Security Architect - AI (f/m/x)

CompanyCarl Zeiss CMP
LocationMünchen, Oberkochen
CategorySecurity
Seniority-
Workplace-
Posted2026-08-23
Viaworkday

Description

Your Role

You will be the go‑to expert for   AI security architecture , shaping how we securely design, build, and operate AI solutions across ZEISS.

Your responsibilities will include

-
Design secure reference architectures and patterns for   AI platforms and AI applications

-
Consult product, data science, and platform teams on secure AI design and implementation

-
Secure AI systems against   data poisoning, model theft, adversarial attacks, and other AI‑specific threats

-
Define and implement measures for   model integrity, data privacy, bias mitigation, and robustness

-
Perform   threat modeling   and risk reviews tailored to AI workflows and pipelines

-
Implement and manage data security measures

-
Ensure strong authentication and authorization (e.g.   OAUTH2, RBAC, PIM) across AI services and platforms

-
Design and implement secure architectures for cloud platforms (i.e. Azure, AWS, GCP)

-
Guide secure use of   containers, orchestration, and   Infrastructure as Code   (e.g.   Terraform, PowerShell) for AI workloads

-
Integrate requirements from   ISO/IEC 27001, SOX, HIPAA, PCI DSS   into AI security concepts

-
Ensure alignment with   ethical AI principles   and evolving AI regulation, including the   EU AI Act

-
Define and review security concepts for AI platforms; conduct   security reviews   and   architecture assessments

-
Support   incident response   related to AI systems, advising on detection, containment, and remediation

-
Technical leadership and collaboration with international security teams, fostering collaboration across diverse, cross-functional groups

-
Act as a key link between   central security, regulatory functions, and the   Digital Technology Accelerator

-
Contribute actively to the ZEISS‑wide security community, sharing best practices in AI security

Your Profile

-
A Master's degree in Computer Science, Software Engineering, Electrical Engineering, Mechanical Engineering, Mathematics, or Physics

-
Minimum of 7+ years of professional experience in roles such as data modeling, algorithm development, data science, or similar fields

-
Proven track record in designing and implementing secure architectures for AI platforms and AI-driven use cases

-
Cloud Security: Certifications or training in cloud platforms (AWS, GCP, Azure preferred) and expertise in cross-provider cloud technologies (e.g., Microsoft Azure, Google GCP, Amazon AWS, Alibaba)

-
Strong understanding of software architectures, design patterns, and abstract thinking, with the ability to map capabilities to technologies effectively

-
Knowledge of HSM, certificate infrastructures, key vaults, TLS protocols, and authentication methods like OAUTH2

-
Expertise in securing AI platforms, addressing risks like data poisoning and model theft, and ensuring compliance with ethical AI principles, regulatory standards, and the EU AI Act

-
Experience with regulatory frameworks (ISO/IEC 27001, SOX, HIPAA, PCI DSS, EU AI Act) and integrating compliance requirements into AI security strategies

-
Proficiency in Python, managing code repositories, containerizing artifacts, and implementing "Infrastructure as Code" using tools like Terraform and PowerShell

-
Proven ability to give technical guidance to international teams, fostering collaboration and driving security initiatives across diverse, cross-functional groups

Preferred Certifications

-
AI Security Certifications (e.g., AI-specific cybersecurity certifications)

-
Advanced Cloud Security Certifications (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)

Your ZEISS Recruiting Team:
Markus Repp