Hays
AI Security Architect

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
AI Security Architect
About the role
As a AI Security Architect, you will lead the design and implementation of robust security architectures, standards, and governance frameworks for Artificial Intelligence (AI), Generative AI (GenAI), AI-powered applications, agents, copilots, and enterprise environments.
This role requires a deep understanding of AI security, AI governance, cloud-native security, application security, data security, and enterprise security technologies. You will work closely with product teams, AI engineering teams, developers, security engineers, DevSecOps, legal, risk, and operations teams to ensure security is embedded throughout the application lifecycle, from solution design and vendor selection to deployment, operation, and ongoing monitoring. The role will define secure AI architecture patterns, provide security oversight for AI initiatives, and enable responsible AI adoption aligned with organisational policies and industry frameworks.
Reporting to the Enterprise Security Architect and collaborating with stakeholders, such as the Head of Cyber Security, BISOs and Solutions Architects, you will assist in promoting a harmonised security architecture via standards, patterns, and tooling.
Tell me more, tell me more…
Our client is currently looking for a new recruit in joining their team, please read on!
You can also ask our friendly recruitment team any questions you may have about the role, between 8:30am-5:30pm Monday to Friday.
Shifts: Monday – Friday (37.5 hours per week)
The must haves:
- Extensive hands-on experience with Threat Modelling, SAST, DAST, and web application security, including OWASP Top 10, CWE Top 25, and SANS 25.
- Hands-on experience with GCP security architecture (IAM, VPC, Cloud KMS, Cloud Armor etc.) and other cloud-native security tools.
- Strong understanding of data security practices, including encryption, access control, data security controls and AI security standards.
- Up to date on cybersecurity threats, risk assessment, and frameworks/regulations (GDPR, PCI, NIST, ISO27001).
- Proven experience in requirements identification, solution testing, and vendor product selection.
- Demonstrated leadership and relationship management with internal and external partners, along with excellent communication and presentation skills to build consensus.
- Strongly self-motivated and able to present a credible and effective case for risk management and security requirements with tact and tenacity to senior executives.
- Strategic orientation with ability to act tactically as required.
- Strong negotiator/facilitator and consensus builder with results-oriented commitment.
- Ability to interact at all levels of the organisation.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Key responsibilities
- Partner with teams for development and implement of application/cloud security standards, patterns and guidelines that support ongoing deliveries and balance risk and business benefit.
- Continuously review the design and effectiveness of application/cloud security controls and develop a program of continuous security improvement.
- Define and maintain secure AI architecture patterns and standards for AI-powered applications, GenAI solutions, AI agents, and AI platforms, ensuring secure-by-design implementation across the organisation.
- Review and approve AI solution architectures to ensure appropriate security controls, data protection measures, identity controls, network security, and compliance requirements are incorporated before deployment.
- Perform AI-focused threat modelling and security assessments, identifying risks such as sensitive data exposure, prompt injection, indirect prompt attacks, model misuse, insecure plugins, excessive permissions, and supply chain vulnerabilities.
- Provide strategic security leadership for AI initiatives, partnering with architecture, engineering, risk, legal, data governance, and compliance teams to enable secure AI adoption while aligning with industry frameworks and standards including ISO/IEC 42001 (AI Management Systems), NIST AI Risk Management Framework (AI RMF), ISO 27001, CIS Controls, and organisational security policies.
- Identify gaps in existing AI architecture design and recommend changes or enhancements.
- Recommend and evaluate security tools including static and dynamic analysers, security frameworks, and tools for AI governance etc.
- Partner with engineering teams to integrate security controls into continuous integration, delivery and deployment processes.
- Introduce best practices and principles to enable consistent delivery and enable alignment with long-term direction through security architecture artefacts (Design patterns, Principles, Architecture contract and governance).
- Provide technical and architectural governance and guidance on security architecture and solutions.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
What’s in it for you?
- Our client loves to reward their people for doing a great job.
- This is a contract for 5-6 months.
- A day rate, in-scope IR35, £600.00-650 per day (via a Hays approved umbrella company) or £450.00-500 per day via Hays PAYE.
- This role provides a remote working access from the comforts of your own home and only going to our state-of-the-art office in Reading/Paddington twice per week.
Next Steps
Once you’ve applied, one of our friendly recruitment consultants will give you a call and talk you through the screening process. If your application is successful, you’ll be involved in a live virtual interview with one of our client’s hiring managers to get to know you better.
We look forward to speaking to you!
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location