Databricks Security and Access Architect - 100% Remote

SoftLine Tech LLC
United States
10 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$166,400.0 - $208,000.0
Working hours
Regular working hours
Job source

Tech stack

Unity 3d Microsoft Access Amazon Web Services Audit Trail Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Information Systems Information Engineering Data Governance Data Sharing
+17 more
DevOps Identity and Access Management Key Management Metadata Meta-Data Management Role-Based Access Control Cloud Services Service Design Policy as Code Data Logging Data Processing Data Classification Data Layers Information Technology Data Lineage Collibra Databricks

Job description

Softelite Technologies is hiring a Databricks Security and Access Architect to support a Data as a Service design and Data Product and Governance Operating Model engagement. Success in this role means a well documented, enterprise aligned security and access architecture at the Databricks lakehouse and Unity Catalog layer, ready for stakeholder sign off and future implementation. This role operates primarily at the Databricks and Unity Catalog layer and coordinates closely with the Infrastructure Solution Architect on AWS, network, and IAM dependencies. This is a design phase engagement; production configuration and implementation build activities are out of scope., * Define Databricks security and access architecture aligned to the target state lakehouse, marketplace, semantic layer, and data product operating model.

  • Design Unity Catalog catalog, schema, table, view, volume, function, and model access patterns using role based and attribute based access principles.
  • Develop access control patterns for sensitive data, including row filters, column masks, dynamic views, governed tags, and policy driven access enforcement.
  • Define entitlement models for producers, consumers, stewards, platform engineers, business owners, service principals, and automated jobs.
  • Document access request, approval, provisioning, revocation, recertification, and exception handling workflows for Databricks integration with enterprise IAM and ICR processes.
  • Partner with infrastructure, security, governance, metadata, and data product teams to align Databricks access controls with enterprise security standards and operating procedures.
  • Design audit, logging, monitoring, and evidence patterns to support security reviews, compliance needs, and operational oversight.
  • Support design reviews and stakeholder walkthroughs with security and IAM leads, architecture teams, governance leads, and product stakeholders.
  • Prepare access model design artifacts, RACI inputs, decision records, control mappings, and sign off materials for the design phase.
  • Provide guidance for secure Databricks adoption without performing production environment configuration or implementation build activities in this phase.

Requirements

  • Experience designing security, access, governance, or identity patterns for Databricks, lakehouse, cloud data platforms, or enterprise analytics platforms.
  • Strong understanding of Databricks Unity Catalog, catalogs, schemas, tables, views, external locations, storage credentials, privileges, ownership, grants, and workspace catalog bindings.
  • Hands on or design level experience with RBAC, ABAC, row level security, column masking, dynamic views, data classification, access controls, and sensitive data handling.
  • Experience integrating platform access models with enterprise IAM, ICR/access request workflows, service principals, group management, and least privilege access practices.
  • Ability to document security architecture, access control matrices, entitlement models, operating procedures, design decisions, and stakeholder sign off artifacts.
  • Experience collaborating with cloud infrastructure, cybersecurity, data governance, metadata, data engineering, compliance, and business teams in complex enterprise environments.
  • Strong understanding of auditability, lineage, logging, monitoring, compliance evidence, and access recertification expectations in regulated environments.
  • Excellent written and verbal communication skills, with the ability to explain security and access design decisions to both technical and executive stakeholders.
  • Bachelor’s or master’s degree in computer science, information security, data engineering, cloud architecture, information systems, or a related field., * Experience supporting Databricks security architecture in financial services, mortgage, banking, capital markets, risk, or other highly regulated environments.
  • Familiarity with Collibra, metadata management, data lineage, data quality, data product governance, and marketplace based data consumption models.
  • Experience designing access patterns across AWS, Databricks, Unity Catalog, Delta Sharing, semantic layers, and cross account or cross workspace data sharing scenarios.
  • Knowledge of cloud security principles, encryption, network isolation, secrets management, audit logging, policy as code, and secure DevOps practices.
  • Ability to translate enterprise security standards into practical Databricks access models, control mappings, and implementation ready design recommendations.
  • Databricks, AWS, cloud security, data governance, or identity and access management certifications are preferred.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:59 min

Key takeaways and accessing the Databricks developer toolkit

Viktoria Semaan Viktoria Semaan · World Congress 2026 Europe

2:36 min

Development tools for spatial computing and drones

Zaid Zaim Zaid Zaim · World Congress 2023

1:22 min

Analyzing differences between mobile and traditional backend DevOps

Mete Baydar Mete Baydar · World Congress 2025

2:14 min

Securing analysis platforms via network access controls

Jennifer Reif · LIVE

2:30 min

Technical trade-offs between game engines and headsets

Zaid Zaim Zaid Zaim · World Congress 2023

3:27 min

Defining DevOps through its historical origins and foundational texts

Sonal Patil · LIVE

Videos

See all

Related articles

See all