Vacancy catalog
EPAM
Open role

Senior AI Security Architect - Data Security & DSPM

EPAMLithuania; Latvia
Work model
Hybrid
Experience
7+ years
Employment
Not specified
Compensation
Not disclosed
Technology signal
15 tags

Technology context

15

Parsed from the vacancy text; ordered by relevance to this role.

AI AgentsAILLMAWSMachine LearningAzureAppSecCloudAPIAI SecurityLLM securityMicrosoft 365 SecurityMicrosoft Entra IDMicrosoft SentinelSecurity Architecture

Full listing

Role description

We are seeking a Senior AI Security Architect - Data Security & DSPM to join our team.

In this senior role, you will own the end-to-end security architecture for an enterprise Agentic AI platform and carry the data-security mandate for AI, consolidating agentic AI security architecture and Data Security Posture Management (DSPM) into a single accountable ownership. You will design the secure platform and protect the data flowing through it, ensuring consistent controls across a multi-cloud environment. Production experience with security for AI Agents and Agentic AI Architecture is an absolute must.

Responsibilities

  • Define and own the agentic AI reference security architecture (v1 and beyond), including Platform 1.0 hardening
  • Stand up and operate Microsoft Purview DSPM for AI, accelerated via Microsoft FastTrack
  • Establish the sensitivity-label and ML auto-classification baseline; map and govern data flows into and out of agents
  • Set architecture standards for agent-to-API and agent-to-data access patterns
  • Design and secure agentic AI workloads across a multi-cloud estate spanning Azure and AWS, ensuring consistent controls regardless of where agents are built and run
  • Partner with the identity, AppSec, and GRC functions to ensure controls are designed in, not bolted on

Requirements

  • 7+ years of experience in security architecture, with a proven track record designing enterprise-scale secure architectures in a regulated environment
  • Expertise in Azure / M365 security architecture, including Microsoft Sentinel, Entra, and Defender for Cloud
  • Hands-on capability to build and secure agents in a multi-cloud setup, including AWS services such as Bedrock Agents, AWS Lambda, and IAM alongside Azure
  • Proficiency in Microsoft Purview - DSPM for AI, sensitivity labels, and data-flow mapping with ML-based auto-classification
  • Skills in API and agent architecture security, with familiarity with Copilot Studio and other agent platforms
  • Background in AI Security and LLM security
  • Excellent command of written and spoken English (B2+ level)

Nice to have

  • Experience in life sciences, medical device, or other regulated manufacturing
  • Relevant certifications such as CISSP, Azure Security Engineer, or SC-100