Staff Security Architect
$314k - $465k • Bellevue Office • FullTime
Posted 4h ago
About the job
Lambda, a leader in AI cloud infrastructure, is seeking a Staff Security Architect to shape the company's overall security architecture, with a primary focus on Data Protection and Platform Security. This role will define secure-by-default foundational patterns across core AI infrastructure, hardware/GPU platform layers, multi-cloud control planes, and end-to-end data lifecycles. You will directly impact the security posture of our high-performance computing environment by architecting robust data loss prevention, encryption, key management, confidential computing, and tenant isolation models. Leveraging Lambda's hosted LLMs, you will pioneer AI-driven security architecture capabilities, such as automated threat modeling and sensitive data discovery.
Responsibilities
- Architect, design, and standardize end-to-end data protection strategy, including data classification, key management, DLP, and privacy controls.
- Define data lifecycle security controls for training datasets, checkpoint storage, and model artifacts.
- Drive confidential computing architectures and hardware-backed data security for high-consequence workloads.
- Establish zero-trust data access policies and fine-grained authorization for sensitive platform APIs.
- Design and enforce core platform security architectures across multi-tenant GPU infrastructure, bare-metal clusters, hypervisors, and Kubernetes.
- Define strong tenant isolation, sandboxing, and secure virtualization controls.
- Conduct comprehensive threat models, architectural reviews, and risk assessments for core platform services.
- Prototype reference implementations and security controls in Python or Go.
- Pioneer AI-powered architectural security capabilities using LLMs for threat modeling, policy validation, and data discovery.
- Assess third-party vendor risks and build automated tooling for vendor security posture evaluation.
- Partner with Platform, Engineering, Product, and Infrastructure leaders to embed security architecture into roadmaps.
- Author technical whitepapers, architectural blueprints, and customer-facing trust documentation.
- Mentor senior engineering talent on secure design principles and platform security patterns.
Requirements
- 10+ years of total engineering experience with 5+ years specializing in security architecture, platform security, or data protection at cloud/infrastructure scale.
- Deep expertise in data security concepts including encryption key management (KMS/HSM), cryptographic protocols, DLP, and confidential computing.
- Proven track record of designing multi-tenant platform security architecture across heterogeneous infrastructure (bare-metal GPU clusters, hypervisors, KVM, Kubernetes, public cloud).
- Strong technical skills in prototyping security designs and reference code in Python, Go, or similar languages.
- Demonstrated experience with threat modeling methodologies (STRIDE, PASTA, etc.) and security design reviews for high-consequence systems.
- Strong communication and stakeholder management skills, with a track record of partnering effectively with IT, Legal, and HR.
- Ability to balance robust enterprise security controls with employee experience and productivity.
- Thrives in fast-moving, high-growth startup environments.