Security Engineer
What you can expect You'll own risk assessment across four AI governance domains: GenAI Security, Agentic AI Security, Shadow AI detection, and AI Gateway/Model Context Protocol governance, identifying where emerging AI use cases create
What you can expect
You'll own risk assessment across four AI governance domains: GenAI Security, Agentic AI Security, Shadow AI detection, and AI Gateway/Model Context Protocol governance, identifying where emerging AI use cases create exposure. Working with AI/ML teams and security engineering, you'll define the controls, tooling, and standards that enable Zoom to adopt AI safely at scale. You'll operationalize the AI Governance Risk Charter while contributing your security engineering judgment across network, endpoint, cloud, and data security domains.
About the Tea m
Zoom's Enterprise Security team is building the security foundation for how AI is adopted, deployed, and governed across Zoom. Our team is lean and multi-domain, operating across AI governance, cloud, network, endpoint, and data security. We solve emerging risks through collaboration, shared ownership, and the ability to flex across domains rather than staying in narrow specializations.
Responsibilities
Conducting risk evaluations of AI use cases across GenAI, agentic AI, shadow AI, and AI gateway/MCP domains, scoring exposure using Likelihood and Impact methodology and maintaining the AI governance risk register.
Identifying security gaps in GenAI deployments including prompt injection, data leakage, model misuse, and output handling, and recommending targeted controls.
Assessing agentic AI systems for risks around autonomy, tool access, privilege escalation, and unintended action, and defining monitoring requirements.
Detecting and evaluating shadow AI and local/unsanctioned AI usage, quantifying risk and recommending detection and enforcement approaches.
Evaluating AI security tooling including AI gateways, CASB/SWG, Model Context Protocol governance solutions, and agentic monitoring platforms for functional requirements and integration.
Contributing to security frameworks, architectural standards, and policies that translate the AI Governance Risk Charter into concrete technical requirements and control implementations.
Applying security engineering judgment across network, endpoint, cloud, and data security domains to support architecture reviews, risk assessments, and incident response.
Partnering with AI/ML, engineering, and enterprise teams through collaborative working groups to identify security solutions and tracking execution.
What we’re looking for
Have 5+ years of experience in security engineering, cybersecurity, or a closely related field, demonstrated understanding of cybersecurity frameworks, compliance requirements, and emerging threat landscapes.
Bring hands-on experience with risk assessment and risk management methodologies, including impact-based prioritization.
Posted July 24, 2026