AI Security Architect

Poloworks

Greater London

On-site

GBP 120,000 - 170,000

Full time

11 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Poloworks seeks an AI Security Architect to lead security across Claude and Copilot, build robust AI risk controls, and partner with engineering to embed secure-by-design AI tooling. The role covers vendor governance, regulatory alignment, and executive reporting.

The candidate should have strong security architecture experience, knowledge of AI threat models, and familiarity with DORA, UK GDPR, and NIST CSF. London-based, permanent role with global vendor oversight.

Qualifications

  • Strong background in information security architecture across cloud and SaaS.
  • Working knowledge of LLM and generative AI architectures and threat models.
  • Familiarity with regulatory frameworks including DORA, UK GDPR, ISO 27001 and NIST CSF.
  • Experience running structured risk assessments and translating findings into controls.
  • Strong stakeholder management and ability to engage senior leadership.
  • Desirable: Lloyd's market exposure or experience with Lloyd's standards.

Responsibilities

  • Own the security configuration and hardening of AI tooling (Claude, Copilot) across capabilities and connectors.
  • Define and maintain data-use policies, boundaries, and data-loss-prevention for AI tooling.
  • Monitor vendor AI feature releases and assess risks before broad use.
  • Design and run AI risk assessment framework for data classification, model access, data flows, and output integrity.
  • Maintain central AI tooling register with risk ratings and controls.
  • Translate assessments into access management, logging, and governance controls.
  • Partner with engineering to embed secure-by-design patterns for internal AI tools.
  • Contribute AI governance clauses to vendor contracts and DPAs.
  • Report AI risk posture to senior leadership and governance committees.

Skills

Cloud/SaaS security
LLM & Generative AI
Regulatory frameworks
AI risk assessments
Stakeholder management
Vendor risk & governance
Security architecture
Threat modelling

Education

CISSP / CISM / CRISC
ISO 27001 LA/LI
ISO/IEC 42001 Lead Auditor or AI MS

Tools

Regulatory frameworks (DORA, UK GDPR)
NIST CSF

Job description

AI Security Architect

Department: Digital

Employment Type: Permanent

Location: London

PoloWorks are currently recruiting this role on behalf of our parent company Marco Group.

Key Responsibilities
Platform Security – Claude & Copilot
  • Own the security configuration and ongoing hardening of Claude and Microsoft Copilot across their full capability set, including connectors, agentic/tool-use features, data access scopes and browser or desktop extensions
  • Define and maintain acceptable-use policies, permission boundaries and data-loss-prevention controls specific to generative AI tooling
  • Monitor vendor feature releases and proactively assess new capabilities, such as new connectors or agent modes, for risk before they reach general use
AI Risk Assessment & Controls
  • Design and run a standing AI risk assessment framework covering data classification, model access, third- party data flows and output integrity, applied consistently to every new AI use case
  • Maintain a central AI tooling register of approved, restricted and prohibited tools, with documented risk ratings and compensating controls
  • Translate assessment findings into technical and procedural controls, including access management, logging and monitoring, and prompt and data governance
Secure AI-Assisted Development
  • Partner with engineering and development teams to embed security guardrails where AI coding tools are used, including code review standards, secrets handling and dependency and IP risk
  • Define secure-by-design patterns for building internal AI-powered tools or integrations
Third-Party & Vendor AI Governance
  • Assess AI capabilities embedded in third-party and vendor products, both existing suppliers adding AI features and new AI vendors, as part of vendor due diligence
  • Contribute AI-specific clauses to vendor contracts and DPAs, covering data use, model training exclusions and sub-processor disclosure
  • Maintain oversight of shadow AI usage risk across the business
Governance, Reporting & Stakeholder Engagement
  • Report AI risk posture and control effectiveness to the Group Head of Information Security and relevant governance committees
  • Support regulatory alignment as it relates to AI tool usage, including DORA, UK GDPR and sector‑specific AI guidance
  • Act as the internal technical authority and first point of contact for AI security queries across the business
Skills, Knowledge and Expertise
  • Strong background in information security architecture, ideally with exposure to cloud/SaaS security and vendor risk
  • Working knowledge of LLM and generative AI architectures, data flows and associated threat models, including prompt injection, data leakage, model access control and agentic tool-use risk
  • Familiarity with regulatory frameworks relevant to the sector, including DORA, UK GDPR, ISO 27001 and NIST CSF
  • Experience running structured risk assessments and translating them into actionable controls
  • Strong stakeholder management, with the confidence to engage both technical teams and senior leadership
  • Desirable: experience working within the Lloyd's or London Market (insurer, managing agency, broker or managed service provider), including familiarity with Lloyd's Minimum Standards, Principle 12 and Operational Resilience (OpRes) requirements
Knowledge & Qualifications
  • Security architecture principles and design patterns across cloud and SaaS environments
  • Large language model and generative AI architectures, including agentic and tool-use / connector risk
  • AI governance concepts and frameworks, such as ISO/IEC 42001 and the NIST AI Risk Management Framework
  • DORA, ISO 27001, NIST CSF and UK/EU GDPR requirements
  • Vendor and third-party risk assessment methodology
  • Secure software development practices, particularly where AI-assisted coding tools are in use
Security Certifications
  • CISSP, CISM, CRISC, SABSA, TOGAF (security architecture stream) or equivalent
  • ISO 27001 LA/LI or equivalent
  • ISO/IEC 42001 Lead Auditor or Lead Implementer (AI Management Systems), or equivalent
Desirable – AI governance / assurance accreditations:
  • ISACA Certified in Artificial Intelligence (Certified AI Audit / AAIA), or AI Fundamentals certificate
  • NIST AI Risk Management Framework (AI RMF) practitioner training
  • CertNexus Certified Artificial Intelligence Practitioner (CAIP), or equivalent AI security/ethics credential
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Security Architect
AI Security Architect

Polo • Cheltenham

Hybrid
GBP 75,000 - 85,000
Security GRC & AI Analyst
Security GRC & AI Analyst

PoloWorks • Cheltenham

On-site
GBP 45,000 - 55,000
AI Security Engineer
AI Security Engineer

Norton Blake • Greater London

On-site
GBP 150,000 - 180,000
AI Security Architect
AI Security Architect

Additional Resources Ltd. • Greater London

On-site
GBP 129,000 - 203,000
AI Security Architect
AI Security Architect

Sapiens International • Greater London

On-site
GBP 90,000 - 120,000
Platform Engineer
Platform Engineer

Sanderson • Greater London

Hybrid
GBP 70,000 - 100,000
AI Governance Engineering Lead
AI Governance Engineering Lead

Janus Henderson Group • Greater London

Hybrid
GBP 90,000 - 140,000
Hybrid working
Health and wellbeing benefits
Volunteer time
+3
Principal AI Security Software Engineer
Principal AI Security Software Engineer

SGI • Greater London

On-site
GBP 134,000 - 148,000
Principal AI Security Software Engineer
Principal AI Security Software Engineer

Source Technology Limited • Greater London

On-site
GBP 189,000 - 208,000
Senior AI Security Architect: GenAI Risk & Guardrails
Senior AI Security Architect: GenAI Risk & Guardrails

Poloworks • Greater London

On-site
GBP 120,000 - 170,000