We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
Position Summary
We are seeking a Staff Application Security Engineer – AI & Agentic Systems to help secure the next generation of AI-enabled applications, large language model integrations, and agentic systems. This role will partner closely with engineering, product, platform, and data teams to embed security into the design, development, and operation of both traditional and AI-driven solutions.
As a senior technical contributor, you will help define secure design patterns, conduct threat modeling and risk assessments, guide engineering teams on secure development practices, and support the adoption of responsible AI security controls across the enterprise.
Key Responsibilities:
Secure Development, Standards & Design
- Develop and maintain application and AI security standards, best practices, and guardrails.
- Promote secure-by-design principles across application and AI development lifecycles.
- Establish secure design patterns for AI agents, prompt management, tool integrations, memory handling, and autonomous workflows.
- Partner with engineering teams to identify and mitigate AI-specific security risks such as prompt injection, model abuse, data leakage, and unauthorized agent actions.
AI & Agentic Security Architecture
- Serve as a subject matter expert supporting the security of AI-enabled applications and agentic systems.
- Review and provide guidance on architectures utilizing large language models, retrieval augmented generation pipelines, AI agents, and AI-powered workflows.
- Define and recommend identity, authorization, data protection, observability, and governance controls for AI environments.
- Collaborate with AI platform, engineering, product, and data teams to ensure secure and responsible AI adoption.
Security Testing & Risk Management
- Perform threat modeling, architecture reviews, and security assessments for applications and AI-enabled systems.
- Conduct security analysis of AI workflows, model integrations, agent interactions, and data flows.
- Partner with engineering teams to prioritize and remediate security findings.
- Evaluate emerging AI security tools and technologies to improve organizational security posture.
Collaboration & Technical Leadership
- Influence engineering teams to integrate security controls into development processes and product roadmaps.
- Partner with privacy, compliance, legal, and risk teams to align security controls with organizational requirements.
- Provide guidance on AI security considerations, emerging threats, and industry best practices.
- Participate in strategic initiatives supporting secure AI adoption across the enterprise.
Incident Response & Continuous Improvement
- Support investigation and response efforts involving application and AI-related security events.
- Assist in identifying root causes and implementing long-term security improvements.
- Drive continuous improvement of security controls, processes, and engineering practices.
Mentorship & Innovation
- Mentor security engineers and development teams on secure coding, threat modeling, and AI security best practices.
- Contribute to the evaluation of emerging AI security research, technologies, and industry standards.
- Help advance the organization's application and AI security strategy through innovation and technical leadership.
Required Qualifications
- 7+ years of experience designing, building, or securing enterprise-scale applications and platforms.
- 5+ years of application security experience, including threat modeling, secure design, code review, and vulnerability management.
- 5+ years of programming experience in one or more languages such as Python, Java, JavaScript, C#, or Go.
- 3+ years of experience developing or securing AI, machine learning, or generative AI solutions.
- 3+ years of experience with public cloud platforms including AWS, Azure, or Google Cloud Platform.
Preferred Qualifications
- Experience securing modern application architectures, including APIs, containers, microservices, and serverless technologies.
- Strong understanding of secure software development lifecycle practices and application security testing methodologies.
- Hands-on experience securing AI agents, retrieval augmented generation solutions, and large language model integrations.
- Experience conducting threat modeling and security assessments for AI-enabled systems.
- Familiarity with responsible AI principles, AI governance, and emerging AI security frameworks.
- Experience integrating security controls into continuous integration and continuous delivery pipelines.
- Knowledge of common compliance frameworks such as PCI DSS, HIPAA, NIST, HITRUST, and CSA.
- Ability to influence technical decisions across multiple teams and organizations.
- Experience contributing to security research, open-source projects, or industry communities.
Education
- Bachelor’s degree from an accredited college or university, or equivalent combination of education and relevant work experience (High School Diploma/GED plus 4 years of related experience)
Health100 is America's trusted front door to health and care. The Health100 platform integrates any participating health plan, PBM, pharmacy (retail and specialty), provider, digital health point solution provider, and employer, and addresses the top health care challenges for the consumer.
Pay Range
The typical pay range for this role is:
$106,605.00 - $284,280.00
This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people
We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.
This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.
Additional details about available benefits are provided during the application process and on Benefits Moments.
We anticipate the application window for this opening will close on: 08/24/2026
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.