Information Security Architect – AI & Strategic Initiatives

Ryanair - Europe's Favourite Airline

Wrocław

Sur place

PLN 260 000 - 420 000

Plein temps

Il y a 22 heures
Soyez parmi les premiers à postuler
Générateur de candidature

Démarquez-vous pour ce poste — générez un CV et une lettre de motivation personnalisés en environ une minute.

Passez les filtres ATS

Avantages offerts par ce poste

Staff travel benefits from day one
Multisport card
Private health care
Group insurance scheme

Résumé du poste

Ryanair Labs is recruiting an Information Security Architect to lead security architecture for AI systems, spanning on‑prem and multi‑cloud (AWS, GCP, Azure). You will automate security workflows, define guardrails, and drive governance with a hands‑on, architecture‑driven approach.

The role demands senior autonomy and cross‑functional collaboration within Europe’s largest airline group. You will shape security patterns, conduct threat modelling, and implement secure SDLC practices while

Qualifications

  • 6+ years in security, incl. 3+ in architecture or senior engineering roles
  • Demonstrated autonomy with automation initiatives and measurable results
  • Deep understanding of LLM apps, RAG, agents, MCP integrations and attack surfaces (OWASP Top 10 for LLM)
  • Multicloud architecture across AWS, GCP and Azure: identity, network, logging, policy‑as‑code
  • Identity and zero‑trust architecture including non‑human identities
  • Hands‑on skills: Python, APIs, IaC; proficient with LLM assistants and agentic coding tools

Responsabilités

  • Automate the security team with agentic workflows and policy‑as‑code
  • Integrate security tooling via APIs; keep humans in the loop and track toil removed
  • Develop and govern AI security architectures for LLM apps, RAG pipelines, and MCP/tool integrations
  • Lead security initiatives across on‑prem and multicloud environments, with roadmaps and metrics
  • Maintain threat modelling and secure SDLC practices across projects

Connaissances

Automation
Python
APIs
IaC
LLM tooling
Cross‑functional leadership
Security architecture

Outils

Claude Code
OpenCode

Description du poste

Ryanair Labs are currently recruiting Information Security Architect to join Europe’s Largest Airline Group!

This is a very exciting time to join Ryanair as we look to expand our operation to 800 aircraft and 300 million guests within the next 10 years.

Ryanair Labs is the technology brand of Ryanair. Labs is a state of-the-art digital & IT innovation hub creating Europe’s Leading Travel Experience for our customers.

About The Role

A senior, self-directed architect in a lean airline security team. You work without day-to-day supervision: you find where the team spends effort on repeatable work, decide what to automate, build it and measure the result. You own the security architecture for the AI systems we build and buy, and you take a lead role in strategic security initiatives across on-prem and multicloud (AWS, GCP, Azure). You still build: automation, policy-as-code and proofs of concept, not only documents.

How you’ll work: find, design, build, verify, evolve
  • Find. Independently map how the security team works detection, incident response, vulnerability management, pentesting, IAM, compliance and spot repeatable manual work, weak controls and gaps; threat‑model new AI systems and initiatives (MITRE ATLAS, MITRE ATT&CK, OWASP).
  • Design. Automation and architecture patterns with explicit trade‑offs: data boundaries, identity for humans and agents, least‑privilege tool access, guardrails, human‑in‑the‑loop for decisions.
  • Build. Ship it yourself or alongside engineers: agentic workflows, integrations, IaC and policy‑as‑code, proofs of concept.
  • Verify. Validate with the pentest and detection teams; measure hours removed, error rates and coverage.
  • Evolve. Keep a roadmap and metrics; update patterns as the AI and threat landscape shifts.
What You’ll Do
Automate the security team
  • Build agentic and scripted automation for alert enrichment and triage, incident timeline assembly, vulnerability‑to‑owner routing and remediation tracking, pentest recon and reporting, access reviews and joiner/mover/leaver checks, audit evidence collection, threat‑intel ingestion, log‑source onboarding and policy‑as‑code checks.
  • Integrate security tooling via APIs and MCP; keep humans in the loop for decisions; track toil removed.
  • Make LLM assistants and agentic coding tools (Claude Code, OpenCode) productive and governed for the team: safe‑use standards, data‑handling boundaries, shared patterns.
AI security architecture
  • Secure patterns for LLM apps, RAG pipelines, agents and MCP/tool integrations: prompt‑injection and data‑leakage defences, non‑human identity and least privilege, logging that feeds detection.
  • AI governance in practice: AI system inventory, approval path for new AI tools and vendors, model and vendor risk assessment, shadow‑AI discovery with the detection team.
Security initiatives (examples)
  • Zero‑trust and identity modernisation: phishing‑resistant MFA, conditional access, privileged access management, non‑human identities.
  • Multicloud security baseline across AWS, GCP and Azure: landing zones, guardrails and policy‑as‑code, logging baseline into the SIEM.
  • Secure SDLC / DevSecOps: SAST, DAST, SCA and secrets management in CI/CD.
  • Network segmentation between corporate, passenger‑facing and airport/ground operational systems.
  • SaaS security posture and supplier/third‑party access.
  • Data protection for passenger and crew data; PCI scope reduction.
  • Ransomware resilience: backup immutability and recovery testing.
  • Regulatory readiness: gap assessments, control mapping and evidence automation for applicable security regulations and standards.
Must have
  • 6+ years in security, including 3+ in architecture or senior engineering roles, with an engineering background you still use.
  • Demonstrated autonomy: examples of automation or initiatives you identified, built and shipped on your own initiative, with measured results.
  • Deep understanding of how LLM applications, RAG, agents and tool/MCP integrations are built, and of their attack surface (OWASP Top 10 for LLM Applications, agentic‑AI threat guidance, MITRE ATLAS).
  • Multicloud architecture across AWS, GCP and Azure: identity, network, logging, policy‑as‑code.
  • Identity and zero‑trust architecture, including workload and non‑human identities.
  • Threat modelling, secure design and secure SDLC practice.
  • Hands‑on skills: Python, APIs, IaC; effective daily use of LLM assistants and agentic coding tools (e.g., Claude Code, OpenCode) with critical validation of output.
  • Track record of leading cross‑functional initiatives without formal authority: roadmap, business case, delivery.
  • Clear communication with executives and engineers alike.
Nice to have
  • Aviation, logistics or other regulated‑sector experience.
  • EU AI Act, ISO/IEC 42001 and NIST AI RMF in practice.
  • Strongly valued: contributions to, or research on, AI security red‑teaming agents, guardrail frameworks, agent security patterns, open‑source, publications or talks.
  • Data security and privacy architecture (PII, PCI); SaaS security.
  • OT/ICS and safety‑critical system security for airport and ground systems.
  • Certifications: CISSP, CCSP, SABSA or TOGAF; cloud architecture/security (AZ‑305, AZ‑500, AWS Solutions Architect Professional, AWS Security Specialty, Google Professional Cloud Security Engineer or Cloud Architect).
Benefits & Form Of Employment
Contract of employment (permanent contract after trial period)
  • Staff travel benefits from day one
  • Multisport card
  • Private health care
  • Group insurance scheme
Other Benefits
  • Possibility of taking part in trainings and certifications
  • Great chance to meet your colleagues in other offices
  • Annual events (i.e. St. Patrick’s Day )
  • Regular social meetings
  • Paid referral system
  • New office building surrounded by great dinettes right in the city centre
Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Information Security Architect – AI & Strategic Initiatives
Information Security Architect – AI & Strategic Initiatives

Ryanair Ltd. • Wrocław

Hybride
PLN 260 000 - 420 000
Staff travel benefits from day one
Multisport card
Training and certifications
Information Security Architect - AI & Strategic Initiatives
Information Security Architect - AI & Strategic Initiatives

Ryanair Group Holdings • Wrocław

Sur place
PLN 394 000 - 657 000
Staff travel benefits from day one
Multisport card
Training and certifications
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair - Europe's Favourite Airline • Wrocław

Hybride
PLN 180 000 - 240 000
Staff travel benefits from day one
Multisport card
Private health care
+1
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair Group Holdings • Wrocław

Sur place
PLN 180 000 - 300 000
Staff travel benefits
Multisport card
Training & certifications
+2
Information Security - Senior Threat Detection & Response Engineer
Information Security - Senior Threat Detection & Response Engineer

Ryanair Group Holdings • Wrocław

Sur place
PLN 260 000 - 420 000
Staff travel benefits
Multisport card
Training and certifications
+1
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair Group Holdings • Wrocław

Sur place
PLN 200 000 - 320 000
Staff travel benefits
Multisport card
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair - Europe's Favourite Airline • Wrocław

Hybride
PLN 180 000 - 300 000
Staff travel benefits from day one
Multisport card
Private health care
+1
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair Ltd. • Wrocław

Hybride
PLN 120 000 - 180 000
Staff travel benefits
Multisport card
Training & certifications
+1
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair Ltd. • Wrocław

Hybride
PLN 180 000 - 280 000
Hybrid model
Staff travel benefits
Multisport card
+2
Information Security Analyst SOC Tier 1
Information Security Analyst SOC Tier 1

Ryanair - Europe's Favourite Airline • Wrocław

Sur place
PLN 100 000 - 150 000
Staff travel benefits from day one
Multisport card
Private health care
+1