Security Architect - AI Threat Modeler; b3617

Ottawa 9 days agoFull-time External
Negotiable
Position: Security Architect - AI Threat Modeler (b3617) Description : Security Architect – AI Threat Modeler Overview We are seeking an experienced Cybersecurity Architect to work as an AI Threat Modeler as part of our Cybersecurity Architecture team. In this role, you will be responsible for identifying, analyzing, and mitigating security threats specific to artificial intelligence (AI) and machine learning (ML) systems. You will collaborate with engineering, data science, and security teams to ensure that AI-driven solutions are robust, resilient, and compliant with industry standards and regulations. You will also occasionally be asked to contribute to security system design, architecture frameworks, and technology strategy, with a focus on emerging AI technologies Key Responsibilities • Analyze the design and architecture of AI solutions (chatbots, agents, agentic systems, etc.) to identify security vulnerabilities, threats, and attack vectors • Develop and maintain threat models for AI/ML systems, considering adversarial machine learning, data poisoning, model inversion, prompt injection, privacy risks, misuse scenarios, and other AI-specific threats. • Assess AI system components (including data pipelines, model training, inference, APIs, deployment environments, etc.) for susceptibility to attacks and compliance with security standards. • Create detailed threat reports outlining identified risks, recommended mitigations, and business impact. • Collaborate with business units, product owners, and engineering teams to prioritize and implement security controls and mitigations for the vulnerabilities and risks found. • Stay current with emerging threats, vulnerabilities, and best practices in AI/ML security. • Provide training and guidance to technical teams on secure AI/ML development and deployment practices. • Contribute to the development of AI security architecture frameworks, policies, and standards. Skills & Experience • Bachelor’s/Master’s degree (or similar) in Computer Science, Cybersecurity, Data Science, or a related field. • 5+ years of experience in Cybersecurity Architecture, Threat Modeling, or AI/ML engineering. • Strong understanding of AI/ML concepts, architectures, and common frameworks (e.g., Tensor Flow, PyTorch, Scikit-learn). • Applied knowledge of threat modeling and threat modeling techniques (e.g., STRIDE, DREAD, PASTA) and security risk assessment. • The ability to extract/clarify/understand business requirements and solution designs from project teams, to identify threats and risks and to translate potential risks into security requirements which the project teams must implement • Familiarity with AI/ML-specific threats such as adversarial examples, model extraction, and data poisoning. • Excellent analytical, communication, and documentation skills. Ability to communicate complex AI security risks to technical and non-technical stakeholders is a must. • Ability to work collaboratively in cross-functional teams. Preferred Skills • Experience with cloud-based AI/ML platforms (e.g., AWS Sage Maker, Azure ML, Google AI Platform). • Knowledge of regulatory requirements and standards related to AI/ML (e.g., NIST AI RMF, ISO/IEC 27001). • Security certifications (e.g., CISSP, CCSP, OSCP) or AI/ML certifications are a plus. • Experience with threat modeling tools and knowledge of MITRE frameworks (ATLAS, CAPEC, ATT&CK, D3 FEND) Architecte de la sécurité – modélisateur/modélisatrice, Menaces liées à l’IA Aperçu Nous sommes à la recherche d’une personne chevronnée en architecture de la cybersécurité pour travailler comme modélisateur/modélisatrice, Menaces liées à l’IA. Dans le cadre de vos fonctions, il vous incombera de repérer, d’analyser et d’atténuer les menaces à la sécurité propres aux systèmes d’intelligence artificielle (IA) et d’apprentissage automatique. Vous collaborerez avec les équipes Ingénierie, Science des données et Sécurité afin de vous assurer que les solutions axées sur l’IA sont robustes, résilientes et conformes aux normes et à la réglementation du secteur. Vous devrez aussi contribuer à l’occasion à la conception des systèmes de sécurité, aux cadres d’architecture et à la stratégie technologique, en mettant l’accent sur les technologies d’IA émergentes. Principales…