A premier global manufacturing company is seeking a Lead Security Architect to define and drive the security strategy for our Azure cloud, data, analytics, and AI platforms. This is a highly visible leadership role that bridges Cybersecurity, Cloud Engineering, and Data & AI, ensuring security is built into platforms from day one while enabling innovation at scale.
You will establish enterprise security architecture, standards, and roadmaps, partnering closely with engineering, infrastructure, security, and data teams to deliver secure, production-ready solutions.
Key Responsibilities:
- Lead security architecture and strategy across Azure, Data, Analytics, and AI platforms.
- Architect security across Microsoft Azure environments, including identity, networking, platform controls, data protection, monitoring, and incident response.
- Apply technologies and capabilities such as Microsoft Entra ID, Privileged Identity Management (PIM), Azure Policy, Azure Key Vault, Defender for Cloud, Microsoft Sentinel, Microsoft Purview, VNets, private endpoints, and other private-network architectures.
- Design and implement Zero Trust, identity, access management, data protection, and cloud security controls.
- Architect security for modern cloud data and analytics environments, including Microsoft Fabric, OneLake, Synapse, Databricks, data lakes, lakehouses, data warehouses, streaming platforms, Power BI, or comparable technologies.
- Define security frameworks for AI/ML, Generative AI, RAG, and AI-agent solutions.
- Drive DevSecOps adoption through secure CI/CD, Infrastructure-as-Code (Terraform/Bicep), policy-as-code, and automation.
- Help define security controls and architecture for enterprise AI, machine learning, Generative AI, and AI-agent solutions.
- Address areas such as AI/ML data protection, model and API security, RAG architectures, agent identity, tool permissions, observability, tracing, testing, and control mechanisms.
- Partner with Data & AI teams to enable responsible experimentation while developing clear paths for securing solutions as they transition into production.
- Establish reusable security patterns, guardrails, and reference architectures.
- Collaborate with engineering and security operations teams on monitoring, incident response, resilience, and compliance initiatives.
- Translate regulatory requirements into scalable technical controls.
Required Experience:
- 10+ years of security and/or cloud architecture experience.
- 5+ years securing Azure cloud, data, analytics, or AI environments.
- Deep expertise with Azure security technologies including Entra ID, PIM, Azure Policy, Key Vault, Defender for Cloud, Sentinel, Purview, and network segmentation.
- Strong knowledge of Zero Trust, IAM, privileged access, encryption, DLP, monitoring, and workload identities.
- Experience designing security for modern data platforms, analytics environments, or AI/ML ecosystems.
- Hands-on experience with DevSecOps, CI/CD, Infrastructure-as-Code, and security automation.Proven ability to influence stakeholders and lead enterprise security strategy.
Preferred Background:
- Experience in regulated industries such as Manufacturing, Aerospace/Defense, Healthcare, Financial Services, or Critical Infrastructure.
- Exposure to CMMC, NIST 800-171, DFARS, ITAR, or similar compliance frameworks.
- Knowledge of Operational Technology (OT), AI Security, and Data-Centric Security Architectures.
Preferred Certifications:
CISSP, CISM, CCSP, Azure Security Engineer, Azure Solutions Architect, or equivalent cloud/security certifications.
Ideal Candidate:
We're looking for a hands-on security leader who has personally designed, built, secured, and operated cloud and data platforms in production, while establishing enterprise-wide security standards and roadmaps that accelerate innovation without compromising security.