls specific to agentic environments while partnering closely with AI platform, product, and data teams to ensure responsible AI delivery.</li></ul><p></p><p>Collaboration, Leadership & Influence</p><ul><li>Influence engineering and product teams to integrate secure engineering practices and align security with compliance, privacy, and responsible AI initiatives.</li><li>Advise senior leadership on AI security implications, architectural decisions, and long-term strategy while shaping roadmaps that anticipate emerging AI threats and regulatory requirements.</li></ul><p></p><p>Testing, Analysis & Risk Management</p><ul><li>Lead advanced security testing and risk assessments for AI-enabled systems, including threat modeling of agent workflows, abuse/misuse analysis, and secure design reviews of AI pipelines.</li><li>Evaluate and guide adoption of new AI security tools, ensuring protections maintain confidentiality, integrity, availability, and responsible data use.</li></ul><p></p><p>Operational Response & Continuous Improvement</p><ul><li>Provide senior technical leadership during incidents involving application or AI systems, guiding response strategies for misuse, data exposure, and autonomous failures.</li><li>Translate operational learnings into improved security architecture, controls, and system resilience.</li></ul><p></p><p>Mentorship, Innovation & Strategy</p><ul><li>Mentor senior and principal engineers to elevate security maturity across the organization.</li><li>Contribute to research and evaluation of emerging AI security practices and play a key role in shaping the long-term application and AI security roadmap, advocating for security as a strategic accelerator for AI adoption.</li></ul><p></p><p><b>Required Qualifications</b></p><p></p><ul><li>10+ years of experience designing, building, and securing large-scale applications and platforms.</li><li>7+ years of expertise in application security, including threat modeling, secure design, and vulnerability management.</li><li>7+ years of programming experience in one or more languages such as Python, Java, JavaScript, C#, or Go.</li><li>5+ years of experience of developing and securing AI and ML workloads, with recent experience in generative AI and agentic workloads.</li><li>5+ years of experience public cloud platforms (AWS, Azure, and/or GCP) and modern application architectures.</li><li>3+ years of experience with containerized, serverless, and microservice-based architectures.</li></ul><p></p><p><b>Preferred Qualifications</b></p><p></p><ul><li>Hands-on experience securing AI agents, RAG pipelines, and tool-using LLM systems.</li><li>Proven ability to lead complex security initiatives from concept through enterprise-scale adoption.</li><li>Familiarity with AI governance, responsible AI principles, and emerging AI security standards.</li><li>Experience integrating security controls into CI/CD pipelines for AI and application workloads.</li><li>Strong understanding of compliance frameworks (PCI, HIPAA, NIST, HITRUST, CSA).</li><li>Experience influencing security strategy beyond a single team, including enterprise or platform-level impact.</li><li>Contributions to security research, open-source projects, or industry communities.</li></ul><p></p><p><b>Education</b></p><p></p><ul><li>Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience)</li></ul><p style="text-align:inherit"></p><p style="text-align:inherit"></p><p style="text-align:left"><b>Pay Range</b></p><p style="text-align:left">The typical pay range for this role is:</p><p style="text-align:inherit"></p>$144,200.00 - $288,400.00<p style="text-align:left !important"><br>This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls.  The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors.  This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.  This position also includes an award target in the company’s equity award program. <br> </p><p style="text-align:left !important">Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.</p><p></p><p><b>Great benefits for great people</b></p><p></p><p>We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.<br><br></p>This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.<p><span style="color:#4a4a4a"><br>Additional details about available benefits are provided during the application process and on </span><a href="https://learn.bswift.com/cvshealth-mainland" target="_blank" rel="noopener noreferrer"><span style="color:#0000ff"><u>Benefits Moments</u></span></a><span style="color:#4a4a4a">.<br><br></span></p>We anticipate the application window for this opening will close on: 07/03/2026<p style="text-align:inherit"></p><p style="text-align:inherit"></p><p style="text-align:left">Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.</p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...