Ai Security Architect

Expleo

Lisboa

Híbrido

EUR 27 000 - 30 000

Tempo integral

Há 5 dias
Torna-te num dos primeiros candidatos
Gerador de candidaturas

Não envies um currículo genérico — gera um currículo e uma carta de apresentação adaptados a esta função específica.

Ultrapassa os filtros ATS

Resumo da oferta

Expleo invites an experienced AI Security Architect to join our hybrid Lisbon team, securing AI/GenAI platforms from design through production. You will work with security, engineering, product, cloud and data teams to define security requirements and verify auditable controls.

The ideal candidate has 6+ years in cybersecurity, strong IAM and API security knowledge, threat modelling experience, and familiarity with AWS/Azure and Databricks. Fluent Portuguese and English (B2+/C1) are required.

Qualificações

  • 6+ years of professional experience in cybersecurity.
  • Background in application security, product security, cloud security, or security architecture.
  • Understanding of GenAI and LLM-based solutions from a security and risk perspective.
  • Experience conducting security reviews, architecture reviews, and threat-modelling exercises.
  • Experience defining, implementing, or validating technical security controls.
  • Strong knowledge of IAM, API security, secrets management, logging, monitoring, and control validation.
  • Knowledge of data protection, privacy, data minimisation, and secure handling of sensitive or regulated information.
  • Ability to challenge technical implementations and verify whether security controls have been applied effectively.
  • Fluent Portuguese and English at B2+/C1 level.

Responsabilidades

  • Support and review AI and GenAI use cases from the design phase through production.
  • Define security requirements for AI platforms, APIs, agents, tool usage, and third‑party integrations.
  • Conduct architecture reviews, threat modelling, and security assessments of AI solutions.
  • Validate integrations and deployments against security, privacy, logging, monitoring, and auditability requirements.
  • Identify, assess, and mitigate AI-specific risks including prompt injection, data leakage and unsafe tool usage.
  • Define data-usage guardrails for personal, confidential, sensitive, or regulated information.
  • Ensure the implementation of secure logging, monitoring, audit trails, and evidence of control effectiveness.
  • Contribute to AI security governance, standards, policies, and secure-by-design patterns.
  • Collaborate with technical teams to ensure that security controls are correctly and effectively applied.

Conhecimentos

Cybersecurity
Security architecture
Threat modelling
Security reviews
IAM
API security
Data protection
Auditing & logging

Ferramentas

AWS
Azure
Databricks

Descrição da oferta de emprego

AI SECURITY ARCHITECT (HYBRID LISBON) Portuguese company hires for hybrid position

Location: Lisbon, Portugal

Only candidates already based in Portugal will be considered

Work Model: Hybrid

Language Requirements: Fluent Portuguese and English B2+/C1 - mandatory

Seniority: Senior (6+ years)

Sector: Cybersecurity

Rate Between €2400 - 2700 RV

About The Opportunity

You will support AI and GenAI initiatives throughout their lifecycle, from initial design to production deployment. Working closely with security, engineering, product, cloud, and data teams, you will assess architectures, identify risks, define security requirements, and verify that effective and auditable controls have been implemented.

The role requires a pragmatic security mindset, the ability to challenge technical decisions, and the capacity to translate emerging AI risks into clear, enforceable requirements.

Key Responsibilities
  • Support and review AI and GenAI use cases from the design phase through production.
  • Define security requirements for AI platforms, APIs, agents, tool usage, and third‑party integrations.
  • Conduct architecture reviews, threat modelling, and security assessments of AI solutions.
  • Validate integrations and deployments against security, privacy, logging, monitoring, and auditability requirements.
  • Identify, assess, and mitigate AI‑specific risks, including:
    • Prompt injection and jailbreak attacks
    • Sensitive information disclosure and data leakage
    • Unsafe tool usage and excessive agent autonomy
    • Abusive or unbounded resource consumption
    • Insecure integrations and poisoned inputs
  • Define data‑usage guardrails for personal, confidential, sensitive, or regulated information.
  • Ensure the implementation of secure logging, monitoring, audit trails, and evidence of control effectiveness.
  • Contribute to AI security governance, standards, policies, and secure‑by‑design patterns.
  • Collaborate with technical teams to ensure that security controls are correctly and effectively applied.
Mandatory Requirements
  • 6+ years of professional experience in cybersecurity.
  • Background in application security, product security, cloud security, or security architecture.
  • Understanding of GenAI and LLM‑based solutions from a security and risk perspective.
  • Practical experience conducting security reviews, architecture reviews, and threat‑modelling exercises.
  • Experience defining, implementing, or validating technical security controls.
  • Strong knowledge of IAM, API security, secrets management, logging, monitoring, and control validation.
  • Knowledge of data protection, privacy, data minimisation, and secure handling of sensitive or regulated information.
  • Ability to challenge technical implementations and verify whether security controls have been applied effectively.
  • Fluent Portuguese and English at B2+/C1 level.
Preferred Experience
  • Familiarity with AWS and/or Microsoft Azure in the context of AI workload security.
  • Exposure to AWS Bedrock, Azure OpenAI, Azure AI Foundry, or similar GenAI platforms.
  • Understanding of:
    • Guardrails and content controls
    • IAM and least‑privilege principles
    • Logging, observability, and auditability
    • Sensitive‑data handling and data protection
  • Familiarity with Databricks from a security‑review perspective, including:
    • Access controls and data permissions
    • Workspaces, jobs, pipelines, and notebooks
    • Secrets management and networking
    • Data governance
  • Knowledge of the OWASP Top 10 for LLM Applications and Agentic AI.
  • Familiarity with SAIF - Secure AI Framework.
  • Understanding of Model Context Protocol (MCP) and agent‑to‑tool security.
  • Knowledge of Agent‑to‑Agent (A2A) architectures and agentic trust boundaries.
  • Awareness of emerging AI risk taxonomies, such as MCP-38.
  • Exposure to DevSecOps and/or MLOps environments.

The ideal candidate is an experienced cybersecurity professional who understands how traditional security principles must evolve when applied to AI, GenAI, and agentic solutions. You can identify emerging threats, translate risks into actionable technical requirements, and verify that security controls are practical, effective, and auditable.

You are confident working across security, product, engineering, cloud, and data teams. You combine strong technical judgment with clear communication, risk prioritisation, and a pragmatic approach to secure AI adoption.

Questions for Candidates
  • Do you have at least six years of professional experience in cybersecurity?
  • What experience do you have in application security, product security, cloud security, or security architecture?
  • Have you conducted architecture reviews, security assessments, or threat‑modelling exercises for AI or GenAI solutions?
  • Have you assessed risks such as prompt injection, jailbreaks, data leakage, unsafe tool usage, or excessive agent autonomy?
  • What experience do you have with IAM, API security, secrets management, logging, monitoring, and auditability?
  • Have you worked with AWS Bedrock, Azure OpenAI, Azure AI Foundry, or other GenAI platforms?
  • Have you reviewed Databricks environments from a security perspective?
  • Are you familiar with OWASP guidance for LLM applications, SAIF, MCP, A2A architectures, or agentic trust boundaries?
  • Have you worked in DevSecOps or MLOps collaboration environments?
  • Can you communicate professionally in English at B2+/C1 level and fluently in Portuguese?
  • Where are you currently based?
  • What is your availability to start?
  • What are your salary or daily‑rate expectations?
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

AI SECURITY ARCHITECT (HYBRID)
AI SECURITY ARCHITECT (HYBRID)

iTRTech Group • Lisboa

Híbrido
Security AI Engineer (Azure/GenAI) - Hybrid Lisbon or Porto (3 days/week office)
Security AI Engineer (Azure/GenAI) - Hybrid Lisbon or Porto (3 days/week office)

HumanIT Digital Consulting • Lisboa

Híbrido
EUR 60 000 - 90 000
AI Security Engineer
AI Security Engineer

login.works • Alvalade

Híbrido
EUR 90 000 - 150 000
Hybrid role
Competitive compensation
Backend Staff Engineer
Backend Staff Engineer

login.works • Lisboa

Híbrido
EUR 100 000 - 150 000
Hybrid role
AI Security Architect
AI Security Architect

ITSector • Lisboa

Híbrido
EUR 55 000 - 85 000
Health Insurance
Hybrid work model
Training and certification
+1
AI Security Engineer (Lisboa)
AI Security Engineer (Lisboa)

KCS iT • Lisboa

Presencial
EUR 70 000 - 100 000
Ai Security & Genai Specialist — Secure, Scalable Ai
Ai Security & Genai Specialist — Secure, Scalable Ai

Brix It • Lisboa

Híbrido
EUR 70 000 - 100 000
AI Security Architect — Hybrid in Lisbon + Growth
AI Security Architect — Hybrid in Lisbon + Growth

We Are META • Lisboa

Híbrido
EUR 70 000 - 110 000
Health insurance
Welcome kit
Career progression
+1
GENAI / AGENTIC AI ENGINEER – MID (HYBRID)
GENAI / AGENTIC AI ENGINEER – MID (HYBRID)

iTRTech Group • Lisboa

Híbrido
EUR 13 000 - 17 000
Hybrid Security AI Engineer - Azure/GenAI (Lisbon/Porto)
Hybrid Security AI Engineer - Azure/GenAI (Lisbon/Porto)

HumanIT Digital Consulting • Lisboa

Híbrido
EUR 60 000 - 90 000