AI & Automated Solutions - AI & Cybersecurity Solutions Analyst
PRIMARY PURPOSE
The AI & Cybersecurity Solutions Analyst will play a critical role in the development, evaluation, and implementation of secure AI solutions at CNA. This position bridges technical AI development with cybersecurity requirements, ensuring that AI initiatives are designed with secure-by-design principles from inception through deployment. The analyst will work collaboratively with AI development teams, cybersecurity specialists, and business stakeholders to assess requirements, identify risks, prototype solutions, and contribute to the technical implementation of AI capabilities that meet both functional and security objectives.
JOB DESCRIPTION AND/OR DUTIES
Collaborate with AI development teams to design, prototype, and test AI/ML solutions that address business requirements while adhering to security best practices.
Contribute to the technical implementation of AI models, automation workflows, and intelligent systems using appropriate frameworks and tools.
Conduct feasibility analyses for proposed AI initiatives, evaluating technical requirements, data needs, computational resources, and security implications.
Develop proof-of-concept solutions and technical demonstrations to validate AI approaches before full-scale implementation.
Perform security assessments of AI systems throughout the development lifecycle, identifying vulnerabilities related to data privacy, model security, adversarial attacks, and compliance requirements.
Work with cybersecurity teams to implement security controls, monitoring capabilities, and incident response procedures for AI solutions.
Evaluate third-party AI tools, platforms, and services for security posture, compliance with organizational standards, and integration requirements. Document security architectures, threat models, and risk assessments for AI implementations.
Analyze AI system performance, security metrics, and operational data to identify optimization opportunities and potential security concerns. Create and maintain technical documentation including system architectures, data flow diagrams, integration specifications, security controls, and standard operating procedures.
Research emerging AI technologies, security threats to AI systems, and industry best practices to inform strategic recommendations and responsible AI principles. Prepare technical reports, findings, and recommendations for leadership and stakeholder review.
Serve as a technical liaison between AI development teams, cybersecurity teams, and business units to ensure alignment on requirements and security standards.
Provide technical guidance and knowledge sharing to team members on AI capabilities, security considerations, and implementation best practices. Participate in project planning sessions, architecture reviews, and security assessments as the AI subject matter expert.
Perform other duties as assigned that support the development and secure deployment of AI solutions.
JOB REQUIREMENTS
1. Education: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Data Science, Engineering, or related field or combination of education and work experience required. Advanced degree (Master's in AI/ML, Cybersecurity, or related field) and industry certifications (AI/ML, security, and/or cloud certification related to AI services) preferred.
2. Experience: Minimum 3-5 year experience in IT, cybersecurity, and/or Al/ML development with demonstrated experience with Al/ML projects, including model development, deployment, or integration. Experience with cloud platforms (AWS, Azure, GCP) and their Al/ML services preferred.
3. Skills: Working knowledge of machine learning frameworks (TensorFlow, PyTorch, scikit-learn, or similar). Understanding of AI/ML model development lifecycle, including data preparation, training, validation, and deployment. Familiarity with generative AI, large language models, and prompt engineering concepts. Experience with Python, R, or other programming languages used in AI development. Ability to learn cybersecurity principles including CIA triad, defense-in-depth, zero trust, and secure SDLC. Knowledge of AI-specific security concerns (adversarial ML, model poisoning, data privacy, bias). Familiarity with security frameworks (NIST, ISO 27001) and compliance requirements (GDPR, CCPA). Understanding of cloud security, API security, and data protection practices. Strong analytical skills with ability to evaluate complex technical requirements and trade-offs. Experience with data analysis, metrics reporting, and technical troubleshooting. Ability to conduct research and synthesize findings into actionable recommendations. Effective written and verbal communication skills with ability to create clear technical documentation. Ability to explain technical concepts to both technical and non-technical audiences in a clear and concise manner. Ability to work effectively in cross-functional teams. Strong organizational skills and ability to manage multiple concurrent projects. Exercises independent judgment while working under readily available supervision.
4. Other: On-call availability outside of normal working hours. Ability to obtain and maintain a Top-Secret clearance.
5. Remote/Hybrid Work Eligibility: This position is eligible for telecommuting or hybrid work arrangements at the discretion of the Supervisor. Employees may be required to work at CNA headquarters or other work locations resulting in changes to the scheduled telecommuting or hybrid work arrangements.