AI SECURITY ARCHITECT (HYBRID)

iTRTech Group

Lisboa

Híbrido

EUR 26 784 - 30 132

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

iTRTech Group in Lisbon is seeking an experienced AI Security Architect for a hybrid role. You will lead security design for AI and GenAI initiatives, collaborating with security, engineering, product, cloud, and data teams to define requirements and enforce auditable controls.

The position demands a pragmatic security mindset, the ability to challenge technical decisions, and fluency in Portuguese and English (B2+/C1).

Qualificações

  • 6+ years of professional experience in cybersecurity.
  • Background in application security, product security, cloud security, or security architecture.
  • Understanding of GenAI and LLM-based solutions from a security and risk perspective.
  • Experience conducting security reviews, architecture reviews, and threat-modelling exercises.
  • Experience defining, implementing, or validating technical security controls.
  • Strong knowledge of IAM, API security, secrets management, logging, monitoring, and control validation.
  • Knowledge of data protection, privacy, data minimisation, and secure handling of sensitive or regulated information.
  • Ability to challenge technical implementations and verify whether security controls have been applied effectively.
  • Fluent Portuguese and English at B2+/C1 level.

Responsabilidades

  • Support and review AI and GenAI use cases from the design phase through production.
  • Define security requirements for AI platforms, APIs, agents, tool usage, and third-party integrations.
  • Conduct architecture reviews, threat modelling, and security assessments of AI solutions.
  • Validate integrations and deployments against security, privacy, logging, monitoring, and auditability requirements.
  • Identify, assess, and mitigate AI-specific risks, including prompt injection and data leakage.
  • Define data-usage guardrails for personal, confidential, sensitive, or regulated information.
  • Ensure the implementation of secure logging, monitoring, audit trails, and evidence of control effectiveness.
  • Contribute to AI security governance, standards, policies, and secure-by-design patterns.
  • Collaborate with technical teams to ensure that security controls are correctly and effectively applied.

Conhecimentos

IAM
API security
Secrets management
Logging & monitoring
Threat modelling
GenAI security
Security architecture
Data protection

Descrição da oferta de emprego

AI SECURITY ARCHITECT (HYBRID LISBON)Portuguese company hires for hybrid position

Location: Lisbon, Portugal

Only candidates already based in Portugal will be considered

Work Model: Hybrid

Language Requirements: Fluent Portuguese and English B2+/C1 - mandatory

Seniority: Senior (6+ years)

Sector: Cybersecurity

Rate Between €2400 - 2700 RV

About The Opportunity

You will support AI and GenAI initiatives throughout their lifecycle, from initial design to production deployment. Working closely with security, engineering, product, cloud, and data teams, you will assess architectures, identify risks, define security requirements, and verify that effective and auditable controls have been implemented.

The role requires a pragmatic security mindset, the ability to challenge technical decisions, and the capacity to translate emerging AI risks into clear, enforceable requirements.

Key Responsibilities
  • Support and review AI and GenAI use cases from the design phase through production.
  • Define security requirements for AI platforms, APIs, agents, tool usage, and third-party integrations.
  • Conduct architecture reviews, threat modelling, and security assessments of AI solutions.
  • Validate integrations and deployments against security, privacy, logging, monitoring, and auditability requirements.
  • Identify, assess, and mitigate AI-specific risks, including:
  • Prompt injection and jailbreak attacks
  • Sensitive information disclosure and data leakage
  • Unsafe tool usage and excessive agent autonomy
  • Abusive or unbounded resource consumption
  • Insecure integrations and poisoned inputs
  • Define data-usage guardrails for personal, confidential, sensitive, or regulated information.
  • Ensure the implementation of secure logging, monitoring, audit trails, and evidence of control effectiveness.
  • Contribute to AI security governance, standards, policies, and secure-by-design patterns.
  • Collaborate with technical teams to ensure that security controls are correctly and effectively applied.
Mandatory Requirements
  • 6+ years of professional experience in cybersecurity.
  • Background in application security, product security, cloud security, or security architecture.
  • Understanding of GenAI and LLM-based solutions from a security and risk perspective.
  • Practical experience conducting security reviews, architecture reviews, and threat-modelling exercises.
  • Experience defining, implementing, or validating technical security controls.
  • Strong knowledge of IAM, API security, secrets management, logging, monitoring, and control validation.
  • Knowledge of data protection, privacy, data minimisation, and secure handling of sensitive or regulated information.
  • Ability to challenge technical implementations and verify whether security controls have been applied effectively.
  • Fluent Portuguese and English at B2+/C1 level.
Preferred Experience
  • Familiarity with AWS and/or Microsoft Azure in the context of AI workload security.
  • Exposure to AWS Bedrock, Azure OpenAI, Azure AI Foundry, or similar GenAI platforms.
  • Understanding of:
  • Guardrails and content controls
  • IAM and least-privilege principles
  • Logging, observability, and auditability
  • Sensitive-data handling and data protection
  • Familiarity with Databricks from a security-review perspective, including:
  • Access controls and data permissions
  • Workspaces, jobs, pipelines, and notebooks
  • Secrets management and networking
  • Data governance
  • Knowledge of the OWASP Top 10 for LLM Applications and Agentic AI.
  • Familiarity with SAIF - Secure AI Framework.
  • Understanding of Model Context Protocol (MCP) and agent-to-tool security.
  • Knowledge of Agent-to-Agent (A2A) architectures and agentic trust boundaries.
  • Awareness of emerging AI risk taxonomies, such as MCP-38.
  • Exposure to DevSecOps and/or MLOps environments.

The ideal candidate is an experienced cybersecurity professional who understands how traditional security principles must evolve when applied to AI, GenAI, and agentic solutions. You can identify emerging threats, translate risks into actionable technical requirements, and verify that security controls are practical, effective, and auditable.

You are confident working across security, product, engineering, cloud, and data teams. You combine strong technical judgment with clear communication, risk prioritisation, and a pragmatic approach to secure AI adoption.

Questions for Candidates
  • Do you have at least six years of professional experience in cybersecurity?
  • What experience do you have in application security, product security, cloud security, or security architecture?
  • Have you conducted architecture reviews, security assessments, or threat-modelling exercises for AI or GenAI solutions?
  • Have you assessed risks such as prompt injection, jailbreaks, data leakage, unsafe tool usage, or excessive agent autonomy?
  • What experience do you have with IAM, API security, secrets management, logging, monitoring, and auditability?
  • Have you worked with AWS Bedrock, Azure OpenAI, Azure AI Foundry, or other GenAI platforms?
  • Have you reviewed Databricks environments from a security perspective?
  • Are you familiar with OWASP guidance for LLM applications, SAIF, MCP, A2A architectures, or agentic trust boundaries?
  • Have you worked in DevSecOps or MLOps collaboration environments?
  • Can you communicate professionally in English at B2+/C1 level and fluently in Portuguese?
  • Where are you currently based?
  • What is your availability to start?
  • What are your salary or daily-rate expectations?

#SI

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Security AI Engineer (Azure/GenAI) - Hybrid Lisbon or Porto (3 days/week office)
Security AI Engineer (Azure/GenAI) - Hybrid Lisbon or Porto (3 days/week office)

HumanIT Digital Consulting • Lisboa

Híbrido
EUR 60 000 - 90 000
Backend Staff Engineer
Backend Staff Engineer

login.works • Lisboa

Híbrido
EUR 100 000 - 150 000
Hybrid role
AI Security Architect
AI Security Architect

ITSector • Lisboa

Híbrido
EUR 55 000 - 85 000
Health Insurance
Hybrid work model
Training and certification
+1
GENAI / AGENTIC AI ENGINEER – MID (HYBRID)
GENAI / AGENTIC AI ENGINEER – MID (HYBRID)

iTRTech Group • Lisboa

Híbrido
EUR 13 000 - 17 000
Hybrid Security AI Engineer - Azure/GenAI (Lisbon/Porto)
Hybrid Security AI Engineer - Azure/GenAI (Lisbon/Porto)

HumanIT Digital Consulting • Lisboa

Híbrido
EUR 60 000 - 90 000
AI Security Engineer (Lisboa)
AI Security Engineer (Lisboa)

KCS iT • Lisboa

Presencial
EUR 70 000 - 100 000
Senior AI Security Architect – GenAI Risk & Security
Senior AI Security Architect – GenAI Risk & Security

iTRTech Group • Lisboa

Híbrido
AI Security Engineer
AI Security Engineer

Next Engineering • Lisboa

Híbrido
Food Allowance
Flex Benefits
AI Security Architect
AI Security Architect

Irium Portugal • Portugal

Híbrido
EUR 57 000 - 61 000
Professional development
Flexible compensation
Medical insurance
+1
AI Security Engineer - Assistant Vice President / Vice President
AI Security Engineer - Assistant Vice President / Vice President

iCapital • Lisboa

Híbrido
EUR 120 000 - 210 000
Equity
Healthcare & dental
PTO