Thomson Reuters is enhancing its Cyber Defense capability in response to an AI-driven threat landscape that has fundamentally changed the speed, scale, and nature of cyberattacks.
The Distinguished Engineer, AI Threat Defense is an individual contributor and senior technical authority embedded within the existing 60+ person Cyber Defense organization. Reporting to the VP of Cyber Defense, this individual will strengthen AI-specific threat defense strategy and build AI-augmented detection and response capability into the existing Security Operations Center (SOC) and Cyber Incident Response Team (CIRT).
This role has no direct reports or management authority Instead, the individual will drive impact through technical credibility, architecture, hands-on engineering, influence, and mentorship across SOC Operations, CIRT, Threat Detection Engineering, Vulnerability Management, Attack Surface Reduction, and Cyber Threat Management.
The role also owns two areas where the current organization lacks a dedicated deep technical owner: the technical strategy against AI-specific attack vectors and the hands-on architecture and delivery of AI-augmented detection and response within the existing SOC and CIRT.
About the role:
As The Distinguished Engineer, AI Threat Defense, yuo will:
Partner with Security Engineering and Architecture to define standards for securing AI infrastructure and ensuring it can be effectively monitored and defended.
Track emerging offensive AI capabilities, adversary tooling, published research, and threat-actor adoption of AI so Cyber Defense capabilities evolve ahead of emerging threats.
Direct and indirect prompt injection
Jailbreaks and guardrail bypass
Sensitive-information and system-prompt disclosure
Unsafe model output and downstream execution
Excessive agency and MCP/tool abuse
Model and data poisoning
AI supply-chain compromise
Model denial-of-service / denial-of-wallet attacks
Model, prompt, and intellectual-property theft
Own technical monitoring and response for Thomson Reuters AI-enabled applications, features, and agentic services while partnering with Product Engineering, Security Engineering & Architecture, and AppSec to embed security directly into the software development lifecycle.
Build AI-Augmented Detection and Response
Build AI-augmented detection content and analytics for AI-specific attack patterns.
Integrate AI threat detection into the existing SIEM, detection engineering, and SOC monitoring stack
Build AI-assisted playbooks and runbooks and integrate them into existing CIRT and SOAR workflows
Serve as the principal technical architect for incorporating AI capabilities into the existing 24/7 SOC and CIRT rather than creating a separate security function.
Design automated workflows for AI-related detection, triage, investigation, and response.
Increase analyst productivity while maintaining human-in-the-loop controls, audit trails, and rollback capability.
Drive adoption across SOC Operations, CIRT, Threat Detection Engineering, Vulnerability Management, and Attack Surface Reduction.
Technical Leadership & Influence
Act as the recognized technical authority for AI threat defense across the Cyber Defense organization.
Provide hands-on mentorship and technical uplift to SOC, CIRT, engineering, and security professionals without formal management responsibility.
Represent Cyber Defense externally with industry groups, customers, and regulators.
Influence engineers and analysts through technical reviews, direct collaboration, architecture guidance, and knowledge sharing.
About You
To be considered for the role of s The Distinguished Engineer, AI Threat Defense:
Required Skills / Qualifications
12+ years of progressive cybersecurity engineering experience, including experience operating at Principal, Staff, or Distinguished Engineer level within a large, complex enterprise.
Deep hands-on knowledge of AI-specific attack vectors and defensive architectures
Production experience governing AI systems, agentic infrastructure, MCP or equivalent integration patterns
Proven experience architecting or delivering AI-assisted detection and response within a mature 24/7 SOC and/or CIRT.
Experience enhancing an established security organization rather than simply building a new function from scratch.
Demonstrated ability to drive adoption of detection capabilities and security controls across:
SOC Operations
CIRT
Threat Detection Engineering
Vulnerability Management
Attack Surface Reduction
Ability to influence technical teams through credibility rather than direct reporting authority.
Exceptional communication skills, including the ability to explain AI-related security risk to senior executives and technical audiences.
Experience within a regulated, multi-segment enterprise requiring coordination across legal, compliance, procurement, and governance organizations.
Preferred Qualifications
Experience in financial services, legal technology, or professional information services
Experience embedding major technical capabilities into an existing mature security operations organization.
Familiarity with frontier AI vulnerability research programs such as Anthropic Project Glasswing / Claude Code Security or comparable agentic vulnerability-discovery initiatives.
Hands-on experience building or operating agentic AI systems using multiple LLMs, including open-weight and hosted/frontier models.
Experience integrating AI capabilities with SAST/AppSec tooling and vulnerability-management workflows
Working knowledge of safely operating open-weight or less-restricted AI models for authorized internal security research.
Published research, conference speaking, or active participation within AI security research communities.
Relevant certifications such as CISSP, CISM, advanced AI/ML security, cloud security (AWS/Azure/GCP), or detection-engineering credentials.
#LI-IG1
What’s in it For You?
DISCLAIMER
The above information in this description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.
About Us
Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news.
We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them. Sound exciting? Join us and help shape the industries that move society forward.
As a global business, we rely on the unique backgrounds, perspectives, and experiences of all employees to deliver on our business goals. To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, color, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status, or any other protected classification under applicable law. Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug-free workplace.
We also make reasonable accommodations for qualified individuals with disabilities and for sincerely held religious beliefs in accordance with applicable law. More information on requesting an accommodation here.
Learn more on how to protect yourself from fraudulent job postings here.
More information about Thomson Reuters can be found on thomsonreuters.com

Thomson Reuters (TSX/NDAQ: TRI) informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news.
For more information on Thomson Reuters, visit tr.com and for the latest world news, reuters.com.