AI Security Specialist.

Secures your AI systems — and uses AI for your cyber defence.

Remote & on-site DACH-wide

An AI security specialist works on both fronts at the intersection of AI and cybersecurity. First: security for AI — they harden LLM applications and agents against prompt injection, data exfiltration and misuse, establish access and approval concepts, and audit AI systems before go-live. Second: AI for security — they bring AI-assisted detection and automation into the SOC, from detection engineering to security copilots.

With agentic systems, the first front becomes critical: an agent with write access to enterprise systems is a new attack target with real potential for damage. Anyone putting agents into production needs this role — at the latest before go-live.

01

LLM / agent security review

Systematic assessment of your AI application before go-live: prompt injection, data exfiltration, privilege escalation, misuse scenarios — with a concrete hardening plan.

02

Guardrail architecture for agents

Permission boundaries, approval workflows, audit logging and sandboxing for AI agents operating within your systems.

03

AI in the SOC

Alert triage, anomaly detection and security copilots that relieve your team of routine work — with a realistic assessment of what AI can and cannot do in the SOC.

04

AI usage policy & shadow AI

Employees are already using AI tools — the question is: controlled or uncontrolled? Policies, technical guardrails and awareness.

Core competencies
OWASP LLM Top 10Prompt injection defenceIAM / least privilege for agentsThreat modellingDetection engineering
Tools & frameworks
Security copilots (MS Security Copilot and others)SIEM/SOARRed teaming frameworks for LLMsAudit / logging stacksDLP
Plus factors
Pentest backgroundISO 27001 / BSI GrundschutzEU AI Act security requirements
How would you attack our planned AI agent?
The attacker's perspective is the core of the role — a good answer immediately outlines concrete vectors, from indirect prompt injection to tool misuse.
What permissions do you grant an agent — and how do you enforce the boundaries technically?
Least privilege for agents is architecture, not prompt text: scopes, separate identities, approval gates.
Where has AI-assisted detection disappointed you?
Honest SOC experience knows false-positive floods and alert fatigue — glossy answers are a warning sign.
How do you deal with shadow AI in the organisation?
Banning does not work; the answer should combine governance, secure alternatives and awareness.
What does an AI security specialist cost as a freelancer?
Based on our market observations, hourly rates in the DACH region in 2026 range between 120 and 175 euros — the combination of security and LLM expertise is in strong demand.
What is prompt injection — and why does it concern us?
Prompt injection is the manipulation of an AI system through inputs or processed content — for instance a crafted email that tricks an agent into unintended actions. Any AI system that processes external content or is permitted to perform actions is potentially affected.
When do we need an AI security review?
At the latest before an AI system works with real enterprise data or is permitted to perform actions — for agents with write access, the review before go-live is mandatory, not optional.
Does AI also help our cyber defence?
Yes — for alert triage, anomaly detection and as a copilot for analysts. Deployed realistically, AI relieves the SOC of routine work; but it replaces neither sound detection rules nor experienced analysts.

Looking for a AI Security Specialist?

Tell us about your project — within one business day you’ll get an honest assessment of availability, day rate and alternatives.

Request experts