| Requisition ID: | 67703 | ||||
| Title: | Engineer Sr I - Product Security (AI Platform Engineer) -remote | ||||
| Salary Range: |
|
Main Objective: Own and operate Arthrex's Engineering AI platforms, ensuring they are secure, governed, cost-efficient, and reliably operational across all Engineering AI tools and integrations — including Anthropic Claude, OpenAI, Google Gemini, Cognition Devin, Perplexity, and more. This role is within Arthrex's Product Security Engineering team, and you help ensure Engineering AI platforms are well-administered, protected, and aligned with enterprise security and engineering standards. This role is scoped to Engineering AI tooling; enterprise-wide IT infrastructure, Data & Analytics platforms, and corporate AI governance fall outside this role's remit. The ideal candidate would work from our Naples, FL, Boston, MA, or Santa Barbara, CA locations; however, we are open to full-time remote anywhere in the United States.
Essential Duties and Responsibilities:
- Governance & Security: Define and enforce usage policies, acceptable use standards, and access controls across all AI tools used within the Engineering organization. Partner with the Cloud SecOps Lead to implement and maintain security controls across all AI platforms and integrations, monitoring for data exposure risks and supporting periodic security audits and access reviews. Establish and enforce controls for agentic AI workflows, including agentic identity management, scoped permissions for autonomous AI actions, and audit logging of agent-initiated activity to detect and prevent unauthorized or unintended behavior.
- Architecture, Integration & Administration: Partner with the Software Engineering Architect to ensure AI platform integrations align with engineering architecture and security standards; evaluate new AI tooling for engineering fit and maintain connector and integration design consistency across systems. Manage user provisioning, repository management, platform configuration, and connector integrity across all AI tooling environments.
- Cost Management & Platform Health Monitoring: Track and optimize AI platform spend across tools, APIs, and licenses; build cost visibility dashboards and establish spend controls and reporting cadences for leadership. Monitor platform health including usage, adoption trends, model call volumes, latency, and error rates; surface insights and usage reporting to relevant stakeholders on a regular basis.
- Compliance & Documentation: Maintain audit-ready documentation of platform governance controls, compliance posture, runbooks, architecture diagrams, and integration configurations. Document and communicate AI use case wins and gaps to leadership, translating platform adoption data into business impact narratives that justify continued investment and flag areas needing attention.
- Vendor Management, Escalation & Enablement: Serve as the primary escalation point for platform issues; manage vendor relationships and coordinate with AI tool providers on outages, feature gaps, and roadmap alignment. Support engineer onboarding and internal adoption of AI tools, building enablement materials as the platform evolves.
- Designs security architecture of components or functional systems and modifies existing designs to develop or improve products.
- Recommends alterations to development and design to improve the security of products and/or procedures.
- Contributes to a broader design perspective and considers how an application interacts with the underlying infrastructure or external resources.
- Develops threat scenarios and designs responses for associated vulnerabilities to mitigate risk.
- Maintains design history file for assigned projects, adhering to Arthrex design control procedures.
- Determines the necessity of security testing and initiates testing of assigned products.
- Provides Regulatory department with technical support for assigned projects as needed.
- Supports Marketing and Product Management with technical information to be used for training and marketing of assigned products.
- Supports Software Engineering to design and develop components, processes, and training using Security-by-Design and Privacy-by-Design principles.
- Supports surgeon and distributor customers in the sales process by educating and demonstrating security-focused aspects of assigned products as needed.
- Partner with Legal, Compliance, Privacy, and Information Security departments to ensure products and staff comply with required laws, regulations, and policies.
- Reports on progress and status of assigned projects on a timely basis.
- May be required to travel; International travel may be required.
Knowledge:
- Complete understanding and application of principles, concepts, practices, and standards. Full knowledge of industry practices.
Skills:
- AI Platform Administration & Development (required) Hands-on experience administering AI platforms (e.g., Anthropic Claude, OpenAI ChatGPT, Google Gemini, Cognition Devin, Perplexity, or similar), including professional or personal experience building applications, analytics pipelines, or security tooling using agentic software development processes.
- Integration, Access & API Security (required) Experience managing SSO, RBAC, and API security for SaaS or cloud platforms, including connector and integration management using REST APIs, webhooks, or developer-oriented integration platforms such as Azure Logic Apps, GitHub Actions, or similar.
- Automation & Scripting (required) Scripting skills in Python, Bash, or PowerShell for automation and tooling.
- AI Governance & Agentic Security (preferred) Familiarity with AI governance frameworks and responsible AI practices in an engineering or product development context (NIST AI RMF, ISO 42001), including agentic AI concepts such as agent identity, scoped permissions, secure agent orchestration patterns, and prompt injection attack vectors and AI-specific runtime security and guardrail design.
- AI Observability & Runtime Monitoring (preferred) Familiarity with LLM observability and prompt governance tooling (e.g., LangSmith, Helicone, Weights & Biases) and OpenTelemetry (OTel) for LLM tracing and agent observability.
- AI Spend Management (preferred) Familiarity with AI tooling spend management, including API usage cost tracking, license optimization, and usage-based billing across engineering AI platforms.
- Knowledgeable of System and Software Development Processes and Lifecycles required.
- Knowledgeable of application security best practices required.
- Knowledgeable of FDA and ISO guidelines for the development of medical devices required.
- Experience leading strategic discussion that addresses both business and technical risks required.
- Proficiency in the development of threat scenarios and risk mitigation techniques required.
- Proficiency in the use of privacy by design principle required.
Education and Experience:
- 5 years of related experience required; preferably in platform engineering, software/ML engineering, or software engineering toolchain administration.
- Bachelor’s degree required preferably in Engineering (Mechanical, Biomedical, Electrical or Software Engineering), Computer Science, Information Security, or Cybersecurity
Arthrex Benefits
- Medical, Dental and Vision Insurance
- Company-Provided Life Insurance
- Voluntary Life Insurance
- Flexible Spending Account (FSA)
- Supplemental Insurance Plans (Accident, Cancer, Hospital, Critical Illness)
- Matching 401(k) Retirement Plan
- Annual Bonus
- Wellness Incentive Program
- Gym Reimbursement Program
- Tuition Reimbursement Program
- Trip of a Lifetime
- Paid Parental Leave
- Paid Time Off
- Volunteer PTO
- Employee Assistance Provider (EAP)
All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other status protected by law.
Job title: Engineer Sr I - Product Security (AI Platform Engineer) -remote
US, Remote
Job Segment:
Biomedical Engineering, Test Engineer, Software Engineer, Cloud, Testing, Engineering, Technology