Cloud Security Architect
Brak informacji o wynagrodzeniu
SeniorFull-time·B2B
#392328·Dodano 6 dni temu·2
Źródło: emagineTech Stack / Keywords
CloudSecurityAIAzureDatabricksArchitectureDevOpsNetwork
Firma i stanowisko
This is a project in the Healthcare/Pharmacy industry, involving designing secure Azure-based architectures for AI applications using enterprise data platforms such as Databricks. The role supports compliant engineering foundations and DevOps modernization.
Wymagania
- Strong hands-on experience with Microsoft Azure cloud architecture.
- Expertise in cloud security including identity, networking, encryption, secrets management, logging, monitoring, and secure access.
- Experience designing secure infrastructure for AI applications, AI agents, APIs, and internal developer platforms.
- Experience with sandboxed code execution, Python runtime environments, containerized workloads, or isolated compute patterns.
- Knowledge of network segregation, private endpoints, firewalls, virtual networks, controlled egress, and runtime isolation.
- Strong experience with Terraform for infrastructure provisioning.
- Experience with GitHub Enterprise, GitHub Actions, repository governance, branch protection, pull requests, and secure CI/CD.
- Experience with Azure DevOps and migration to GitHub.
- Experience with secrets management, key vaults, managed identities, service principals, RBAC, and Microsoft Entra ID.
- Understanding of secure software delivery, release controls, traceability, and audit-ready engineering.
- Ability to work hands-on with engineers while setting architecture direction.
- Bachelor’s degree in Computer Science, Software Engineering, IT, Cybersecurity, Engineering, Mathematics, or equivalent practical experience.
Nice to have:
- Experience with Azure AI services, Azure OpenAI, agent frameworks, or secure GenAI application patterns.
- Experience with Databricks as a data source.
- Experience with containers, Kubernetes, Azure Container Apps, Azure Functions, or similar platforms.
- Experience with GitHub Advanced Security features.
- Familiarity with life sciences, pharmaceuticals, healthcare, or regulated industries.
- Understanding of GxP, CSV, CSA, SDLC controls, or validation documentation.
- Preferred Master’s degree and certifications such as Microsoft Certified: Azure Solutions Architect Expert, Azure Security Engineer Associate, DevOps Engineer Expert, GitHub Advanced Security, and HashiCorp Terraform.
Obowiązki
- Design secure Azure cloud architectures for AI and data-driven applications.
- Define architecture patterns for AI applications consuming data from Databricks and other platforms.
- Establish secure patterns for AI agents, sandboxed code execution, runtime isolation, network segregation, and controlled data/service access.
- Design and implement standards for secrets management, identity, access control, encryption, logging, and monitoring.
- Use Terraform to define and enable repeatable cloud infrastructure patterns.
- Drive migration from Azure DevOps to GitHub Enterprise.
- Establish GitHub-based CI/CD patterns including repository standards, branching, code reviews, automated testing, deployment gates, and release evidence.
- Define technical standards for secure software delivery, traceability, and audit-ready engineering practices.
- Partner with engineering teams to implement reference architectures, reusable templates, and secure cloud patterns.
- Review solution designs, identify security risks, and guide teams toward compliant implementations.
- Collaborate with cloud, security, data, AI, quality, compliance, and product teams.
- Mentor engineers and improve engineering practices in cloud, security, DevOps, and AI infrastructure.
Inne informacje
Contract type: B2B, 12 months + prolongations. Remote work up to 100%, location remote/Warsaw. Project language: English. Some occasional business trips. Recruitment process includes 2 interviews.
emagine
205 aktywnych ofert