System & AI Security Engineer
Playtech · Mid
Умения
Сертификати
Описание
Founded in 1999 and listed on the London Stock Exchange's Main Market, we are a technology leader in the gaming industry with over 7,000 employees across 20 countries. The company delivers business intelligence-driven gaming software, services, content, and platform technology, making it a leader in the industry.
Here, we genuinely believe that people are our biggest asset. Diverse thoughts, experiences, and individual characteristics enrich our work environment and lead to better business decisions.
We're committed to responsible business practices, which means recognizing and valuing our differences and ensuring transparency in all our processes.
Ready to level up your career?
Our
System Security team
is looking for a proactive
System and AI Security Engineer
to join our team, and be a part of our journey, securing our Systems as well as playing a part in our Secure AI Adoption within the company, taking part in various projects and initiatives in various areas.
In this role, you will primarily focus on infrastructure security, including EDR, email security gateways, and endpoint hardening, while collaborating closely with development, security, and teams adopting AI. Due to the nature of the position, hands-on experience securing and administering platforms that support AI and agentic workloads is essential. Experience with containerization, virtualization, CI/CD pipelines, and related technologies is highly desirable.
We are looking for someone collaborative, proactive, and curious, with a strong sense of ownership and a continuous learning mindset. This is a great opportunity to contribute to our AI security journey and help shape how AI is adopted securely across the business.
Your influential mission. You will...
- Review the AI systems and infrastructure, including local and cloud LLM deployments, gateways, vector stores, and agentic / MCP components, and provide clear recommendations on required hardening measures and areas for improvement.
- Design, Implement, Support and Improve various technologies within the team, and our area of responsibility (EDR, Proxy, Email Security, Endpoint Hardening)
- Participate in, and support Security Risk Assessments, audits and Compliance reviews required by various standards and laws.
- Assess existing guardrails and controls, such as input/output filtering, prompt-injection defences, rate limiting, and authentication, against industry best practice, provide recommendations to strengthen their effectiveness and drive the implementation of improvements and new controls to ensure the secure and responsible use of AI.
- Recommend and prioritize hardening across the infrastructure behind self-hosted and cloud-based LLMs, and guide teams through remediation.
- Evaluate the AI supply chain, such as model provenance, AIBOM/SBOM, dependency and artifact scanning, and provide recommendations to address gaps (Including Vibe Coded Applications).
- Define standards, reference patterns, and best-practice guidance to ensure teams across the company and build and operate AI securely.
- Review logging, observability, and detection coverage for AI workloads mapped to frameworks such as MITRE ATLAS, and recommend enhancements to ensure the SOC can effectively monitor and respond across the full AI attack surface.
- Assess identity, access, and secrets management for models, tools, and data, advising on least-privilege improvements.
- Support compliance in a regulated environment with audit-ready assessments, evidence, and documentation.
- Drive innovation within the team — Investigate and where possible implement Agentic AI usage within the unit, to optimize time consuming activities (Chatbots, automation with Hermes or n8n etc).
Components for success. You...
- Hold valid and relevant Certifications or equivalent, verifiable experience in the field of Cyber Security and/or Information Technology.
- Have experience working with EDR Solutions (Defender for Endpoint, Crowdstrike, SentinelONE etc)
- Experience with Email Security Solutions, and working knowledge of Email solutions is an advantage.
- Bring solid infrastructure and security engineering experience — Linux, networking, cloud, IAM, container security, automation, System Hardening etc.
- Know your way around both self-hosted LLM deployment and cloud LLM platforms (e.g. Azure Foundry, Amazon Bedrock, Google VertexAI, Ollama, LMStudio etc).
- Can review and assess AI systems against best practice and clearly advise teams on what to harden, improve, or remediate on an ongoing basis.
- Have prior knowledge of LLM-specific threats: prompt injection, sensitive-data disclosure, data/model poisoning, excessive agency, insecure output handling, supply-chain risk and how to mitigate them.
- Have knowledge of some of the various AI security frameworks and Guidelines — OWASP Top 10 for LLM Applications (2025) and for Agentic Applications (2026), MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, CISA/NSA guidance, and the EU AI Act — and how to translate them into controls.
- Have prior experience in guardrail implementation and design evaluation, including prompt-injection defense, output validation, and hallucination mitigation.
- Had exposure to using infrastructure-as-code (Terraform, Ansible) and CI/CD pipelines to make controls repeatable.
- Have experience navigating, and working in regulated environments such as gaming, finance, or healthcare.
- Have clear communication, presentation and collaboration skills — strong documentation skills and cross-team collaboration are central to this role.
You'll get extra points for...
- Hands-on experience building CI/CD security gates and guardrails — the role advises on these more than builds them, but practical experience helps you guide teams well.
- Working knowledge of Python and Bash scripting is an advantage, any other development languages are also a bonus.
- Hands-on experience securing MCP / agentic AI infrastructure and the governance of these tools.
- Hands-on experience with AI Enablement and optimizing workflows using agentic AI and “Vibe coding”.
- Familiarity with AIBOM / SBOM tooling (e.g. OWASP Dependency-Track, and the CycloneDX SBOM Standard used) and supply-chain security.
- Relevant certifications across cloud or emerging AI-security credentials.
Thrive in a culture that values...
- Collaboration across teams.
- Ownership, curiosity, and a proactive approach to solving complex security challenges.
- Continuous learning and the opportunity to grow into the role while working on AI security topics that are becoming increasingly important for the business.
- Practical impact, with the chance to help shape our AI future and support secure AI adoption across the company.
История на обявата
- 10 октомври 2026 г.Появи сеобхождане
Очаквано възнаграждение
Обявата не посочва заплата. Оценката по-долу е за Security Engineer (Cloud / Network) на ниво Mid според бенчмарка на CSF.BG — не е предложение на работодателя.
Само 1 обява за тази роля и ниво публикуват заплата — твърде малко за средна стойност.
Знаеш колко се плаща за такава роля? — анонимно, за да станат тези числа по-точни.