Sr Cloud Security Architect

Cadence Design Systems

4.4

(53)

San Jose, CA

Why you should apply for a job to Cadence Design Systems:

  • 4.4/5 in overall job satisfaction
  • 4.4/5 in supportive management
  • 87% say women are treated fairly and equally to men
  • 89% would recommend this company to other women
  • 87% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Parental leave is available for both paternity and maternity
  • Flexible work options available
  • 88% of employees at Cadence say it is a great place to work compared to 57% of employees at a typical U.S.-based company.
  • #R52638

    Position summary

    & Strategy

    1. Design and maintain secure, scalable, and resilient security architectures across AWS, Azure, and GCP.
    2. Define cloud and AI security reference architectures, patterns, and standards covering IaaS, PaaS, containers, serverless, and AI platforms.
    3. Lead security architecture reviews for cloud and AI initiatives, ensuring consistency, defense-in-depth, and least-privilege design.
    4. Managed AI services (e.g., Amazon Bedrock, Azure OpenAI, GCP Vertex AI), self-hosted and open-source models
      Identity, Network, and Data Security
    5. Architect IAM strategies for cloud and AI services (human, workload, and service identities).
    6. Design network security architectures (segmentation, private endpoints, service perimeters, Zero Trust).
    7. Define data protection and key management strategies for cloud and AI workloads, including encryption, KMS/HSM, BYOK/HYOK, and secrets management.

    Risk Management, Compliance & AI Governance

    1. Ensure cloud and AI architectures align with security and compliance frameworks (NIST, ISO 27001, SOC 2, CIS, GDPR, etc.).
    2. Contribute to AI governance programs, including:
    3. Responsible AI and ethical AI principles
    4. Model risk management and lifecycle controls
    5. Compliance with emerging AI regulations and standards (e.g., NIST AI RMF, EU AI Act readiness)
    6. Support threat modeling, risk assessments, and control mapping for both cloud and AI systems.

    Security Engineering & Automation (DevSecOps / MLOps)

    1. Embed security into CI/CD and MLOps pipelines for cloud and AI workloads.
    2. Promote infrastructure-as-code and policy-as-code for consistent security enforcement.
    3. Define detection and response strategies using cloud-native and AI-aware security tooling, including logging, SIEM integration, and anomaly detection.

    Leadership & Collaboration

    1. Serve as a senior security authority and trusted advisor for cloud, platform, data, and AI engineering teams.
    2. Mentor engineers and architects on cloud and AI security best practices.
    3. Evaluate and recommend cloud, AI, and security platforms and third-party solutions.

    Required Qualifications

    Experience

    1. 8+ years of experience in cloud security architecture, security engineering, or related roles.
    2. Demonstrated experience securing multi-cloud environments (AWS, Azure, GCP).
    3. Hands-on experience designing security controls for AI/ML or GenAI workloads in production environments.

    Certifications (Required)

    1. CISSP (Certified Information Systems Security Professional)
    2. CCSP (Certified Cloud Security Professional)
    3. Cloud security certifications, such as:
    4. AWS Certified Security - Specialty
    5. Microsoft Certified: Azure Security Engineer (Associate or Expert)
    6. Google Professional Cloud Security Engineer

    Technical Skills

    1. Deep expertise in:
    2. Cloud IAM, networking, logging, and security services
    3. Encryption, PKI, KMS/HSM, and secrets management
    4. Kubernetes and container security
    5. Strong understanding of:
    6. AI/ML pipelines, GenAI architectures, and model lifecycle
    7. AI-specific threat models and mitigations
    8. DevSecOps and secure MLOps practices

    Preferred Qualifications

    1. Experience securing regulated or high-risk environments (financial services, healthcare, government).
    2. Familiarity with Zero Trust and privacy-enhancing technologies.
    3. Knowledge of AI governance frameworks (NIST AI RMF, ISO/IEC 23894, EU AI Act).
    4. Strong communication skills with the ability to influence both technical and executive stakeholders.

    The annual salary range for California is $185,500 to $344,500. You may also be eligible to receive incentive compensation: bonus, equity, and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the salary range is a guideline and compensation may vary based on factors such as qualifications, skill level, competencies and work location. Our benefits programs include: paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, a variety of medical, dental and vision plan options, and more.
    We're doing work that matters. Help us solve what others can't.

    Why you should apply for a job to Cadence Design Systems:

  • 4.4/5 in overall job satisfaction
  • 4.4/5 in supportive management
  • 87% say women are treated fairly and equally to men
  • 89% would recommend this company to other women
  • 87% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Parental leave is available for both paternity and maternity
  • Flexible work options available
  • 88% of employees at Cadence say it is a great place to work compared to 57% of employees at a typical U.S.-based company.