AI Application Security Architect

Daley and Associates

Boston, MA

JOB DETAILS
LOCATION
Boston, MA
POSTED
30+ days ago
Job Title: Security Architect – AI AppSec
Location: Hybrid, 3 days in Boston (Tues – Thurs)
Duration: 6 months

Manager Notes: Candidate must be local to Boston. 

JOB PURPOSE:
We are seeking a Security Architect / AI Security AppSec Architect to assist in the strategic evaluation and secure implementation of our AI Agent Framework. As AI adoption accelerates across our investment and research teams, this role will be pivotal in ensuring our systems remain secure, resilient, and compliant. You will combine high-level architectural oversight—specifically evaluating new and emerging AI technologies—with hands-on engineering.

Reporting to the Director of Security in Global Security organization, you will research security controls, validate emerging architectural patterns, and define the governance standards for M365 Copilot Agents and autonomous agents built on Azure AI Foundry.

Primary Responsibilities:
Technology Evaluation & Security Architecture
  • Emerging Tech Research: Proactively evaluate new AI tools, frameworks, and LLM providers to assess their security posture and suitability for a highly regulated investment environment.
  • Architectural Design: Design and validate secure architectural patterns for AI agent integration within the organization’s ecosystem, ensuring data privacy and IP protection.
  • Threat Modeling: Conduct deep-dive analysis of AI-specific threats (prompt injection, model inversion, data poisoning) and architect systemic mitigations.
  • Platform Assessment: Evaluate the security capabilities of Azure AI Foundry, M365 Copilot Studio, and the Microsoft Graph API against the organization’s compliance standards.
  • MCP Specialization: Assess Model Context Protocol (MCP) security best practices, designing isolation strategies for context management.
  • As a security architect, assist with evaluations of other technologies being evaluated with via our Enterprise Architecture Review Board
Technical Implementation & Validation
  • Hardening & Standards: Create hardening checklists and configuration standards for AI platforms that bridge the gap between innovation and rigorous risk management.
  • Identity & Integration: Test and document sophisticated integration approaches with Azure Key Vault, Entra ID, and Managed Identities.
  • Security Telemetry: Implement advanced logging, auditing, and monitoring for AI agent telemetry to ensure visibility into autonomous actions.
Governance & Standards Development
  • Design Principles: Lead the creation of the organization’s AI Agent Security Design Principles document.
  • Policy Authoring: Working with various teams assist in developing technical sections of governance policies that address the risks of emerging AI technologies and autonomous workflows.
  • CI/CD Integration: Identify and bridge control gaps in existing CI/CD pipelines to support secure, automated AI deployments.
  • Stakeholder Collaboration: Translate complex security architectures into actionable implementation guides for developers and investment tech teams.

Required Qualifications:
Architectural & Technical Skills
  • 5+ years in Cloud Security/Architecture with deep hands-on Azure platform experience.
  • AI Specialization: Hands-on experience with Azure AI Services, Azure OpenAI, and Azure AI Foundry (or similar platforms like AWS SageMaker).
  • Modern Identity: Expert-level understanding of Microsoft Entra ID, Service Principals, and Managed Identity in a complex enterprise environment.
  • Emerging Protocols: Deep familiarity with Model Context Protocol (MCP) and its implications for data isolation and session security.
  • GenAI/LLM Expertise: Strong grasp of RAG (Retrieval-Augmented Generation) patterns and vector database security.
Security Implementation & Strategy
  • Zero Trust: Proven track record of implementing Zero Trust controls in financial services or cloud-native environments.
  • Automation: Experience with Infrastructure as Code (Terraform, Bicep) to codify security guardrails.
  • Threat Assessment: Familiarity with the OWASP Top 10 for LLMs and AI-specific vulnerability scanning.

Preferred Qualifications:
  • Certifications: Azure Security Engineer Associate, Azure AI Engineer Associate, or CISSP/CCSP.

For immediate consideration please email resume to Kenny at Kwilliams@daleyaa.com.

#LI-KW1

#LI-HYBRID

About the Company

D

Daley and Associates

Daley And Associates, LLC (“DAA”) is a boutique search, executive, and contract staffing firm located in Boston, MA. We specialize in the placement of Accounting, Finance, Information Technology, Legal, Administrative, and Life Sciences professionals at all levels. The firm was founded in 2005 by distinguished executives with over 30+ years of staffing agency experience with the mission to create a different kind of recruiting firm, one that provides a very hands-on, consultative approach to the clients they serve.


Daley And Associates works with some of the most prominent businesses in the greater Boston area. Our clients range from promising start-ups to Fortune 100 companies.

COMPANY SIZE
20 to 49 employees
INDUSTRY
Staffing/Employment Agencies
FOUNDED
2005
WEBSITE
http://daleyaa.com/