Head of Security Architecture

AXA XL

London, England, UKfulltimeInsuranceposted 31 Jul
Unlock apply linkApply links and the original listing are a Pro feature: £4.99/mo or £25 once.
The Head of Security Architecture with deep expertise in AI systems to design, implement, and maintain secure architectures for enterprise security, artificial intelligence and machine learning initiatives across the organisation. This role will define technical security standards, reference architectures, and implementation frameworks that protect traditional IT environments and AI systems, models, data pipelines, and deployments throughout their life-cycle — from conception to production. The Head of Security Architecture will partner with stakeholders and internal teams to establish a comprehensive, forward-looking security strategy and architecture that enables organisational ambitions while managing AI-related security risks. What you’ll be doing What will your essential responsibilities include? * Work with stakeholders and internal teams to define a comprehensive, forward-looking Security strategy, inclusive of AI Security and Architecture that supports the organisation's global growth ambitions, incorporating policies, standards, and control frameworks applicable across multiple jurisdictions. * Establish and evolve governance mechanisms that promote responsible, ethical, and compliant AI use worldwide, considering regional regulatory nuances and cultural sensitivities. * Integrate AI security requirements into security and enterprise architecture, software development life cycles, and model life-cycle management, ensuring consistency and agility across diverse operational regions. * Will be part of Security Strategy development and does require interaction with executive business leaders for a global organisation. Architecture \& Design * Design enterprise-wide security architectures and reference implementations * Establish secure AI development, training, and deployment pipelines * Define AI \& security data governance and access control frameworks for systems * Create security-by-design principles for AI model development * Design threat models specific to AI/ML systems and attack surfaces Technical Security Standards * Develop and maintain security frameworks and best practices * Create secure coding standards for ML engineers and data scientists * Establish model validation, testing, and verification protocols * Define encryption, authentication, and authorisation standards for systems * Document security requirements and technical specifications Infrastructure \& Systems * Architect secure AI infrastructure (cloud, on-prem, hybrid) * Design model registry, versioning, and deployment systems with security controls * Implement monitoring, logging, and anomaly detection for AI systems * Oversee secure data pipelines and feature stores * Design isolation and sandboxing for high-risk AI workloads Risk \& Threat Mitigation * Conduct threat modelling for AI systems (adversarial attacks, model poisoning, data poisoning) * Design defences against AI-specific vulnerabilities * Implement model robustness testing and validation frameworks * Create incident response architectures for AI security breaches * Design recovery and rollback mechanisms for compromised models Vendor \& Third-Party Management * Evaluate and architect integrations with third-party AI platforms securely * Define security requirements for AI vendors and SaaS providers * Design secure APIs and interfaces for external AI model access * Oversee security architecture of outsourced AI development Governance \& Compliance * Align security architecture with regulatory requirements (GDPR, AI Act, industry standards) * Design audit trails and compliance monitoring systems * Document architecture decisions and security trade-offs * Collaborate on responsible AI and ethical AI architecture considerations Team Leadership \& Knowledge Sharing * Lead AI security architecture reviews and design sessions * Mentor security engineers and architects * Present architecture recommendations to technical and executive stakeholders * Build and maintain security architecture documentation * Drive adoption of secure architecture patterns You will report to Chief Security Officer. What you’ll bring We’re looking for someone who has these abilities and skills: * Substantial experience in cyber security, systems architecture, or infrastructure security * Proven capabilities in designing and architecture large-scale systems * Experience in hands-on and applied experience with AI/ML security architecture * Deep technical knowledge of: + Machine learning systems and workflows + AI/ML vulnerabilities and attack vectors (adversarial examples, model extraction, poisoning) + Cloud security and containerisation (Docker, Kubernetes) + Data security, encryption, and access controls + API security and micro-services architecture * Robust background in threat modelling and security architecture frameworks * Experience with secure software development life-cycle (SSDLC) * Advanced degree in Computer Science, Cyber security, or related field (or equivalent) Key Competencies * Executive judgement and credibility * Global risk thinking and cultural agility * Governance and control design * Influencing and stakeholder management without direct authority * Clear, compelling communication tailored for diverse audiences, including boards and regulators * Balancing innovation with disciplined risk management on a global scale Preferred Skills * CISSP, CCSK, CISM, AAISM or similar security architecture certification * Experience with MLOps/MLSecOps platforms * Background in machine learning engineering or data science * Experience with AI governance and responsible AI frameworks * Knowledge of AI-specific security standards (NIST AI RMF, ISO/IEC 42001) * Experience in regulated industries (finance, healthcare, government) * Contributions to open-source security or AI security projects * Speaking/publishing on AI security topics What we offer Inclusion AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic. At AXA XL, we know that an inclusive culture and enables business growth and is critical to our success. That’s why we have made a strategic commitment to attract, develop, advance and retain the most inclusive workforce possible, and create a culture where everyone can bring their full selves to work and reach their highest potential. *It’s about helping one another — and our business — to move forward and succeed.* * Five Business Resource Groups focused on gender, LGBTQ+, ethnicity and origins, disability and inclusion with 20 Chapters around the globe. * Robust support for Flexible Working Arrangements * Enhanced family-friendly leave benefits * Named to the Diversity Best Practices Index * Signatory to the UK Women in Finance Charter Learn more at axaxl.com/about-us/inclusion-and-diversity. AXA XL is an Equal Opportunity Employer. Total Rewards AXA XL’s Reward program is designed to take care of what matters most to you, covering the full picture of your health, wellbeing, lifestyle and financial security. It provides competitive compensation and personalized, inclusive benefits that evolve as you do. We’re committed to rewarding your contribution for the long term, so you can be your best self today and look forward to the future with confidence. Sustainability At AXA XL, Sustainability is integral to our business strategy. In an ever-changing world, AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 2023-26 Sustainability strategy, called “Roots of resilience”, focuses on protecting natural ecosystems, addressing climate change, and embedding sustainable practices across our operations. Our Pillars * Valuing nature: How we impact nature affects how nature impacts us. Resilient ecosystems - the foundation of a sustainable planet and society – are essential to our future. We’re committed to protecting and restoring nature – from mangrove forests to the bees in our backyard – by increasing biodiversity awareness and inspiring clients and colleagues to put nature at the heart of their plans. * Addressing climate change: The effects of a changing climate are far-reaching and significant. Unpredictable weather, increasing temperatures, and rising sea levels cause both social inequalities and environmental disruption. We're building a net zero strategy, developing insurance products and services, and mobilizing to advance thought leadership and investment in societal-led solutions. * Integrating ESG: All companies have a role to play in building a more resilient future. Incorporating ESG considerations into our internal processes and practices builds resilience from the roots of our business. We’re training our colleagues, engaging our external partners, and evolving our sustainability governance and reporting. * AXA Hearts in Action: We have established volunteering and charitable giving programs to help colleagues support causes that matter most to them, known as AXA XL’s “Hearts in Action” programs. These include our Matching Gifts program, Volunteering Leave, and our annual volunteering day – the Global Day of Giving. For more information, please see axaxl.com/sustainability. Who we are AXA XL, the P\&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re/insurance, we reinvent it. How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business − property, casualty, professional, financial lines and specialty. With an innovative and flexible approach to risk solutions, we partner with those who move the world forward. Learn more at axaxl.com