- Location
- Zürich - Birchstrasse 160, Switzerland
- Type
- Full-time
- Department
- IT
- Seniority
- Entry
- Clearance
- Required
- Source
- Workday
Description
Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
Cybersecurity & PrivacyManagement Level
ManagerJob Description & Summary
- You will lead or deliver the technical component of AI Security assessments, including the review of AI solution design, data flows, trust boundaries, identities, permissions, interfaces, dependencies, logging, containment and human oversight.
- You will develop and apply practical threat models and abuse cases for AI systems, covering relevant scenarios such as prompt injection, data exfiltration, insecure outputs, excessive agency, tool misuse, poisoning, model or API abuse, and identity or permission failures.
- You will understand and challenge security considerations across GenAI, LLM-based, RAG and agentic solutions, and translate technical weaknesses into proportionate security requirements, control recommendations and prioritised remediation actions.
- You will define the objectives and scope of technical testing and control validation, direct specialist activity where required, review the evidence and challenge whether the proposed remediation is sufficient.You will take end-to-end responsibility for AI Security workstreams and, depending on grade and experience, engagements from scoping and project setup through delivery, client communication and quality of outputs.
- You will work closely with colleagues in AI Security governance and risk so that technical findings are integrated into coherent client conclusions and decisions, and you will mobilise Technology specialists & subject matter experts when deeper implementation or niche expertise is required.
- You will use your entrepreneurial skills to contribute to the development of AI Security services, methodologies, reusable assets, proposals and thought leadership, helping shape the future of the capability at PwC.
- You will lead by example, share your technical knowledge and support the development of colleagues, fostering curiosity, collaboration and continuous professional growth.
- You bring several years of relevant cybersecurity expertise and a recent, demonstrable track record of applying it to AI environments. A background in consulting or another client-facing role is advantageous.
- You have direct experience with the security of AI systems, including GenAI, LLM-based or agentic solutions, and have led or made a substantial contribution to technical AI Security assessments, threat models, solution-security reviews, control evaluations or remediation activities.
- You have a strong practical understanding of AI-specific threats and controls and can distinguish material security exposure from theoretical or low-value findings.
- You can understand and challenge end-to-end AI solution design, including data flows, trust boundaries, identities, permissions, interfaces, tool use, retrieval, dependencies and control evidence, without needing to be the implementation specialist for every component.
- You can apply threat-modelling or abuse-case techniques and convert technical scenarios into prioritised security requirements, control recommendations and remediation actions.
- You can define and direct appropriate technical testing or control-validation activity, evaluate the evidence and engage deeper Technology specialists & SMEs where required.
- You have strong structured problem-solving, workshop leadership, writing and communication skills and can explain complex AI Security issues clearly to both technical and senior stakeholders.
- You hold a Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Information Security, Engineering or a related field, or bring equivalent relevant professional experience.
- Relevant professional certifications, recognised AI Security training, or exposure to frameworks and guidance such as NIST AI RMF, ISO 42001, OWASP guidance for LLM applications or MITRE ATLAS are a plus.
- Experience in professional services, regulated industries or complex multinational environments is advantageous, as is experience contributing to methodologies, propositions, reusable assets, training or thought leadership.
- You are fluent in English. German and/or French are a strong advantage.
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Analytical Thinking, Azure Data Factory, Coaching and Feedback, Communication, Creativity, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Embracing Change, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Learning Agility, Managed Services, Optimism, Privacy Compliance, Professional Courage {+ 13 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date