AI Agent Security Architect

Replit
Foster City, CA2026-09-01Hybrid

About the job

We are looking for an AI Agent Security Architect to function as the primary technical authority for Replit’s autonomous and AI agent security blueprint. In this critical role, you will design, implement, and maintain the runtime defense systems, guardrail frameworks, and sandboxing architectures that govern AI agents executing code, invoking tools, and reasoning across our platform. You will be a key technical contributor—leading high-impact AI security initiatives and bridging the gap between non-deterministic AI behavior and rigorous cybersecurity controls for both engineering and executive leadership.

Responsibilities

- Define the long-term vision and architectural patterns for securing autonomous agent workflows, Model Context Protocol (MCP) integrations, multi-turn reasoning loops, and multi-agent coordination.

- Architect and deploy dynamic input/output guardrail systems, semantic firewalls, and real-time intent verification filters to prevent goal hijacking, system prompt leaks, and indirect prompt injections.

- Partner with Infrastructure and AppSec teams to design secure, short-lived, micro-isolated environments (e.g., microVMs, WebAssembly, container sandboxes) where agents can dynamically execute code, run shell commands, and interact with host operating systems safely.

- Conduct specialized threat modeling against non-deterministic systems and lead automated and manual AI red-teaming initiatives to uncover vulnerabilities in RAG context pipelines, vector stores, and tool-calling interfaces.

- Architect fine-grained permission models and step-up Human-in-the-Loop (HITL) authorization patterns for agents acting on behalf of users.

- Design strict data isolation and poisoning prevention controls for vector databases, retrieval-augmented generation (RAG) pipelines, and long-term conversation memories across multi-tenant workloads.

Qualifications

Minimum

- 6+ years of experience in security engineering or security architecture, with at least 2+ years dedicated specifically to AI/ML security, LLM application security, or securing agentic frameworks.

- Deep understanding of agentic architectures and protocols (e.g., Model Context Protocol (MCP), LangChain, AutoGen, CrewAI, ReAct frameworks, and vector database technologies).

- Hands-on expertise with threat vectors unique to agentic AI: Indirect Prompt Injection, Goal Hijacking, Tool Parameter Tampering, Data Poisoning, and Context Contamination.

- Strong background in applying safety standards and risk frameworks such as OWASP Top 10 for LLMs & AI Agents, NIST AI RMF, and MITRE ATLAS.

- Proficiency in Python, Go, or TypeScript/JavaScript with a proven track record of reviewing code and building functional security tooling or guardrails.

- Experience authoring, maintaining, and evangelizing technical security architecture documentation.

- Exceptional ability to communicate complex non-deterministic AI risks to both deep technical engineers and executive stakeholders.

- Proven track record of contributing to an enterprise Cybersecurity Risk Register.

Preferred

- Experience designing runtime sandboxing and isolation technologies (e.g., Firecracker, gVisor, Docker, WebAssembly) for dynamic code execution environments.