Information Security Architect

Airship
$130,000 - $160,000Remote

About The Position

Airship is looking for an Information Security Architect to own the design and evolution of our security architecture across cloud infrastructure, applications, and the CI/CD pipeline. You'll be Airship's technical authority on secure-by-design systems, partnering with Engineering, Platform, and Product teams to embed security into every phase of the development lifecycle. This is a hands-on architecture role. You'll conduct threat modeling, perform architecture reviews, define security standards and reference architectures, and drive secure design patterns across Airship's GCP-based environment. You'll also evaluate emerging technologies, including AI and generative AI platforms, to identify security risks and define secure adoption patterns.

Requirements

  • 8+ years of experience in information security, security architecture, cloud security engineering, or a related technical discipline
  • Deep expertise in Google Cloud Platform (GCP) security, including native security capabilities, cloud architecture patterns, and workload protection
  • Hands-on experience securing CI/CD pipelines, including container security, IaC security, secrets management, and DevSecOps practices
  • Experience conducting threat modeling for complex, distributed systems using standard methodologies
  • Experience performing security architecture and design reviews for cloud-native applications and infrastructure
  • Proficiency in at least one scripting language (e.g., Python, Java, Bash/shell)
  • Working knowledge of network security concepts, including segmentation, Zero Trust principles, firewalls, and access control models
  • Working knowledge of identity and access management concepts, including SSO, MFA, federation, and least-privilege access
  • Strong understanding of application security, including OWASP, API security, secure SDLC practices, and authentication protocols (SAML, OAuth2)
  • Working knowledge of how to protect and administer macOS, Linux, and Windows systems
  • Ability to translate security requirements into practical, scalable technical solutions
  • Strong written and verbal communication skills, with a talent for explaining complex security concepts to both technical and non-technical audiences
  • Experience experimenting with AI tools in your personal or professional life

Nice To Haves

  • One or more industry certifications (e.g., CISSP, CCSP, Google Cloud Professional Security Engineer, OSCP, GIAC certifications)
  • Experience with enterprise security technologies such as Splunk, CrowdStrike, Rapid7, Vanta, Okta, and DLP solutions
  • Familiarity with AI security concepts, secure AI platform adoption, and AI risk frameworks (e.g., NIST AI RMF, ISO 42001)
  • Experience developing security reference architectures, design patterns, and technical standards documentation
  • Experience with Kubernetes security, container orchestration, and cloud-native security tooling (CSPM, CWPP)
  • Knowledge of data security practices including encryption, data classification, DLP, and key management
  • Experience evaluating third-party technologies and conducting technical security assessments for vendor platforms

Responsibilities

  • Design, develop, and maintain Airship's security architecture, including reference architectures, secure design patterns, and technical security standards
  • Perform security architecture reviews for enterprise applications, cloud platforms, infrastructure services, and technology integrations, ensuring alignment with security standards and risk posture
  • Conduct threat modeling and technical risk assessments to identify security gaps and recommend mitigation strategies
  • Define and implement cloud security guardrails, network segmentation patterns, logging standards, and access control models across Airship's GCP environment
  • Partner with Engineering and DevOps teams to integrate security controls into the CI/CD pipeline, including secure build processes, container security, Infrastructure-as-Code (IaC) security, secrets management, and software supply chain integrity
  • Evaluate proposed architecture and design changes from engineering teams, analyze their security impact, and make recommendations
  • Assess emerging technologies (including AI platforms, generative AI tools, and AI-assisted development technologies) to identify security risks and define secure usage patterns
  • Develop security guidance for API security, application authentication (SAML, OAuth2), encryption, and identity and access management
  • Research security trends, emerging attack methods, and new classes of vulnerabilities to proactively reduce the risk of breach
  • Leverage AI-enabled tools and automation to improve security analysis, architecture review workflows, and threat detection
  • Partner with security tooling teams to evaluate enterprise security tools for architectural fit, integration models, and long-term scalability
  • Participate in the Security on-call rotation and respond to incidents
  • Provide technical security guidance for complex customer inquiries that require deep architectural expertise
  • Mentor colleagues across the organization on secure design principles and security best practices

Benefits

  • Competitive medical, dental, and vision insurance options for you and your dependents
  • Flexible time off, company paid holidays, paid parental leave, and paid volunteer time off
  • Support for your overall wellbeing with mental health and wellness resources
  • Employer-subsidized life insurance as well as short-term and long-term disability
  • A digital-first work environment and a monthly stipend to support remote work
  • Mentorship and growth opportunities to build skills and accelerate professional development
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service