Information Security Governance, Risk and Compliance Analyst
Core
Mature compliance frameworks and govern AI security risks for a global consumer review platform.
Role type
Governance, Risk and Compliance Analyst
Builds
Compliance programs, AI governance standards, and risk management workflows
Domain
Cybersecurity, AI Governance, Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SOC 2, ISO27001, PCI DSS, risk identification, third-party risk management, vendor security due diligence, security policy development, cloud environment risk assessment
Preferred skills
EU AI Act, NIST AI RMF, ISO/IEC 42001, AI-driven automation for GRC workflows
Technologies
SOC 2, ISO27001, PCI DSS, ISO42001, EU AI Act, NIST AI RMF
Responsibilities
Drive compliance efforts for SOC 2, ISO27001, ISO42001, and PCI DSS; evaluate security risks of AI/ML systems; streamline vendor security assessments; develop internal AI standards; identify opportunities for AI-driven automation in risk tasks; refresh security policies and public documents; advocate for security awareness across the business
Seniority
Individual Contributor