Databricks Security and Access Architect

VBeyond Corporation

United States

On-site

USD 140,000 - 210,000

Full time

23 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

VBeyond Corporation is seeking a Databricks Security and Access Architect to design and govern security, access, and data product operations on Databricks lakehouse. You will define Unity Catalog patterns, RBAC/ABAC controls, and entitlement models while aligning with enterprise IAM and governance workflows.

The role emphasizes collaboration with infrastructure, governance, and product teams, delivering design artifacts, risk assessments, and sign-off materials to enable secure Databricks

Qualifications

  • Experience designing security/access patterns for Databricks lakehouse or cloud data platforms.
  • Knowledge of Unity Catalog privileges, workspace bindings, and catalog controls.
  • Ability to document security architectures, entitlement models, and sign-off artifacts.
  • Experience with RBAC/ABAC and data access control patterns.
  • Strong written and verbal communication for stakeholders and executives.
  • Familiarity with enterprise IAM, ICR workflows, service principals, and least-privilege practices.

Responsibilities

  • Define Databricks security and access architecture aligned to the lakehouse and data product operating model.
  • Design Unity Catalog access patterns for catalogs, schemas, tables, and views using RBAC/ABAC.
  • Develop access controls: row filters, column masking, dynamic views, and governed tags.
  • Define entitlement models for producers, consumers, stewards, and automated jobs.
  • Document access workflows and integration with IAM/ICR processes.
  • Partner with infrastructure, governance, and data product teams to align controls with standards.
  • Define auditability patterns for logging, monitoring, and evidence for reviews.
  • Support design reviews and stakeholder walkthroughs with IAM leads and governance teams.
  • Prepare design artifacts and sign-off materials for the design phase.
  • Provide guidance for secure Databricks adoption without production config.

Skills

Unity Catalog
RBAC/ABAC
IAM integration
Auditability
Stakeholder comms
Security architecture

Education

Bachelor or Master in CS/IS

Job description

We are looking for a qualified Databricks Security and Access Architect to support a Data-as-a-Service design and Data Product & Governance Operating Model engagement. The role will focus on Databricks-level security and access architecture, including Unity Catalog access patterns, workspace and catalog controls, data/table entitlements, row- and column-level security, service principal patterns, auditability, and integration with enterprise IAM, governance, metadata, and access request workflows.

This role will operate primarily at the Databricks lakehouse and Unity Catalog layer and will coordinate with the Infrastructure Solution Architect for AWS/network/IAM dependencies.

Responsibilities
  • Define Databricks security and access architecture aligned to the target-state lakehouse, marketplace, semantic layer, and data product operating model.
  • Design Unity Catalog catalog, schema, table, view, volume, function, and model access patterns using role-based and attribute-based access principles.
  • Develop access control patterns for sensitive data, including row filters, column masks, dynamic views, governed tags, and policy-driven access enforcement.
  • Define entitlement models for producers, consumers, stewards, platform engineers, business owners, service principals, and automated jobs.
  • Document access request, approval, provisioning, revocation, recertification, and exception handling workflows for Databricks integration with enterprise IAM/ICR processes.
  • Partner with infrastructure, security, governance, metadata, and data product teams to align Databricks access controls with enterprise security standards and operating procedures.
  • Design audit, logging, monitoring, and evidence patterns to support security reviews, compliance needs, and operational oversight.
  • Support design reviews and stakeholder walkthroughs with security/IAM leads, architecture teams, governance leads, and product stakeholders.
  • Prepare access model design artifacts, RACI inputs, decision records, control mappings, and sign-off materials for the design phase.
  • Provide guidance for secure Databricks adoption without performing production environment configuration or implementation build activities in this phase.
Qualifications — 8–12 Years
  • Experience designing security, access, governance, or identity patterns for Databricks, lakehouse, cloud data platforms, or enterprise analytics platforms.
  • Strong understanding of Databricks Unity Catalog, catalogs, schemas, tables, views, external locations, storage credentials, privileges, ownership, grants, and workspace-catalog bindings.
  • Hands‑on or design‑level experience with RBAC, ABAC, row‑level security, column masking, dynamic views, data classification, access controls, and sensitive data handling.
  • Experience integrating platform access models with enterprise IAM, ICR/access request workflows, service principals, group management, and least‑privilege access practices.
  • Ability to document security architecture, access control matrices, entitlement models, operating procedures, design decisions, and stakeholder sign‑off artifacts.
  • Experience collaborating with cloud infrastructure, cybersecurity, data governance, metadata, data engineering, compliance, and business teams in complex enterprise environments.
  • Strong understanding of auditability, lineage, logging, monitoring, compliance evidence, and access recertification expectations in regulated environments.
  • Excellent written and verbal communication skills, with the ability to explain security and access design decisions to both technical and executive stakeholders.
  • Bachelor’s or master’s degree in computer science, information security, data engineering, cloud architecture, information systems, or a related field.
Preferred Qualifications / Skills
  • Experience supporting Databricks security architecture in financial services, mortgage, banking, capital markets, risk, or other highly regulated environments.
  • Familiarity with Collibra, metadata management, data lineage, data quality, data product governance, and marketplace-based data consumption models.
  • Experience designing access patterns across AWS, Databricks, Unity Catalog, Delta Sharing, semantic layers, and cross‑account or cross‑workspace data sharing scenarios.
  • Knowledge of cloud security principles, encryption, network isolation, secrets management, audit logging, policy‑as‑code, and secure DevOps practices.
  • Ability to translate enterprise security standards into practical Databricks access models, control mappings, and implementation‑ready design recommendations.
  • Databricks, AWS, cloud security, data governance, or identity and access management certifications are preferred.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Data Protection & Security Architect
Principal Data Protection & Security Architect

Arkhya Tech. Inc. • New Jersey

On-site
USD 180,000 - 240,000
Databricks Architect
Databricks Architect

Shrive Technologies • Town of Texas (WI)

On-site
USD 150,000 - 200,000
Databricks Data Architect / Lead Databricks Architect
Databricks Data Architect / Lead Databricks Architect

Quebec Solution Inc • United States

On-site
USD 140,000 - 220,000
Databricks SME
Databricks SME

Scicominfra • Atlanta (GA)

On-site
USD 180,000 - 240,000
Data Architect
Data Architect

Papigen • Washington

On-site
USD 135,000 - 210,000
Solutions Architect 4
Solutions Architect 4

Spectra Tech, Inc. • Los Alamos (NM)

On-site
USD 130,000 - 160,000
Principal Architect
Principal Architect

Xcede • United States

On-site
USD 150,000 - 210,000
Databricks Data Platform Architect
Databricks Data Platform Architect

UsefulBI Corporation • Raleigh (NC)

On-site
USD 130,000 - 180,000
Sr. Staff Security Assurance Engineer
Sr. Staff Security Assurance Engineer

Databricks • Mountain View (CA)

On-site
USD 150,000 - 180,000
Comprehensive benefits and perks
Databricks Architect - Denver, CO (2days Onsite)
Databricks Architect - Denver, CO (2days Onsite)

Geopaq Logic • Denver (CO)

On-site
USD 110,000 - 150,000