Cybersecurity Jobs
Cybersecurity jobs are open across government, finance, healthcare, defense, and technology, at every level from analyst to CISO, with specializations in penetration testing, cloud security, and incident response. Find a role that fits from the openings below and apply directly.
Find Cybersecurity JobsLooking for remote work? View remote cybersecurity jobs →Student or new grad? View cybersecurity internships →Overview
Showing 5 of 1,679+ Cybersecurity jobs











Location: Anywhere in Country
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
Securing Frontier AI, Agentic Systems & AI-Driven Cyber Defense
Job Family: Cybersecurity | Level: Senior Manager / Principal | Location: Hybrid / Remote-Eligible | Travel: Up to 30%
Role Overview
The AI Cybersecurity Architect & Engineer is a hybrid technical leadership role responsible for designing, building, and defending AI systems as first-class assets — while simultaneously leveraging AI to deliver next-generation cyber defense capabilities. This individual sits at the intersection of cybersecurity engineering, machine learning, and agentic AI, protecting models, data pipelines, prompts, agents, integrations, and the infrastructure that hosts them, while also using AI offensively (from a defensive standpoint) to match the speed and sophistication of Frontier AI-enabled attacks. This role is critical as organizations face a fundamental shift in the threat landscape: Frontier AI models can now autonomously discover and weaponize zero-day vulnerabilities in hours, AI-generated polymorphic malware evades signature-based detection, and autonomous AI worms spread laterally adapting tactics per-target. Defenders need an equally capable AI-augmented security posture — built and operated by professionals who understand both domains deeply.
Key Responsibilities
- AI Security Architecture & Design
- Design end-to-end secure architectures for AI/ML systems, including LLM applications, agentic AI workflows, RAG pipelines, vector databases, and model serving infrastructure.
- Establish threat models for AI systems using MITRE ATLAS, OWASP Top 10 for LLM Applications, OWASP Agentic Security Initiative (ASI) Top 10, and CSA MAESTRO 7-layer framework.
- Define secure-by-design patterns for AI agent permissions, tool invocation, memory/context isolation, and inter-agent communication (Model Context Protocol, Agent2Agent).
- Architect zero-trust controls for AI training pipelines, model registries, embedding stores, and prompt template repositories.
- Develop reference architectures for integrating GenAI capabilities into enterprise security platforms (CrowdStrike NGSIEM, Microsoft Sentinel, ServiceNow SIR / Now Assist, Splunk).
- AI-Driven Cyber Defense Engineering
- Build and operationalize AI-augmented detection, triage, and response capabilities — including LLM-assisted alert enrichment, autonomous incident summarization, and AI-driven threat hunting.
- Engineer agentic SOC workflows that integrate ServiceNow AI Agents, NVIDIA NIM, OpenAI / Anthropic models, and custom ML models with SIEM / SOAR / XDR platforms.
- Develop detections for AI-specific TTPs: prompt injection, jailbreak, model extraction, training data poisoning, agent hijacking, MCP server tampering, and rogue agent behavior.
- Build behavioral baselines and anomaly detection for AI agent activity, API call patterns, and inter-agent communications.
-
Design and deploy AI-specific deception (decoy MCP servers, poisoned data traps, decoy LLM-accessible resources).
-
Threat Defense Against Frontier AI Attacks
- Lead red-team and adversarial testing of AI systems — prompt injection, jailbreaks, model extraction, membership inference, training data extraction, and adversarial examples.
- Defend against AI-generated polymorphic malware, deepfake vishing / social engineering, AI-orchestrated multi-stage attacks, and autonomous AI worms.
- Build defenses against AI-driven vulnerability discovery — including reachability / exploitability validation, compensating controls frameworks, and AI-speed patching workflows.
- Develop containment playbooks for rogue AI agents, compromised LLM integrations, and AI-driven cascading failures.
-
Operate within the MLSecOps lifecycle: threat modeling, supply chain defense, model assurance, runtime defense, observability / IR, and governance.
-
Governance, Risk & Compliance for AI
- Implement AI governance frameworks (NIST AI RMF, ISO/IEC 42001, EU AI Act readiness) for enterprise AI deployments.
- Build AI risk assessment methodologies — data provenance, model lineage, prompt template management, third-party AI vendor risk.
- Establish AI usage policies, Shadow AI detection capabilities, and DLP controls for GenAI tool usage.
- Partner with privacy, legal, and compliance teams on AI-specific regulatory requirements.
-
Define and track AI security KPIs: prompt injection block rate, AI-generated phishing detection rate, agent permission drift, model integrity validation.
-
Client Advisory & Practice Leadership
- Lead Frontier AI readiness assessments for client organizations across SOC, incident response, vulnerability management, identity, and data protection.
- Develop client-facing deliverables: solution architectures, executive summaries, technical roadmaps, and one-pagers.
- Contribute to thought leadership: whitepapers, client workshops, industry conference presentations.
- Mentor junior engineers and consultants on AI security topics; build internal AI security competency.
- Partner with alliance teams (ServiceNow, CrowdStrike, Microsoft, NVIDIA, OpenAI / Anthropic) on joint solutions and go-to-market motions.
Experience
REQUIRED QUALIFICATIONS
- 8+ years of progressive experience in cybersecurity engineering or architecture.
- 3+ years of hands-on experience with AI / ML systems — either building, securing, or red-teaming.
- Demonstrated experience designing secure architectures for production AI workloads (LLM applications, agentic systems, ML pipelines).
- Proven track record leading complex security projects in regulated industries (financial services, healthcare, energy, government).
Technical Skills — Cybersecurity Core
- Deep expertise in security architecture: zero trust, defense in depth, least privilege, secure SDLC.
- Strong working knowledge of SIEM / SOAR / XDR platforms (CrowdStrike Falcon / NGSIEM, Microsoft Sentinel, Splunk, ServiceNow SecOps).
- Hands-on experience with cloud security (AWS, Azure, GCP) — IAM, network controls, container / Kubernetes security, secrets management.
- Familiarity with detection engineering (Detection-as-Code, Sigma, KQL, EQL, YARA).
- Incident response and forensics fundamentals; comfort with MITRE ATT&CK and MITRE ATLAS frameworks.
Technical Skills — AI / ML
- Working knowledge of neural network architectures (transformers, CNNs, RNNs), training / optimization, inference / deployment.
- Hands-on experience with LLM application development (prompt engineering, RAG, fine-tuning, function calling).
- Experience with AI orchestration frameworks (LangChain, LlamaIndex, Semantic Kernel, AutoGen) and agentic patterns.
- Understanding of vector databases (Pinecone, Chroma, Weaviate), embedding models, and inference infrastructure.
- Familiarity with model serving platforms (NVIDIA NIM, Triton, TorchServe, vLLM).
- Proficiency in Python; familiarity with PyTorch and/or TensorFlow.
Technical Skills — AI Security Specific
- Strong understanding of OWASP Top 10 for LLM Applications and OWASP Agentic Security Initiative threats.
- Hands-on experience with MITRE ATLAS adversarial techniques.
- Knowledge of prompt injection (direct, indirect, triggered), jailbreaks, model extraction, training data poisoning, and adversarial examples.
- Experience with AI red-teaming tools (e.g., Garak, PyRIT, promptfoo) and LLM security testing methodologies.
- Understanding of differential privacy, federated learning, and secure multi-party computation (preferred).
Preferred Qualifications
- Master's degree in Computer Science, Cybersecurity, AI / ML, or a related field.
- Experience implementing or auditing AI governance (NIST AI RMF, ISO/IEC 42001, EU AI Act).
- Contributions to OWASP GenAI Security Project, MITRE ATLAS, MLSecOps Community, or similar.
- Published research, conference talks (RSA, Black Hat, DEF CON AI Village, BSides), or thought leadership in AI security.
- Experience with consulting / client advisory engagements.
- Familiarity with EY's Cyber Practice methodologies, ServiceNow alliance solutions, and CrowdStrike / Microsoft Security alliance offerings.
Certifications (one Or More Preferred)
- CISSP, CISSP-ISSAP, or CCSP.
- AWS Certified Security – Specialty, Azure Security Engineer (AZ-500), or Google Professional Cloud Security Engineer.
- AI / ML-specific: Certified AI Security Professional (CAISP), AI Cybersecurity Specialist certification.
- MLOps / MLSecOps certifications.
- Vendor: CrowdStrike Certified Falcon Administrator / Responder, Microsoft Security Operations Analyst (SC-200), ServiceNow Certified Implementation Specialist – Security Operations.
Soft Skills & Attributes
- Translates complex AI security concepts into business-impact language for CISOs and boards.
- Comfortable working in ambiguity at the leading edge of an emerging discipline.
- Strong written communication for client deliverables (slide decks, executive summaries, architecture diagrams).
- Collaborative orientation across security, data science, ML engineering, and business stakeholder teams.
- Continuous learner — actively tracks emerging Frontier AI threats and defensive research.
What Success Looks Like (first 12 Months)
- Designed and delivered 2–3 production-grade AI security architectures for enterprise clients.
- Established baseline AI security controls (prompt injection defense, agent permission framework, AI inventory) for internal practice or major client.
- Built or extended a Frontier AI readiness assessment methodology used across the practice.
- Published or presented at least one piece of external thought leadership on AI cybersecurity.
- Mentored 3–5 junior team members on AI security capabilities.
Compensation & Career Path
- Salary range (US, role-dependent): $185K – $285K base + bonus + equity / profit share (varies by level and geography).
- Career trajectory: Senior Manager → Director / Principal → Partner / Distinguished Engineer / CISO advisory role.
- Continuous education budget for AI / ML conferences, certifications, and applied research.
EQUAL OPPORTUNITY STATEMENT
We are an equal opportunity employer committed to building a diverse, inclusive, and equitable workplace. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other legally protected characteristic.
What We Offer You
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
- We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $82,500 to $136,000. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $99,100 to $154,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
- Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
- Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis. For those living in California, please click here for additional information. EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets. Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories. EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com.
Cybersecurity Jobs by Experience Level
Top Cities Hiring Cybersecuritys
Explore cybersecurity openings in the cities hiring most right now.
See All 1,679+ Cybersecurity Jobs
Find roles that match your experience and apply in just a few clicks.
Find Cybersecurity JobsCybersecurity Job Market
Who's Hiring
- Booz Allen Hamilton84

- Boston Consulting40

- Northrop Grumman32

- General Dynamics Information Technology22

- ServiceNow20

Top Industries Hiring
- Technology & Software34
- Consulting & Professional Services17
- Accounting & Auditing12
- Healthcare & Medical Services10
- Education8
What Employers Look For
The qualifications that appear most often in cybersecurity jobs.
- Proficiency in security tools such as SIEM platforms, firewalls, and endpoint detection software
- Industry certifications including CompTIA Security+, CISSP, CEH, or equivalent
- Experience with network security, vulnerability assessment, and threat analysis
- Familiarity with compliance frameworks such as NIST, ISO 27001, SOC 2, or HIPAA
- Bachelor's degree in cybersecurity, computer science, information technology, or a related field
- Active or eligible-to-obtain security clearance for government and defense roles
Tips for Your Cybersecurity Job Search
Certify before you apply at mid-level
Many cybersecurity job descriptions list CompTIA Security+, CISSP, or CEH as requirements, not preferences. Check which cert aligns with the seniority you're targeting and make sure it appears prominently in your resume's credentials section.
Quantify impact on your resume
Vague claims like 'improved security posture' get skipped. Replace them with outcome statements: how many endpoints you protected, how quickly you contained an incident, or what vulnerability you closed before it was exploited.
Target openings by clearance level
Many federal and defense cybersecurity roles require an active security clearance. Filter your search by clearance requirement early, because applying without the right clearance level wastes time for both sides.
Apply early to roles that fit
Migrate Mate lists cybersecurity openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Prepare for a technical screening round
Most cybersecurity interviews include a hands-on component: a CTF challenge, a live network diagram review, or a scenario-based threat analysis. Practice articulating your methodology out loud, not just solving the problem silently.
Negotiate with threat-specific data
When discussing compensation, anchor to the specific threat domain you work in. Incident response and cloud security specialists command different rates than generalist roles, so name your specialization explicitly during the offer conversation.
Cybersecurity Jobs: Frequently Asked Questions
Which companies are hiring the most cybersecurity professionals?
The companies hiring the most cybersecurity professionals right now include Booz Allen Hamilton, Boston Consulting, and Northrop Grumman, with the largest share of openings in Virginia, California, and Texas, based on current listings on Migrate Mate as of August 2026. Demand is particularly high among federal contractors, large financial institutions, and healthcare systems.
How many cybersecurity jobs are remote?
About 50% of cybersecurity openings are fully remote or hybrid as of August 2026, though availability varies significantly by specialization. Roles in cloud security, threat intelligence, and security operations tend to offer the most remote flexibility, while positions requiring on-site access to classified systems or physical infrastructure are almost always in-person.
How do you become a cybersecurity professional?
Start by building a foundation in networking and operating systems, then pursue an entry-level certification like CompTIA Security+ to validate your knowledge. Gain hands-on experience through home labs, capture-the-flag competitions, or internships, and develop a portfolio that demonstrates real-world problem-solving. Specializing early in an area like penetration testing or incident response makes you a stronger candidate faster.
Can you get hired in cybersecurity with little or no experience?
Yes, entry-level cybersecurity roles like security analyst, SOC tier-one analyst, and IT security support are designed for candidates without extensive experience. Employers in these roles weigh certifications and demonstrated curiosity heavily. Building a home lab, documenting what you've learned, and completing a relevant bootcamp or associate-level credential can substitute for years of formal experience in many cases.
What does the cybersecurity interview process look like?
Most cybersecurity interviews begin with a recruiter screen focused on your background and certifications, followed by a technical round where you walk through a threat scenario, analyze a sample network diagram, or complete a practical exercise. A final round with a hiring manager or team lead typically covers behavioral questions and role-specific depth. Government and defense roles often add a background and clearance review stage.
Where can I find and apply to cybersecurity jobs?
You can find and apply to cybersecurity jobs on Migrate Mate, which lists current openings from across the United States in one place. Search for roles that match your specialization, clearance level, or preferred work format, and apply directly to each listing that fits.
See All 1,679+ Cybersecurity Jobs
Find roles that match your experience and apply in just a few clicks.
Find Cybersecurity Jobs