Principle AI Security Architect

Finastra
Atlanta, GA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Artificial Intelligence Microsoft Azure Cyber Security Continuous Integration Azure Machine Learning Software Engineering GitHub Copilot Cyber Threat Analysis Information Technology Machine Learning Operations Devsecops

Job description

Strategic Architecture & Roadmap

  • Primary AI Security SME for the CISO organization.
  • AI Security SME supporting AI COE, providing expert guidance on AI security architecture, policies, and standards.
  • Establish reference architectures (e.g. RAG, MCP, agents, tenancy/orchestration), with standardized patterns for identity, access, data protection, and plugin safety.
  • Integrate AI security controls and requirements into enterprise architecture patterns and overlays, ensuring secure-by-design principles are applied.
  • Lead the evaluation, selection, and implementation of AI security tools, working collaboratively with internal stakeholders and external partners.
  • Stay current with advancements in AI/ML security, threat landscapes, and emerging technologies; proactively adapt frameworks and controls accordingly.
  • Stay ahead of evolving AI threats and recommend cutting-edge security solutions by conducting research and innovation.

Governance, Compliance & Risk

  • Converts AI risks into actionable controls, KPIs, and board-level narratives.
  • Participate in and support audits, compliance reviews, and incident response as it relates to AI systems.
  • Partner to develop and enforce AI security policies, including compliance with emerging standards (e.g., NIST AI RMF).

Threat Modeling & Controls

  • Perform AI threat modeling and risk assessments to identify, prioritize, and mitigate security risks related to AI/ML initiatives.

DevSecOps for AI

  • Ensure alignment of AI security practices with organizational strategy and regulatory requirements.
  • Integrated security controls into AI/ML lifecycle (data collection, model training, deployment).
  • Embed security automation into AI CI/CD and ensure continuous validation for drift, bias, and robustness.

Incident Response & Resilience

  • Create playbooks for AI-specific incident response (e.g., model compromise, data exfil via prompts, malicious fine-tuning)
  • Drive red-team/blue-team exercises for AI systems and coordinate independent architecture reviews across product lines.

Requirements

Do you have experience in Tooling?, * Bachelor’s or master’s degree in computer science, Information Security, Engineering, or related field.

  • Proven progressive experience in information security, with focus on AI/ML security.
  • Deep expertise in AI/ML architecture, model security, AI threat modeling, and AI risk assessment methodologies.
  • Proven experience in AI security tool evaluation, selection, and integration.
  • Demonstrated understanding of enterprise security frameworks, secure software development lifecycle, and regulatory compliance requirements for regulated global FinTech company.
  • Strong ability to communicate complex technical concepts to technical and non-technical stakeholders.
  • Relevant security certifications (e.g., CISSP, CCSP, Certified AI Security Professional) preferred.
  • Experience developing and delivering code using modern CI/CD delivery methodologies.

Desired Skills

  • Experience with Azure ML, Azure OpenAI, Microsoft/GitHub Copilot security patterns; integration with Microsoft 365, Entra ID, Defender, Purview for data protection and governance.
  • Completed independent architecture reviews and red-team exercises for flagship AI features, closed priority findings within SLA.

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Retirement plan
  • Paid time off
  • Employee assistance program
  • Disability insurance
  • Volunteer time off, We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:

Flexibility: Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.

Well-being: Access confidential one-to-one support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thrive-inside and outside of work.

Health & Financial Security: Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.*

Sustainability: Paid time off for volunteering and donation-matching opportunities to support causes that matter to you.

Inclusion: Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastra-open to everyone who wants to participate and contribute.

Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.

Recognition: Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.

  • Specific benefits may vary by location.

At Finastra, each individual is unique-bringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves.

Be unique. Be exceptional. Help us make a difference at Finastra.

About the company

At Finastra, we’re a global leader in financial services software, dedicated to expanding access to financial services and shaping what’s next for the industry. Our technology powers mission-critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world’s top 50 banks, in more than 110 countries.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:11 min

Understanding GitHub Copilot and core developer benefits

lgonta lgonta +1 · WWC 2024

4:15 min

Security integration and AI skepticism in developer tooling

Chris Heilmann +2 · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:45 min

Fusing developer experience and platform engineering for agentic SDLC

Julia Kordick Julia Kordick · WWC Europe 2026

Videos

See all

Related articles

See all