Principal AI Governance & Security Engineer
Job Summary
Overview
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the worlds most admired brands Toyota is growing and leading the future of mobility through innovative high-quality solutions designed to enhance lives and delight those we serve. Were looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS) the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity it is an essential part of this world-changing company- delivering on Toyotas vision to move people beyond whats possible. At TFS you will help create best-in-class customer experience in an innovative collaborative environment.
Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g. H-1B O-1 E-3 H-1B1 TN F-1 OPT F-1 STEM OPT F-1 CPT job flexibility benefits also known as I-140 or Adjustment of Status portability etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.
Who were looking for
Toyota Financial Services AI & ML Platforms team is looking for a passionate and highly motivated Principal AI Governance & Security Engineer. This is a hands-on principal-level role that sits at the intersection of AI governance AI security and forward deployed engineering. You will help build the enterprise control plane that lets Toyota deploy AI and agentic systems safely compliantly and at scale turning governance and security requirements into working production-grade controls rather than documents.
Reporting to the Director of AI & ML Platforms and partnering closely with the AI Governance team Cybersecurity Model Risk Legal Privacy and the business you will own the technical foundation for how AI use cases and agents move from idea to production. A typical week spans three kinds of work: shaping the governance framework and lifecycle controls (roughly half your time) hardening the security posture of our AI and agentic platforms (about a quarter) and embedding directly with use-case teams to design build and ship the controls they need to launch (about a quarter).
The ideal candidate combines deep governance and information-security judgment with a strong software engineering background and is equally comfortable authoring a control standard threat-modeling an agent and writing the code that enforces both.
What youll be doing
In this role youll help shape the foundation for Toyota Financial Services next generation of governed AI and agentic capabilities where success means AI systems that are demonstrably safe auditable compliant and useful in production. Youll balance governance rigor against engineering velocity so teams can innovate within guardrails instead of around them.
AI Governance (50%)
- Design author and maintain the enterprise AI governance framework standards policies and procedures across the full lifecycle of AI use cases and models from intake through production monitoring and retirement
- Operationalize lifecycle gates: intake risk classification control design approval workflows monitoring and remediation
- Define risk tiers and controls proportional to use-case risk extending model risk management to AI/ML and GenAI in line with SR 11-7 NIST AI RMF the EU AI Act and ISO/IEC 42001
- Own the Agent Registry and AI inventory as the authoritative source of truth registration versioning and prevention of shadow-AI deployments
- Translate governance policy into repeatable testable engineering controls partnering with the AI Governance team to move controls from observation to staged enforcement
AI Security (25%)
- Perform AI-specific threat modeling and risk assessments prompt injection data poisoning adversarial attacks model theft and data exfiltration and design mitigations across the data model application and infrastructure layers
- Design guardrail isolation and least-privilege controls for agents sandboxed execution non-human identity secrets management and mediated tool access through the MCP registry
- Build AI-specific incident response playbooks drive red-team exercises and embed security into the AI/ML lifecycle (DevSecOps for AI) with audit logging into enterprise SIEM
Forward Deployed Engineering (25%)
- Embed with use-case product and platform teams to design and ship the executable controls they need to launch AI and agentic solutions within governed boundaries
- Build reusable production-grade capabilities hands-on: guardrail services evaluation pipelines agent/MCP registrations and human-in-the-loop approval flows using AWS Bedrock/AgentCore Cedar policies and Lambda/Step Functions
- Lead design reviews set engineering standards and mentor engineers across the governance and security control stack
What you bring
- 12 years of software engineering experience and demonstrated experience with AI/ML/Data Governance and associated information-security of AI/ML
- Designing and implementing enterprise AI or data governance frameworks and operational governance processes in production
- Translating security risk privacy and compliance requirements into executable controls measurable tests and working software
- Deep understanding of AI/model risk and responsible-AI principles with working knowledge of SR 11-7 NIST AI RMF the EU AI Act and ISO/IEC 42001
- Practical AI security depth threat modeling guardrails identity and access management secrets and least-privilege design
- Governing and securing GenAI RAG and agentic systems model/agent registries MCP or comparable tool-mediation patterns and evaluation frameworks
- Strong software data-engineering or automation skills with production experience on a major cloud (AWS preferred) and modern CI/CD
- Strong communication able to explain technical AI risk and control gaps to both engineers and senior executives
Added bonus if you have
- Direct experience governing or securing enterprise AI/GenAI programs in financial services or another regulated industry
- Hands-on experience with AWS AI services (Bedrock AgentCore Bedrock Guardrails) policy-as-code (e.g. Cedar) and LLM/agent evaluation and guardrail frameworks (LLM-as-judge trajectory evaluation NeMo Guardrails Llama Guard)
- Relevant certifications CISSP CCSP CRISC CISA a Certified AI Security/Governance credential or a model-risk certification
What well bring
During your interview process our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:
- A work environment built on teamwork flexibility and respect
- Professional growth and development programs to help advance your career as well as tuition reimbursement
- Team Member Vehicle Purchase Discount
- Toyota Team Member Lease Vehicle Program (if applicable)
- Comprehensive health care and wellness plans for your entire family
- Toyota 401(k) Savings Plan featuring a company match as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
- Paid holidays and paid time off
- Referral services related to prenatal services adoption childcare schools and more
- Tax Advantaged Accounts (Health Savings Account Health Care FSA Dependent Care FSA)
- Relocation assistance (if applicable)
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.
Applicants for our positions are considered without regard to race ethnicity national origin sex sexual orientation gender identity or expression age disability religion military or veteran status or any other characteristics protected by law.
Have a question need assistance with your application or do you require any special accommodations Please send an email to .
Required Experience:
Staff IC