AI/Model Security Architect- Hybrid, Cary, North Carolina
About the job
As an AI/Model Security Architect within Applied AI and Modeling (AAIM) division you will be a key contributor to overall Product security. Successful candidates will partner within SAS helping to solve complex technical problems anywhere in the Software Development Lifecycle (SDLC) from architecture and design to deployment and operations. Technical security breadth and depth as well as clear, concise and effective communications are key – this role requires a diverse set of skills in systems architecture, software development, and security. Success will depend on your collaborative skills working toward the SAS goal of meeting legal, compliance, and customer security requirements as part of providing SAS customers with the most trustworthy solutions globally.
As AI/Model Security Architect, you will:
- Work in active partnership with development teams to identify and build solutions to: Secure code, implement application vulnerability scanning solutions using DevSecOps methodologies, contribute to documentation for penetration tests,
- Create/disseminate developer guidance and training, and create repositories, code or templates with examples of best practices in secure architecture, design and operational patterns.
- Perform security focused design reviews on a regular or risk-based priority basis, which identify security gaps and improve the security posture of AAIM's deliverables, containerized deployment systems and LLM powered products.
- Working with Product Management to ensure security implementations are consistent business objectives and customer requirements are in alignment to SAS security standards
- Collaborate with other teams within security to identify new tools and processes to integrate into the Secure SDLC. Recommend and promote software security policies, standards, and procedures that can improve the global security posture of the company.
- Ensure all applicable security policies and processes are followed to support the organization's secure software development goals.
Required qualifications
- Bachelor's degree with major study in technical disciplines such as Computer Science or Engineering, or related field.
- 5+ years of secure software development, secure system architecture and design, or related experience.
- Demonstrated knowledge in securing enterprise-grade containerized compute or container clusters, and REST APIs, as detailed in security publications like the OWASP Top 10 and OWASP API Top 10.
- An equivalent combination of related education, training and experience and relevant cyber security degrees or alternate cyber security experience like certifications
Additional competencies, knowledge and skills
- 2+ years of experience in developing or adopting software security patterns and best practices.
- Demonstrated knowledge and willingness to learn Kubernetes, containers and micro-services, SaaS (public and private cloud deployments), ML, GenAI, and MCP/A2A.
- Experience with programming languages such as: Java, Python, JavaScript, PHP, Golang, etc. Ability to review code or logic and be confident in giving prescriptive guidance to developers in security patterns and best practices.
- Preferred active security certification: CISSP, CSSLP, CEH, CCSP, OSCP, etc. Knowledge of security best practices for regulated industries such as healthcare or financial services, and global privacy frameworks.
World-class benefits
Highlights include...
- Comprehensive medical, prescription, dental and vision plans.
- Medical plan options include:
- PPO with low annual deductible and copays.
- HDHP combined with a health savings account with a contribution from SAS (no access to on-site health care center).
- Onsite Health Care Center (HQ) that’s free to employees and family members enrolled in the PPO plan. There's a pharmacy too! Not local to HQ? The pharmacy will ship prescriptions for no additional charge!
- An industry-leading 401k plan.
- Tuition Assistance Program and programs and resources to support your development
- Generous time away including vacation time, a variety of paid holidays, and our much-loved U.S. Winter Wellness Break between December 25 and January 1.
- Volunteer Time Off, parental leave and unlimited paid sick days.
- Generous childcare benefits for all full-time employees.
Let's stay in touch! Join our Talent Community to stay up to date on company news, job updates and more.
#SAS