Lead security architecture for AI/ML systems and infrastructure, ensuring robust vulnerability management and practical security controls across the development lifecycle.
At IMO Health, we’re advancing the use of AI to improve clinical workflows — and we’re seeking a security-first, hands-on architect to ensure that our AI/ML systems are designed, deployed, and maintained securely from the ground up.
This is a senior-level individual contributor role embedded directly in our engineering teams. You’ll lead technical security efforts across our AI/ML and cloud infrastructure, from threat modeling and vulnerability management to secure MLOps pipeline design and runtime protection. We’re looking for someone with deep experience in cloud security or DevSecOps who is excited about learning and applying AI-specific security practices.
You’ll work across engineering, platform, and compliance teams to define and implement practical controls that safeguard our models, data, and infrastructure — while helping guide the organization toward responsible, secure use of AI in healthcare.
WHAT YOU'LL DO:
Serve as the technical security lead embedded in engineering teams, focused on cloud, AI/ML, and platform security
Lead threat modeling exercises for AI/ML systems, APIs, and cloud-based infrastructure
Define and implement security controls across the ML lifecycle — from data sourcing and model training to deployment and inference
Own and prioritize security user stories, epics, and remediation plans for engineering execution
Analyze and manage vulnerabilities using modern scanning tools and provide clear risk guidance
Collaborate with DevOps, ML, and product teams to secure infrastructure-as-code, CI/CD pipelines, and containerized environments
Stay current on emerging AI-specific threats (e.g., prompt injection, model inversion, data leakage) and apply that knowledge practically
Communicate findings and recommendations clearly to both technical and non-technical stakeholders
WHAT YOU'LL NEED:
7+ years in security engineering, application security, or DevSecOps
Leverage EHR terminology to deliver better care. Products from clinical dictionaries to value sets that are clinically vetted, always current, & maintenance free.
Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.