principal-level AI Security Architect

Finastra
Atlanta, GA, United States
10 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows Artificial Intelligence Microsoft Azure Cyber Security Continuous Delivery Continuous Integration Data Security Information Systems Security Architecture Professional Microsoft Software Network Connections Systems Development Life Cycle Azure Machine Learning
+7 more
Software Engineering GitHub Copilot Cyber Threat Analysis Information Technology Machine Learning Operations Devsecops Cisco

Job description

Strategic Architecture & Roadmap

  • Primary AI Security SME for the CISO organization.
  • AI Security SME supporting AI COE, providing expert guidance on AI security architecture, policies, and standards.
  • Establish reference architectures (e.g. RAG, MCP, agents, tenancy/orchestration), with standardized patterns for identity, access, data protection, and plugin safety.
  • Integrate AI security controls and requirements into enterprise architecture patterns and overlays, ensuring secure-by-design principles are applied.
  • Lead the evaluation, selection, and implementation of AI security tools, working collaboratively with internal stakeholders and external partners.
  • Stay current with advancements in AI/ML security, threat landscapes, and emerging technologies; proactively adapt frameworks and controls accordingly.
  • Stay ahead of evolving AI threats and recommend cutting-edge security solutions by conducting research and innovation.

Governance, Compliance & Risk

  • Converts AI risks into actionable controls, KPIs, and board-level narratives.
  • Participate in and support audits, compliance reviews, and incident response as it relates to AI systems.
  • Partner to develop and enforce AI security policies, including compliance with emerging standards (e.g., NIST AI RMF).

Threat Modeling & Controls

  • Perform AI threat modeling and risk assessments to identify, prioritize, and mitigate security risks related to AI/ML initiatives.

DevSecOps for AI

  • Ensure alignment of AI security practices with organizational strategy and regulatory requirements.
  • Integrated security controls into AI/ML lifecycle (data collection, model training, deployment).
  • Embed security automation into AI CI/CD and ensure continuous validation for drift, bias, and robustness.

Incident Response & Resilience

  • Create playbooks for AI-specific incident response (e.g., model compromise, data exfil via prompts, malicious fine-tuning)
  • Drive red-team/blue-team exercises for AI systems and coordinate independent architecture reviews across product lines.

Requirements

  • Bachelors or masters degree in computer science, Information Security, Engineering, or related field.
  • Proven progressive experience in information security, with focus on AI/ML security.
  • Deep expertise in AI/ML architecture, model security, AI threat modeling, and AI risk assessment methodologies.
  • Proven experience in AI security tool evaluation, selection, and integration.
  • Demonstrated understanding of enterprise security frameworks, secure software development lifecycle, and regulatory compliance requirements for regulated global FinTech company.
  • Strong ability to communicate complex technical concepts to technical and non-technical stakeholders.
  • Relevant security certifications (e.g., CISSP, CCSP, Certified AI Security Professional) preferred.
  • Experience developing and delivering code using modern CI/CD delivery methodologies.

Desired Skills

  • Experience with Azure ML, Azure OpenAI, Microsoft/GitHub Copilot security patterns; integration with Microsoft 365, Entra ID, Defender, Purview for data protection and governance.
  • Completed independent architecture reviews and red-team exercises for flagship AI features, closed priority findings within SLA., Artificial Intelligence (AI), Automation, Banking Services, Business Strategy, CCSP - Cisco Certified Security Professional, CISSP - Certified Information Systems Security Professional, Career Development, Communication Skills, Computer Science, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Data Modeling, Employee Assistance Plan, Enterprise Architecture, Enterprise Protection, Establish Priorities, Financial Services, Financial Services Software, Incident Response, Information/Data Security (InfoSec), Leadership, Leading Edge Technology, Loans, Microsoft Product Family, Network Connectivity, Product Engineering, Product Reviews, Regulatory Compliance, Regulatory Requirements, Research Skills, Risk, Risk Analysis, Risk Management, Security Analysis, Security Architecture, Security Attacks, Service Level Agreement (SLA), Software Development Lifecycle (SDLC), Threat Modeling, Threat and risk analysis (TRA), U.S. National Institute of Standards and Technology (NIST), eLearning

Benefits & conditions

We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:

Flexibility: Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.

Well-being: Access confidential one-to-one support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thriveinside and outside of work.

Health & Financial Security: Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.*

Sustainability: Paid time off for volunteering and donation-matching opportunities to support causes that matter to you.

Inclusion: Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastraopen to everyone who wants to participate and contribute.

Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.

Recognition: Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.

  • Specific benefits may vary by location.

At Finastra, each individual is uniquebringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves.

Be unique. Be exceptional. Help us make a difference at Finastra.

About the company

At Finastra, were a global leader in financial services software, dedicated to expanding access to financial services and shaping whats next for the industry. Our technology powers mission-critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the worlds top 50 banks, in more than 110 countries.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

3:03 min

Career evolution in data engineering and AI platforms

Maria Apazoglou · Coffee With Developers

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

1:20 min

Utilizing industry threat models for AI security

Balázs Kiss · WWC 2023

Videos

See all

Related articles

See all