Description
Trintech is the leader in AI Financial Close Management, helping finance and accounting teams transform the way they work by eliminating manual burdens, strengthening controls, and empowering strategic decision-making.
We are looking for a
Software Architect to own the technical architecture of the
Platform Team at Trintech's AI Platform. The Platform Team builds the foundational capabilities that all AI agents depend on — security and IAM infrastructure, multi-tenant architecture, cross-agent workflow orchestration, governance framework, billing and metering engine, and the agent marketplace. You report to the Director of Engineering and are the senior technical IC for the Platform Team. Your design decisions define the security posture, tenancy boundaries, API contracts, and event-driven backbone of the entire platform. The right person reasons from first principles on security architecture, system design, and multi-tenant SaaS patterns. Cloud-native production experience required; Azure preferred. This is a
hands-on delivery role, not an advisory one.
What You'll Do
Platform Architecture Ownership
- Own the end-to-end technical architecture of the Platform Team — security and IAM layer, multi-tenant data architecture, event-driven backbone, API gateway design, and compliance framework.
- Design the security architecture — defence-in-depth, federated authentication, OAuth 2.0 flows, token management, and identity propagation across the platform. Own the security posture of the platform layer.
- Own the multi-tenant data architecture — tenant isolation strategy, data partitioning, shared vs. dedicated resource models, and cross-tenant security boundaries.
- Design the event-driven backbone — message ordering guarantees, delivery semantics, workflow orchestration patterns, and cross-agent handover contracts. Own immutable data and append-only event design as the engineering foundation for audit and compliance.
- Define the API gateway architecture — gateway policies, API-first design principles, API maturity model, and how platform capabilities are exposed to agent consumers.
Hands-On Technical Delivery
- Commit to code — build foundational platform components, review critical PRs, lead design sessions, and set the engineering quality bar through example.
- Collaborate with the Agent Stream Architect on boundaries — what the platform provides, what events agents must emit, and how platform capabilities are consumed.
- Ensure platform capabilities are designed for resilience — failure isolation, retry strategies, bulkhead patterns, and graceful degradation.
Standards & Quality
- Define platform engineering standards — API contract design, event schema governance, security control implementation, and compliance-grade system design.
- Define code quality standards for the Platform Team — what well-structured, testable, and observable platform code looks like. Platform EM enforces; Architect defines.
- Identify architectural risks proactively — security gaps, scalability bottlenecks, and dependency failures that could affect agent squads.
Who You Are
Security Architecture — Primary Gate
- Security architecture from first principles — defence-in-depth design, OAuth 2.0, federated authentication, token lifecycle, and identity propagation across a multi-tenant platform. Understands attack surfaces and defence patterns from engineering fundamentals, not just tool configuration. Owns the security posture of the platform layer.
Multi-Tenant SaaS & System Design — Primary Gate
- Multi-tenant SaaS architecture at production scale — tenant isolation strategy, data partitioning, shared vs. dedicated resource models, and cross-tenant security boundaries. Has designed and operated multi-tenant systems in production.
- System design at high and low level — owns all Platform Team architecture decisions. Component boundaries, data contracts, failure modes, resilience patterns, and scalability trade-offs.
Experience
- Event-driven architecture and workflow orchestration — production experience with at least one orchestration tool (Temporal, Azure Service Bus, Kafka, or equivalent). Message ordering guarantees, delivery semantics, and cross-agent handover contract design.
- Immutable data design and append-only event patterns — designing systems where every action is traceable, tamper-evident, and queryable. The engineering foundation for audit and compliance.
- API gateway in depth — one tool in production. API-first design, API maturity model, gateway policies, rate limiting, and how platform capabilities are exposed to agent consumers.
- Cloud-native on at least one public cloud — Azure preferred: Kubernetes, Docker, Helm, CI/CD, and continuous release practices. SQL and NoSQL databases at production scale: data modelling, schema design, and query optimisation.
Awareness
- Agent orchestration patterns — Agent Stream Architect owns this layer; sufficient awareness to design platform capabilities that agents can consume correctly. Distributed systems at working depth: enough to design platform services that scale and fail gracefully.
- LLM tooling concepts — what the platform must support for agents to operate on it.
Nice to Have
- Azure certification — AZ-305 or equivalent, given Azure is the preferred cloud. Prior experience building audit or billing capabilities — a differentiator, not a gate.
- AI-native SDLC — familiarity with Human-led Agentic SDLC practices. Production experience in Python — enables deeper code review and contribution. Not a gate for this role.
- Financial close or R2R domain experience to accelerate ramp-up on the business context the platform serves.
What You'll Learn & Gain
- End-to-end ownership of the platform architecture layer on a live enterprise financial product — your design decisions define the security posture, tenancy model, and event-driven backbone that every AI agent team builds on.
- Deep hands-on experience applying security architecture and multi-tenant SaaS design from first principles in a production context where correctness under adversarial conditions, compliance, and scalability are all non-negotiable.
- Exposure to building governance, billing, and marketplace infrastructure for an enterprise AI platform — foundational engineering challenges with direct impact on product commercialisation and compliance.
- Close collaboration with the Agent Stream Architect, Engineering Manager, and Platform Tech Leads in a delivery model where your architectural choices are implemented rapidly, with direct visibility into how platform design decisions shape the product.
If you are an architect who reasons from first principles on security and system design, has built multi-tenant SaaS platforms at production scale, and is ready to own the architectural foundation that an enterprise AI product is built on — we encourage you to apply.
At our core, Trintechers stand committed to fostering a culture rooted in our core values – Humble, Empowered, Reliable, and Open. Together, these values guide our actions, define our identity, and inspire us to continuously strive for excellence in everything we do.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin or disability.