
Information Security Architect
About Airship
Airship is trusted by world’s leading brands such as Alaska Airlines, BBC and The Home Depot to drive revenue growth and customer loyalty with exceptional cross-channel customer experiences. Today, brands are challenged to deliver seamless, unified customer experiences across a fragmented array of channels and devices— apps, websites, email, SMS, wallets and more.
Airship’s no-code, AI-powered platform was designed with non-technical, growth-focused teams in mind, making it easy to create, test and orchestrate hyper-personalized experiences across all channels. With the ability to easily enrich customer data and rapidly launch growth experiments, Airship enables brands to deliver consistent, meaningful interactions that accelerate conversion and foster deeper customer relationships.
We invite you to be part of our journey in building products and delivering services that touch millions of customers around the world every day.
To learn more about us, visit www.airship.com, read our blog or follow us on LinkedIn.
About the Role
Airship is looking for an Information Security Architect to own the design and evolution of our security architecture across cloud infrastructure, applications, and the CI/CD pipeline. You'll be Airship's technical authority on secure-by-design systems, partnering with Engineering, Platform, and Product teams to embed security into every phase of the development lifecycle.
This is a hands-on architecture role. You'll conduct threat modeling, perform architecture reviews, define security standards and reference architectures, and drive secure design patterns across Airship's GCP-based environment. You'll also evaluate emerging technologies, including AI and generative AI platforms, to identify security risks and define secure adoption patterns.
Why This Role
- Depth over breadth. You'll focus on what matters most: securing Airship's cloud infrastructure and CI/CD pipelines, conducting threat modeling, and shaping architecture decisions
- GCP at the core. Airship runs on Google Cloud Platform. You'll work deeply with GCP-native security capabilities, defining guardrails, segmentation patterns, logging standards, and workload protection across the platform
- Secure the pipeline, secure the product. CI/CD pipeline security is a primary focus. You'll design and implement controls that protect the software delivery lifecycle from code commit through production deployment
- AI-forward security. You'll evaluate and secure AI and GenAI platforms, define usage patterns for AI-assisted development tools, and help establish security architecture for Airship's AI-enabled features
- Fully remote, flexible culture. Airship's Digital First approach means flexible, remote work is the norm, with a team that collaborates across timezones and geographies every day
- Room to grow. This role is a path toward senior security architecture, security leadership, or deeper cloud security specialization
What You'll Do*
- Design, develop, and maintain Airship's security architecture, including reference architectures, secure design patterns, and technical security standards
- Perform security architecture reviews for enterprise applications, cloud platforms, infrastructure services, and technology integrations, ensuring alignment with security standards and risk posture
- Conduct threat modeling and technical risk assessments to identify security gaps and recommend mitigation strategies
- Define and implement cloud security guardrails, network segmentation patterns, logging standards, and access control models across Airship's GCP environment
- Partner with Engineering and DevOps teams to integrate security controls into the CI/CD pipeline, including secure build processes, container security, Infrastructure-as-Code (IaC) security, secrets management, and software supply chain integrity
- Evaluate proposed architecture and design changes from engineering teams, analyze their security impact, and make recommendations
- Assess emerging technologies (including AI platforms, generative AI tools, and AI-assisted development technologies) to identify security risks and define secure usage patterns
- Develop security guidance for API security, application authentication (SAML, OAuth2), encryption, and identity and access management
- Research security trends, emerging attack methods, and new classes of vulnerabilities to proactively reduce the risk of breach
- Leverage AI-enabled tools and automation to improve security analysis, architecture review workflows, and threat detection
- Partner with security tooling teams to evaluate enterprise security tools for architectural fit, integration models, and long-term scalability
- Participate in the Security on-call rotation and respond to incidents
- Provide technical security guidance for complex customer inquiries that require deep architectural expertise
- Mentor colleagues across the organization on secure design principles and security best practices
*Duties described are not a comprehensive list. Additional tasks may be assigned from time to time, and responsibilities may be amended at any time at the sole discretion of the Employer.
What We're Looking For
- 8+ years of experience in information security, security architecture, cloud security engineering, or a related technical discipline
- Deep expertise in Google Cloud Platform (GCP) security, including native security capabilities, cloud architecture patterns, and workload protection
- Hands-on experience securing CI/CD pipelines, including container security, IaC security, secrets management, and DevSecOps practices
- Experience conducting threat modeling for complex, distributed systems using standard methodologies
- Experience performing security architecture and design reviews for cloud-native applications and infrastructure
- Proficiency in at least one scripting language (e.g., Python, Java, Bash/shell)
- Working knowledge of network security concepts, including segmentation, Zero Trust principles, firewalls, and access control models
- Working knowledge of identity and access management concepts, including SSO, MFA, federation, and least-privilege access
- Strong understanding of application security, including OWASP, API security, secure SDLC practices, and authentication protocols (SAML, OAuth2)
- Working knowledge of how to protect and administer macOS, Linux, and Windows systems
- Ability to translate security requirements into practical, scalable technical solutions
- Strong written and verbal communication skills, with a talent for explaining complex security concepts to both technical and non-technical audiences
- Experience experimenting with AI tools in your personal or professional life
We'd Be Delighted If You Also Have
- One or more industry certifications (e.g., CISSP, CCSP, Google Cloud Professional Security Engineer, OSCP, GIAC certifications)
- Experience with enterprise security technologies such as Splunk, CrowdStrike, Rapid7, Vanta, Okta, and DLP solutions
- Familiarity with AI security concepts, secure AI platform adoption, and AI risk frameworks (e.g., NIST AI RMF, ISO 42001)
- Experience developing security reference architectures, design patterns, and technical standards documentation
- Experience with Kubernetes security, container orchestration, and cloud-native security tooling (CSPM, CWPP)
- Knowledge of data security practices including encryption, data classification, DLP, and key management
- Experience evaluating third-party technologies and conducting technical security assessments for vendor platforms
Work Location & Travel Requirements
Airship’s ‘Digital First’ approach to work means that for the majority of our roles, work can be performed remotely, either some or most of the time. Airship believes that flexible work contributes to a more productive and more equitable work environment, and that Airshippers are able to collaborate, innovate, and support one another across different locations and timezones.
Some roles may require that employees perform their work from a specific location to support business activities, and/or be within proximity to an Airship office location or customer or partner locations, while other roles can be performed 100% remotely.
This position is fully remote and may require up to 10% travel based on business needs or as requested by your manager.
Compensation
Starting Pay Range: $130,000-$160,000 USD per year
This is a good faith estimate of the base compensation we reasonably expect to pay for this position upon hire. Actual starting pay may vary based on factors such as relevant skills, work experience, market demands, and location. All offers include stock options so employees have the opportunity to benefit from Airship’s success.
Benefits & Perks
- Competitive medical, dental, and vision insurance options for you and your dependents
- Flexible time off, company paid holidays, paid parental leave, and paid volunteer time off
- Support for your overall wellbeing with mental health and wellness resources
- Employer-subsidized life insurance as well as short-term and long-term disability
- A digital-first work environment and a monthly stipend to support remote work
- Mentorship and growth opportunities to build skills and accelerate professional development
- And more!
We use artificial intelligence tools in our recruitment process as decision-support tools only. Airship's People Operations team reviews all AI-generated scores and recommendations before making any hiring determination. No applicant is rejected solely on the basis of an AI-generated output. Depending on your location, you may have the right to request human review of any AI-assisted employment decision or to opt out of AI evaluation. To make a request or learn more about how we use AI in hiring, contact privacy@airship.com or visit airship.com/legal.
California residents can view the CCPA disclosure notice here.
**Please Note: To ensure the security of your personal information, Airship will only contact candidates through email addresses ending with “@airship.com”.
Hiring Commitment
Airship is committed to fostering a diverse work environment and providing equal employment opportunities to all applicants and employees. We welcome your application and our hiring and employment decisions are made irrespective of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law. In alignment with our commitment to equal opportunity, Airship will consider for employment all qualified applicants, including those with criminal histories, in a way that adheres to the principles of fairness and the requirements of local Fair Chance laws, where applicable.
By submitting this application, I affirm that the facts set forth in it are true and complete to the best of my knowledge. I understand that if I am employed, false statements, omissions, or misleading information given in my application, interview(s), or in a background check may result in dismissal.
Create a Job Alert
Interested in building your career at Airship? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field