AI Security Architect

Brooksource
Charlotte, NC, United States
about 2 months ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$120,640.0 - $145,600.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Cyber Security Information Leak Prevention Python (Programming Language) Node.Js PCI Data Security Standards Role-Based Access Control Zero Trust Network Access Cloud Platform System
+5 more
Large Language Models Togaf Build Management Information Technology Vulnerability Analysis

Job description

Brooksource is searching for an AI/GenAI Security Architect to join our enterprise financial services partner in Charlotte, NC. In this role, you will define and support the enterprise security architecture strategy for AI-driven platforms and capabilities. This role ensures AI and GenAI solutions are secure by design, aligned to regulatory expectations, and resilient against evolving adversarial threats.

You will establish enterprise security patterns, governance guardrails, and reference architectures for AI systems, while enabling engineering and data science teams to scale AI innovation safely. As a senior technical leader, you will influence architecture decisions across the enterprise, integrate AI security into governance processes, and mentor other architects.

This position is open to a driven individual coming either from an architecture background or as a hands-on engineer ready to step into a more strategic role., Architecture Strategy & Governance:

  • Define and drive the enterprise AI security architecture strategy and roadmap
  • Establish security standards, guardrails, and reference architectures for AI/GenAI platforms
  • Integrate AI security requirements into architecture governance and design review processes
  • Align AI security with regulatory expectations, enterprise risk, and business priorities

Secure Design & Architecture:

  • Develop secure design patterns across the AI lifecycle (training, fine-tuning, inference)
  • Provide architecture guidance across cloud, data, identity, and network domains for AI workloads
  • Implement Zero Trust principles and fine-grained access controls within AI systems
  • Define and implement security controls for LLM misuse, adversarial attacks, data leakage, and AI/ML supply chain risks
  • Evaluate emerging AI technologies to assess security implications and required control strategies

Threat Modeling & Risk Management:

  • Lead AI-specific threat modeling to identify adversarial risks and attack vectors
  • Translate risks into clear security controls, design requirements, and remediation actions
  • Partner with engineering teams to ensure security is embedded early in the design lifecycle

Hands-On Innovation & POCs

  • Design and build hands-on POCs to validate AI security controls, architecture patterns, and emerging technologies, and partner with engineering teams to scale proven solutions into production

Requirements

Do you have experience in Stakeholder relationship building?, Do you have a Master’s degree?, * 5+ years of experience within the field of Information Security/Cybersecurity

  • Relevant experience in security architecture, including AI/ML and cloud environments
  • Bachelor’s Degree in Computer Science, Information Security, or related field of study or equivalent, * Master’s in Computer Science, Information Security, or related field
  • 5+ years of experience in security architecture with AI/ML, GenAI, and cloud (AWS/Azure/GCP) environments
  • Demonstrated experience in financial services or other highly regulated environments, including knowledge of FFIEC, PCI DSS, SOX, and related frameworks
  • Deep expertise in AI/ML and GenAI architectures, including LLM-based systems and associated security risks
  • Strong experience addressing AI/GenAI security threats, including adversarial attacks, model misuse, data leakage, and AI supply chain risks
  • Hands-on experience designing and implementing security architecture patterns across cloud, data, identity, and application domains
  • Experience designing and implementing Zero Trust architectures and fine-grained authorization models (RBAC, ABAC, policy-based access)
  • Hands-on experience developing POCs, prototypes, or reference implementations to validate security controls and architecture designs using common languages (e.g., Python, Node.js)
  • Experience conducting security reviews, threat modeling, technology evaluations, and vendor assessments
  • Familiarity with AI security frameworks (e.g., NIST AI Risk Management Framework) and emerging industry practices
  • Strong communication, stakeholder management, and influence skills across engineering, product, risk, and executive audiences
  • Relevant certifications (e.g., CISSP, CCSP, AWS/Azure Security, TOGAF) preferred

Benefits & conditions

(part of Eight Eleven Group) 3.73.7 out of 5 stars Charlotte, NC 28202 Hybrid work $58 - $70 an hour - Contract, Pulled from the full job description

  • 401(k)
  • Health insurance
  • 401(k) matching
  • Vision insurance
  • Dental insurance, * 12-month contract with strong potential for extension or full-time conversion
  • Standard business hours (Monday-Friday)
  • Business casual environment
  • Charlotte, NC - Hybrid schedule (3 days onsite, 2 days remote)
  • W-2 only (not compatible with C2C or 1099); must be authorized to work in the U.S. without sponsorship, * 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

45 sec

Working securely with Node.js path application programming interfaces

Sonya Moisset · WWC 2023

1:20 min

Utilizing industry threat models for AI security

Balázs Kiss · WWC 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:55 min

Identifying underlying Node.js runtime vulnerabilities using fuzzing tools

Sonya Moisset · WWC 2023

9:40 min

Audience Q&A on security risks and team models

Tanya Janca · WWC 2021

Videos

See all

Related articles

See all