Application Security Architect - AI Harness
Core
Architect a CI/CD-integrated AI secure-code evaluation harness to embed security controls into SDLC pipelines for source code repositories.
Role type
Senior IC Application Security Architect (AI Security)
Builds
AI-assisted secure code review workflows, evaluation harnesses, benchmark suites, and validation pipelines for DevSecOps toolchains.
Domain
Financial services, Application Security, AI/LLM Security, DevSecOps
Deliverable
production ML models | product features
Required skills
Secure SDLC practices, SAST/SCA/DAST, secrets scanning, API security, container security, IaC scanning, LLM integration, prompt engineering, RAG, model evaluation, AI guardrails, threat modeling, vulnerability analysis, OWASP/CWE/NIST SSDF knowledge, developer workflow integration
Preferred skills
Enterprise AI platform experience, secure hosting, AI governance controls, custom static analysis rules, vulnerability detection pipelines, risk reduction metrics
Technologies
Atlassian, CI/CD, Cloud, DevSecOps, GitHub, Jenkins, Kubernetes, OWASP, RAG, Security
Responsibilities
Design AI-assisted secure code review methods complementing traditional security testing; maintain benchmarks, golden test cases, and regression tests for AI-generated findings; govern approved vendor and frontier AI models; define safeguards for proprietary production code; route validated findings into developer workflows; define metrics aligned to financial-services authorities and cybersecurity frameworks
Seniority
Senior, hands-on IC