Security Architect - AI

ZEISS Group
Oberkochen, Germany
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Algorithm Design Amazon Web Services User Authentication Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Software Design Patterns Digital Technology Information Systems Security Architecture Professional Python (Programming Language)
+13 more
OAuth PCI Data Security Standards Windows PowerShell Software Architecture Role-Based Access Control Software Engineering Systems Integration Software Repository Google Cloud AI Platforms Information Technology Terraform Automation Anywhere

Job description

  • Design secure reference architectures and patterns for AI platforms and AI applications
  • Consult product, data science, and platform teams on secure AI design and implementation
  • Secure AI systems against data poisoning, model theft, adversarial attacks, and other AI-specific threats
  • Define and implement measures for model integrity, data privacy, bias mitigation, and robustness
  • Perform threat modeling and risk reviews tailored to AI workflows and pipelines
  • Implement and manage data security measures
  • Ensure strong authentication and authorization (e.g. OAUTH2, RBAC, PIM) across AI services and platforms
  • Design and implement secure architectures for cloud platforms (i.e. Azure, AWS, GCP)
  • Guide secure use of containers, orchestration, and Infrastructure as Code (e.g. Terraform, PowerShell) for AI workloads
  • Integrate requirements from ISO/IEC 27001, SOX, HIPAA, PCI DSS into AI security concepts
  • Ensure alignment with ethical AI principles and evolving AI regulation, including the EU AI Act
  • Define and review security concepts for AI platforms; conduct security reviews and architecture assessments
  • Support incident response related to AI systems, advising on detection, containment, and remediation
  • Technical leadership and collaboration with international security teams, fostering collaboration across diverse, cross-functional groups
  • Act as a key link between central security, regulatory functions, and the Digital Technology Accelerator
  • Contribute actively to the ZEISS-wide security community, sharing best practices in AI security

Requirements

  • A Master’s degree in Computer Science, Software Engineering, Electrical Engineering, Mechanical Engineering, Mathematics, or Physics
  • Minimum of 7+ years of professional experience in roles such as data modeling, algorithm development, data science, or similar fields
  • Proven track record in designing and implementing secure architectures for AI platforms and AI-driven use cases
  • Cloud Security: Certifications or training in cloud platforms (AWS, GCP, Azure preferred) and expertise in cross-provider cloud technologies (e.g., Microsoft Azure, Google GCP, Amazon AWS, Alibaba)
  • Strong understanding of software architectures, design patterns, and abstract thinking, with the ability to map capabilities to technologies effectively
  • Knowledge of HSM, certificate infrastructures, key vaults, TLS protocols, and authentication methods like OAUTH2
  • Expertise in securing AI platforms, addressing risks like data poisoning and model theft, and ensuring compliance with ethical AI principles, regulatory standards, and the EU AI Act
  • Experience with regulatory frameworks (ISO/IEC 27001, SOX, HIPAA, PCI DSS, EU AI Act) and integrating compliance requirements into AI security strategies
  • Proficiency in Python, managing code repositories, containerizing artifacts, and implementing “Infrastructure as Code” using tools like Terraform and PowerShell
  • Proven ability to give technical guidance to international teams, fostering collaboration and driving security initiatives across diverse, cross-functional groups

Preferred Certifications

  • AI Security Certifications (e.g., AI-specific cybersecurity certifications)
  • Advanced Cloud Security Certifications (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.de

Inside ZEISS Group

Culture, engineering, and team stories

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:12 min

Navigating technical clarity as a global black belt

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

2:36 min

Choosing between managed AI platforms and custom governance

Péter Farkas Péter Farkas · Europe 2026 Virtual

3:03 min

Career evolution in data engineering and AI platforms

Maria Apazoglou · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all