Information Security Architect – AI & Strategic Initiatives

Ryanair Ltd.

Wrocław

Hybrid

PLN 260,000 - 420,000

Full time

47 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Staff travel benefits from day one
Multisport card
Training and certifications

Job summary

Ryanair Labs is hiring an Information Security Architect to own security architecture for AI systems and lead strategic security initiatives across on‑prem and multicloud environments (AWS, GCP, Azure). You will build automation, policy-as-code and proofs of concept, not just documents.

You will map and improve detection, incident response, vulnerability management, IAM, and risk controls while delivering measurable reductions in toil and risk.

Qualifications

  • Senior security architect with hands-on automation track record.
  • Autonomy to own security architecture for AI systems and initiatives.
  • Deep understanding of LLM apps, RAG, agents and tool/MCP integrations and attack surfaces.
  • Experience in multicloud (AWS, GCP, Azure) security patterns.
  • Identity, zero-trust architecture and non-human identities.
  • Threat modelling and secure SDLC practices.
  • Strong Python, APIs and IaC skills; validate outputs.
  • Proven cross-functional leadership without formal authority.
  • Clear communication with executives and engineers.

Responsibilities

  • Automate the security team with agentic workflows and integrations.
  • Develop security patterns for AI systems and governance across clouds.
  • Lead secure SDLC practices including SAST/DAST/IA into CI/CD.
  • Maintain roadmaps and metrics for AI security initiatives.

Skills

Security architecture
Automation
ML security
Multicloud security
Zero-trust identity
Threat modelling
Python
APIs
Executive communication

Tools

Terraform
Claude Code
OpenCode
LLM tooling

Job description

Information Security Architect – AI & Strategic Initiatives

Ryanair Labs are currently recruiting Information Security Architectto join Europe’s Largest Airline Group!

This is a very exciting time to join Ryanair as we look to expand our operation to 800 aircraft and 300 million guests within the next 10 years.

Ryanair Labs is the technology brand of Ryanair. Labs is a state of-the-art digital & IT innovation hub creating Europe’s Leading Travel Experience for our customers.

Description

About the role
A senior, self-directed architect in a lean airline security team. You work without day-to-day supervision: you find where the team spends effort on repeatable work, decide what to automate, build it and measure the result. You own the security architecture for the AI systems we build and buy, and you take a lead role in strategic security initiatives across on-prem and multicloud (AWS, GCP, Azure). You still build: automation, policy-as-code and proofs of concept, not only documents.

  • Find. Independently map how the security team works detection, incident response, vulnerability management, pentesting, IAM, compliance and spot repeatable manual work, weak controls and gaps; threat-model new AI systems and initiatives (MITRE ATLAS, MITRE ATT&CK, OWASP).
  • Design. Automation and architecture patterns with explicit trade-offs: data boundaries, identity for humans and agents, least-privilege tool access, guardrails, human-in-the-loop for decisions.
  • Build. Ship it yourself or alongside engineers: agentic workflows, integrations, IaC and policy-as-code, proofs of concept.
  • Verify. Validate with the pentest and detection teams; measure hours removed, error rates and coverage.
  • Evolve. Keep a roadmap and metrics; update patterns as the AI and threat landscape shifts.

What you’ll do

Automate the security team

  • Build agentic and scripted automation for alert enrichment and triage, incident timeline assembly, vulnerability-to-owner routing and remediation tracking, pentest recon and reporting, access reviews and joiner/mover/leaver checks, audit evidence collection, threat-intel ingestion, log-source onboarding and policy-as-code checks.
  • Integrate security tooling via APIs and MCP; keep humans in the loop for decisions; track toil removed.
  • Make LLM assistants and agentic coding tools (Claude Code, OpenCode) productive and governed for the team: safe-use standards, data-handling boundaries, shared patterns.

AI security architecture

  • Secure patterns for LLM apps, RAG pipelines, agents and MCP/tool integrations: prompt-injection and data-leakage defences, non-human identity and least privilege, logging that feeds detection.
  • AI governance in practice: AI system inventory, approval path for new AI tools and vendors, model and vendor risk assessment, shadow-AI discovery with the detection team.

Security initiatives (examples)

  • Zero-trust and identity modernisation: phishing-resistant MFA, conditional access, privileged access management, non-human identities.
  • Multicloud security baseline across AWS, GCP and Azure: landing zones, guardrails and policy-as-code, logging baseline into the SIEM.
  • Secure SDLC / DevSecOps: SAST, DAST, SCA and secrets management in CI/CD.
  • Network segmentation between corporate, passenger-facing and airport/ground operational systems.
  • SaaS security posture and supplier/third-party access.
  • Data protection for passenger and crew data; PCI scope reduction.
  • Ransomware resilience: backup immutability and recovery testing.
  • Regulatory readiness: gap assessments, control mapping and evidence automation for applicable security regulations and standards.
Requirements

Must have

  • 6+ years in security, including 3+ in architecture or senior engineering roles, with an engineering background you still use.
  • Demonstrated autonomy: examples of automation or initiatives you identified, built and shipped on your own initiative, with measured results.
  • Deep understanding of how LLM applications, RAG, agents and tool/MCP integrations are built, and of their attack surface (OWASP Top 10 for LLM Applications, agentic-AI threat guidance, MITRE ATLAS).
  • Multicloud architecture across AWS, GCP and Azure: identity, network, logging, policy-as-code.
  • Identity and zero-trust architecture, including workload and non-human identities.
  • Threat modelling, secure design and secure SDLC practice.
  • Hands-on skills: Python, APIs, IaC; effective daily use of LLM assistants and agentic coding tools (e.g., Claude Code, OpenCode) with critical validation of output.
  • Track record of leading cross-functional initiatives without formal authority: roadmap, business case, delivery.
  • Clear communication with executives and engineers alike.

Nice to have

  • Aviation, logistics or other regulated-sector experience.
  • EU AI Act, ISO/IEC 42001 and NIST AI RMF in practice.
  • Strongly valued: contributions to, or research on, AI security red‑teaming agents, guardrail frameworks, agent security patterns, open‑source, publications or talks.
  • Data security and privacy architecture (PII, PCI); SaaS security.
  • OT/ICS and safety‑critical system security for airport and ground systems.
  • Certifications: CISSP, CCSP, SABSA or TOGAF; cloud architecture/security (AZ-305, AZ-500, AWS Solutions Architect Professional, AWS Security Specialty, Google Professional Cloud Security Engineer or Cloud Architect).

Benefits & form of employment

Contract of employment (permanent contract after trial period)

  • Staff travel benefits from day one
  • Multisport card

Other benefits

  • Possibility of taking part in trainings and certifications
  • Great chance to meet your colleagues in other offices
  • Annual events (i.e. St. Patrick’s Day )
  • Regular social meetings
  • Paid referral system
  • New office building surrounded by great dinettes right in the city centre
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Architect – AI & Strategic Initiatives
Information Security Architect – AI & Strategic Initiatives

Ryanair - Europe's Favourite Airline • Wrocław

On-site
PLN 260,000 - 420,000
Staff travel benefits from day one
Multisport card
Private health care
+1
Information Security Architect - AI & Strategic Initiatives
Information Security Architect - AI & Strategic Initiatives

Ryanair Group Holdings • Wrocław

On-site
PLN 394,000 - 657,000
Staff travel benefits from day one
Multisport card
Training and certifications
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair - Europe's Favourite Airline • Wrocław

Hybrid
PLN 180,000 - 240,000
Staff travel benefits from day one
Multisport card
Private health care
+1
Information Security - Senior Threat Detection & Response Engineer
Information Security - Senior Threat Detection & Response Engineer

Ryanair Group Holdings • Wrocław

On-site
PLN 260,000 - 420,000
Staff travel benefits
Multisport card
Training and certifications
+1
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair Group Holdings • Wrocław

On-site
PLN 180,000 - 300,000
Staff travel benefits
Multisport card
Training & certifications
+2
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair Group Holdings • Wrocław

On-site
PLN 200,000 - 320,000
Staff travel benefits
Multisport card
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair - Europe's Favourite Airline • Wrocław

Hybrid
PLN 180,000 - 300,000
Staff travel benefits from day one
Multisport card
Private health care
+1
Information Security – Senior Threat Detection & Response Engineer
Information Security – Senior Threat Detection & Response Engineer

Ryanair Ltd. • Wrocław

Hybrid
PLN 180,000 - 280,000
Hybrid model
Staff travel benefits
Multisport card
+2
Information Security Engineer – Senior Penetration Tester
Information Security Engineer – Senior Penetration Tester

Ryanair Ltd. • Wrocław

Hybrid
PLN 120,000 - 180,000
Staff travel benefits
Multisport card
Training & certifications
+1
Information Security Analyst SOC Tier 1
Information Security Analyst SOC Tier 1

Ryanair - Europe's Favourite Airline • Wrocław

On-site
PLN 100,000 - 150,000
Staff travel benefits from day one
Multisport card
Private health care
+1