TRCI-26-05290
AI Threat Modeling & Risk Engineering (AI/LLM Security Engineer)
Contract role in London for an AI/LLM Security Engineer focused on threat modeling and risk engineering for enterprise AI deployments in a banking context. The role covers AI security assessments using OWASP Top 10 for LLMs and MITRE ATLAS, building secure-by-design multi-tenant guardrails, offensive testing (prompt injection, data poisoning, inversion/evasion), detection engineering in SIEM/log pipelines, and incident response/forensics for AI environments. Strong hands-on software engineering is required (Python and Go) plus DevOps security (Docker/Kubernetes, CI/CD, Terraform) and the ability to translate AI security risks into actionable mitigations aligned to UK/EU regulatory expectations (DORA, FCA AI guidance).
Position summary
- Location
- United Kingdom
- Workplace
- Hybrid
- Employment
- Contract
- Experience
- Minimum 5 years and Maximum 7 years
Role overview
Why This Role Matters.
Contract role in London for an AI/LLM Security Engineer focused on threat modeling and risk engineering for enterprise AI deployments in a banking context. The role covers AI security assessments using OWASP Top 10 for LLMs and MITRE ATLAS, building secure-by-design multi-tenant guardrails, offensive testing (prompt injection, data poisoning, inversion/evasion), detection engineering in SIEM/log pipelines, and incident response/forensics for AI environments. Strong hands-on software engineering is required (Python and Go) plus DevOps security (Docker/Kubernetes, CI/CD, Terraform) and the ability to translate AI security risks into actionable mitigations aligned to UK/EU regulatory expectations (DORA, FCA AI guidance).
Your Impact
Deliver Enterprise Value
Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.
Collaboration
Work Across Teams
Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.
Growth
Learn Continuously
Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.
Career Path
Grow With Ubique
Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.
Responsibilities
What You'll Be Doing.
Every role at Ubique contributes directly to solving meaningful business challenges for our clients.
Act as an expert consultant for application teams, translating dense AI vulnerabilities into plain, actionable mitigation plans.
Dedicate time to Continuous Learning by tracking the volatile, fast-evolving AI threat landscape, incorporating new vulnerability research straight into the team’s defense playbooks.
Evaluate emerging third-party security platforms, proxy tools, and open-source packages to modernize the bank’s security capabilities.
Technology stack
Tools & Technologies.
The platforms and technologies you'll use to build modern, enterprise-grade solutions.
Python
Go
Golang
Threat Modeling
OWASP Top 10 for LLMs
OWASP LLM Top 10
MITRE ATLAS
Garak
Inspect
Offensive Security Testing
Adversarial Simulation
Prompt Injection
Data Exfiltration
Model Inversion
Data Poisoning
Adversarial Evasion
Detection Engineering
Threat Hunting
Digital Forensics
Incident Response
Requirements
Skills & Experience.
We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.
Essential
Required Qualifications
Threat modeling for AI/LLM deployments and workflows
AI/LLM security risk assessment using OWASP Top 10 for LLMs
MITRE ATLAS knowledge and mapping AI threats to controls
Offensive security testing for AI systems (prompt injection, adversarial evasion, model inversion, data poisoning)
Detection engineering for malicious queries/prompt injection/data exfiltration patterns in logs
Cyber threat hunting across infrastructure for AI pipeline compromise and model drift manipulation signals
Incident response engineering for ML/AI environments (playbooks, containment, mitigation)
Digital forensics and root-cause analysis using logs and runtime/system artifacts
Advanced Python for security tooling/scripting and ML-adjacent validation
Go (Golang) for low-latency security proxies/microservices
DevOps security: Docker, Kubernetes, CI/CD pipelines, Infrastructure-as-Code (Terraform)
SIEM/detection tooling experience (Splunk or Elastic Security or Datadog)
Agile tooling usage (Jira, Confluence)
Preferred
Nice to Have
Experience with AI security evaluation tools such as Garak
Experience with AI security evaluation tools such as Inspect
Experience designing secure multi-tenant boundaries for AI integrations
Knowledge of UK/EU financial services regulatory expectations for AI systems (DORA, FCA AI guidance)
Experience evaluating third-party AI security platforms/proxy tools/open-source packages
What you'll gain
More Than Just A Job.
We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.
Global Exposure
Collaborate with international clients and multicultural teams on enterprise programmes.
Continuous Learning
Expand your expertise through mentoring, certifications and hands-on project experience.
Career Growth
Take ownership, develop leadership skills and grow your consulting career over time.
Flexible Working
Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.
People First
Join a supportive culture where collaboration, respect and long-term relationships come first.
Enterprise Projects
Work on meaningful technology initiatives for leading organisations across industries.
Apply
Apply for AI Threat Modeling & Risk Engineering (AI/LLM Security Engineer)
One page, about two minutes. We only ask for what we actually need to have a first conversation.