> Markdown version of [/jobs/ext/2283034-ai-model-security-architect](https://www.wearedevelopers.com/jobs/ext/2283034-ai-model-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI/Model Security Architect - **Company:** Sas Institute Inc. - **Location:** Cary, NC, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), PHP (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Software System Penetration Testing, Software as a Service, Code Review, Cyber Security, Information Systems Security Architecture Professional, Python (Programming Language), Open Web Application Security, Systems Development Life Cycle, SAS (Software), Secure Coding, Software Engineering, Systems Architecture, Large Language Models, Software Security, Kubernetes, Information Technology, Restful APIs, Devsecops, Vulnerability Analysis, Golang, Programming Languages, Microservices - **Published:** August 28, 2026 - **Apply:** https://careers-sas.icims.com/jobs/42559/ai-model-security-architect/job?mode=apply&apply=yes&in_iframe=1&hub=9&hashed=-336115570 ## About the Role * Bachelor's degree with major study in technical disciplines such as Computer Science or Engineering, or related field. * 5+ years of secure software development, secure system architecture and design, or related experience. * Demonstrated knowledge in securing enterprise-grade containerized compute or container clusters, and REST APIs, as detailed in security publications like the OWASP Top 10 and OWASP API Top 10. * An equivalent combination of related education, training and experience and relevant cyber security degrees or alternate cyber security experience like certifications Additional competencies, knowledge and skills * 2+ years of experience in developing or adopting software security patterns and best practices. * Demonstrated knowledge and willingness to learn Kubernetes, containers and micro-services, SaaS (public and private cloud deployments), ML, GenAI, and MCP/A2A. * Experience with programming languages such as: Java, Python, JavaScript, PHP, Golang, etc. Ability to review code or logic and be confident in giving prescriptive guidance to developers in security patterns and best practices. * Preferred active security certification: CISSP, CSSLP, CEH, CCSP, OSCP, etc. Knowledge of security best practices for regulated industries such as healthcare or financial services, and global privacy frameworks. ## Description We're a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into answers. If you're looking for a dynamic, fulfilling career with flexibility and a world-class employee experience, you'll find it here. We're recognized around the world for our inclusive, meaningful culture and innovative technologies by organizations like Fast Company, Forbes, Newsweek and more. About the job As an AI/Model Security Architect within Applied AI and Modeling (AAIM) division you will be a key contributor to overall Product security. Successful candidates will partner within SAS helping to solve complex technical problems anywhere in the Software Development Lifecycle (SDLC) from architecture and design to deployment and operations. Technical security breadth and depth as well as clear, concise and effective communications are key - this role requires a diverse set of skills in systems architecture, software development, and security. Success will depend on your collaborative skills working toward the SAS goal of meeting legal, compliance, and customer security requirements as part of providing SAS customers with the most trustworthy solutions globally. As AI/Model Security Architect, you will: * Work in active partnership with development teams to identify and build solutions to: Secure code, implement application vulnerability scanning solutions using DevSecOps methodologies, contribute to documentation for penetration tests, * Create/disseminate developer guidance and training, and create repositories, code or templates with examples of best practices in secure architecture, design and operational patterns. * Perform security focused design reviews on a regular or risk-based priority basis, which identify security gaps and improve the security posture of AAIM's deliverables, containerized deployment systems and LLM powered products. * Working with Product Management to ensure security implementations are consistent business objectives and customer requirements are in alignment to SAS security standards * Collaborate with other teams within security to identify new tools and processes to integrate into the Secure SDLC. Recommend and promote software security policies, standards, and procedures that can improve the global security posture of the company. * Ensure all applicable security policies and processes are followed to support the organization's secure software development goals. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift)