Senior Principal Technical Architect – AI, Data Platforms & Cyber Security
Quick facts
- Type
- Full-time
- Location
- Princeton, NYC, NJ, NY
- Skills
- Python, C#, SQL, AWS
- Industry
- Information Technology — 671 open jobs
- Visa in listing
- H-1B
- Apply
- Free to apply — never pay anyone for a job offer or visa sponsorship
Job description
Senior Principal Technical Architect – AI, Data Platforms & Cyber Security Location: Princeton, NJ & NYC, NY (Hybrid) H1B L2 Fulltime Job Description: Principal Technical Architect – AI, Data Platforms & Cyber Security Position Title: Principal Technical Architect – AI Systems, Data Platforms & Cyber Security Department: Enterprise Architecture / Data, AI & Security Engineering Experience Level: 15+ Years (Executive / Principal Level)
Role Overview
We are seeking a visionary and hands-on Principal Technical Architect to lead the architecture, design, security, and strategic evolution of our Enterprise Data Platforms and Multi-Agent GenAI Systems. In this role, you will bridge the gap between complex enterprise data engineering, modern cloud architecture, cutting-edge Generative AI applications, and enterprise cybersecurity controls. You will design zero-touch automated data observability solutions, multi-agent AI pipelines, zero-trust data access patterns, and enterprise-wide GenAI adoption frameworks. The ideal candidate brings a deep technical background in Databricks, cloud platforms, Python, contract-driven LLM architectures, threat modeling for AI systems, and proven enterprise leadership in scaling and securing AI solutions across the organization.
Key Responsibilities
1. AI Systems & Multi-Agent Architecture
- Architect Multi-Agent AI Pipelines: Design end-to-end, LLM-powered multi-agent frameworks (deterministic + generative) using Pydantic contracts, asynchronous Python, and provider-agnostic model integration (e.g., OpenAI SDK, Databricks Model Serving).
- AI Tooling & Scaffolding: Build graph-based execution builders, dynamic YAML rules engines, capability registry patterns, and structured diagnostic retry mechanisms for LLM agents.
- Human-in-the-Loop Integration: Implement validation and curation layers that enable user DAG editing, schema validation, and error repair before scaffold generation.
2. AI Security, Risk & Guardrails
- LLM Threat Modeling & Abuse Prevention: Lead abuse-case modeling, prompt injection defense, jailbreak mitigation, and red-teaming strategies for LLM agents and RAG architectures.
- Output Guardrails & Data Protection: Implement payload masking, custom SQL validation layers, row-count caps, and automated PII/PCI detection to prevent data exfiltration via AI interfaces.
- Identity & Access Governance: Architect hybrid identity flows (OAuth 2.0, Okta/Entra ID), Service Principal access patterns, and automated token lifecycle/rotation management (e.g., Delta Sharing tokens).
3. Enterprise Data Platforms & Observability
- Databricks Estate Architecture: Lead large-scale data platform migrations, estate auto-discovery, and governance automation across Databricks workspaces (Unity Catalog, Workflows, Jobs API, Delta Lake, Delta Sharing).
- Data Governance & Zero-Trust Access: Enforce fine-grained authorization models including Row-Level Security (RLS), dynamic column masking, and centralized data classification in Unity Catalog.
- Data Quality & Observability Frameworks: Design automated, multi-tiered data quality verification platforms capable of real-time incident detection, automated table onboarding, and continuous file freshness tracking.
- Platform Governance & FinOps: Oversee multi-cloud cost governance (AWS, Azure, Google Cloud Platform), resource optimization, and infrastructure governance to maximize ROI while maintaining compliance.
4. Enterprise GenAI Adoption & Governance
- Org-Wide Transformation: Define and execute adoption strategies for developer AI tooling (e.g., GitHub Copilot, custom LLM assistants) and establish measurement frameworks for code quality, productivity gains, and ROI.
- Enablement & Standards: Conduct technical workshops, build best-practices documentation, create reusable architectural patterns, and mentor engineering teams across divisions.
- Compliance & Security Auditing: Oversee access recertification, SIEM logging/auditing mechanisms, and regulatory compliance (e.g., regional data residency and vendor risk governance).
Required Qualifications & Technical Expertise
Professional Experience
- 10+ years of progressive experience in software engineering, enterprise data platforms, AI systems, and technical/security architecture within high-volume enterprise environments.
- Proven track record of architecting scalable solutions adopted across large organizations while maintaining high standards of data protection and zero-trust security.
- Experience leading enterprise-wide technology adoption programs, platform migrations, and security governance frameworks.
Technical Stack & Competencies
- Category Required Skills & Technologies
- AI & LLM Systems Multi-agent frameworks, OpenAI APIs, Databricks Model Serving, Async Python (aiohttp), Pydantic, Prompt Engineering, Streamlit
- Cyber Risk & AI Security LLM Threat Modeling (Prompt Injection, Jailbreaking), Guardrails, OAuth 2.0 / Entra ID / Okta, Service Principals, Delta Sharing
- Security Data Governance & Security Unity Catalog (RLS, Dynamic Column Masking, PII/PCI classification), Zero-Trust Access Patterns, SIEM logging & audit trails
- Data Engineering & Platforms Databricks (Unity Catalog, Workflows, Delta Lake, Jobs API), PySpark, Data Observability, SQL / Relational Databases
- Cloud & FinOps AWS, Azure, Google Cloud Platform, Cloud Security Architecture, Cloud Cost Governance / FinOps frameworks
- Languages & Core Tech Python (Advanced Async), C#, .NET Core, SQL, REST API Architecture, YAML rule engines
- Governance & Licensing Infrastructure & Licensing Governance, Enterprise Developer Tooling Administration, Token Lifecycle Management
Visa sponsorship record
No public sponsorship records foundWe didn't find H-1B, H-1B1, E-3 or green card (PERM) filings under the name RyanBPM in the Department of Labor and USCIS data. That doesn't mean the job can't be sponsored — the company may file under a different legal name, be new to sponsorship, or sponsor a visa that isn't in these datasets (for example H-2B or J-1).
Tip: ask the recruiter early, in writing, which visa they sponsor and whether they cover the legal and filing fees.
Which visas can work for this job
Occupation: Information Security Analysts (SOC 15-1212) — estimated from the job title.
- Mentioned in the listing
H-1B
- H-1B cap-exempt employer
Regular cap-subject employer — a new H-1B needs to win the lottery in March (unless you already hold cap-counted H-1B status).
- TN (citizens of Canada and Mexico)
This kind of role may fit the USMCA profession “Computer Systems Analyst” — it depends on the actual duties. No lottery, no cap; you need the matching degree or license.
- E-3 (Australia) and H-1B1 (Chile, Singapore)
Same degree requirement as H-1B, but no lottery and a separate quota that is rarely filled.
- O-1 (extraordinary ability)
For candidates with awards, publications, press, a high salary or critical roles at distinguished organizations. No cap, no lottery; the employer files a petition.
- STEM OPT extension (F-1 students)
Requires an E-Verify employer. We didn't find this company in the E-Verify list — ask HR.
Salary vs prevailing wage
Information Security Analysts · New Jersey (state median of areas). Annual prevailing wages set by the Department of Labor (OFLC).
| Level | Prevailing wage | H-1B lottery odds* |
|---|---|---|
| Level I | $83,720 | ~15% |
| Level II | $107,484 | ~31% |
| Level III | $131,269 | ~46% |
| Level IV | $154,679 | ~61% |
The listing has no salary, so we can't place it on a wage level. Ask the employer which wage level they'd file at: Level III–IV registrations get 3–4 entries in the H-1B lottery.
* Odds are DHS projections for the FY2027 wage-weighted lottery (actual results vary by year and employer). Since the FY2027 cap season the H-1B lottery is weighted by wage level: Level I = 1 entry, II = 2, III = 3, IV = 4. The level is set by the offered wage against the prevailing wage for the occupation and worksite. Separately, a $100,000 fee for new H-1B petitions for workers outside the US was announced in 2025; as of September 2026 a federal court ruling keeps it unenforceable while appeals continue — check the current status.
Sources: U.S. Department of Labor OFLC disclosure data (H-1B/H-1B1/E-3 LCA, PERM), OFLC prevailing wage data, USCIS H-1B Employer Data Hub, E-Verify participating employers. Data loaded: LCA FY2024–FY2026, PERM, USCIS Data Hub, OFLC wages; updated 2026-10-03. Employers are matched by name, so records of companies with similar names can occasionally be mixed up. This is general information, not legal advice — talk to an immigration attorney about your case.