TC-CS-Cyber Architecture- OT and Engineering-Cloud Security-Manager
About this role
The Opportunity
Lead the design and delivery of layered defense architecture for enterprise AI/GenAI systems. This role focuses on securing AI across data, model, and application layers while driving end-to-end AI security programs.
Your Key Responsibilities
- Design layered defense architecture for AI systems across data, model and application/runtime layers
- Lead end-to-end AI security programs including assessments, implementation and governance
- Define and implement AI guardrails, access control and governance frameworks
- Drive AI threat modelling and adversarial testing strategies across lifecycle
- Oversee AI red teaming programs and continuous testing of AI systems
- Integrate AI security with SOC, SIEM, cloud security and identity platforms
- Drive secure MLOps / MLSecOps adoption within enterprise environments
- Engage with stakeholders to assess AI risk exposure and recommend mitigation strategies
- Provide architectural guidance for securing APIs, model endpoints and AI pipelines
Skills and attributes for success
- Strong architecture mindset with experience in designing defense-in-depth solutions
- Deep understanding of AI/ML systems, LLMs and enterprise AI architectures
- Strong knowledge of cloud security, Zero Trust and identity security
- Experience in threat modelling, red teaming and adversarial security
- Understanding of AI attack surfaces and exploit patterns
- Ability to integrate security into DevSecOps and MLOps pipelines
- Stakeholder management and client engagement experience
To qualify for the role
- 6–10 years of experience in cybersecurity, cloud security or application security
- Experience in solutioning and delivering security architecture programs
- Hands-on exposure to AI/GenAI systems and security controls
- Experience working with enterprise cloud platforms (Azure/AWS)
Ideally, you’ll also have
- Experience with AI security platforms (Wiz AI-SPM, CrowdStrike AI security or similar)
- Exposure to CSPM, SIEM/XDR and cloud-native security tools
- Experience in defining AI governance models and risk frameworks
- Certifications in cloud, security or architecture domains
What we look for
A strong AI Security Architect who can design, lead and deliver enterprise AI security initiatives, with the ability to translate technical controls into business-aligned risk mitigation strategies.
What we offer
Opportunity to lead cutting-edge AI security transformations, work with global clients, and build capabilities in next-generation AI defense, governance and security architecture.
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
- Start applying with LinkedIn
- Apply Now Start
-
Please wait...
- Connect with us
- Our locations
- My EY
- Site map
- Legal and privacy
- Labor condition applications
- Cookie Consent Manager
-
Opens in a new tab.
-
Opens in a new tab.
-
Opens in a new tab.
-
Opens in a new tab.
-
Opens in a new tab.
EY refers to the global organization, and may refer to one or more, of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients.
×Cookie Consent Manager
When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. Because we respect your right to privacy, you can choose not to allow some types of cookies. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer.
Required Cookies
These cookies are required to use this website and can't be turned off.
Required Cookies Show More Details Required Cookies Provider Description Enabled SAP as service provider We use the following session cookies, which are all required to enable the website to function:- "route" is used for session stickiness
- "careerSiteCompanyId" is used to send the request to the correct data center
- "JSESSIONID" is placed on the visitor's device during the session so the server can identify the visitor
- "Load balancer cookie" (actual cookie name may vary) prevents a visitor from bouncing from one instance to another