Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead, Security Controls Assurance - SOX (AI/Security Compliance): Defining and validating SOX IT general controls for financially significant technology systems with an accent on control design, continuous monitoring, and automated evidence collection. Focus on integrating auditability, segregation of duties, immutable logging, and evidence retention into engineering systems while driving remediation across Engineering, Finance, and Internal Audit.
Location: San Francisco, Seattle, New York City, or Washington, DC; hybrid, with staff expected to work from an office at least 25% of the time
Annual salary: $410,000–$510,000 USD
Company
Anthropic builds reliable, interpretable, and steerable AI systems intended to be safe and beneficial for users and society.
What you will do
- Define SOX ITGC requirements and acceptance criteria across logical access, change management, computer operations, and program development.
- Design control requirements into financially significant engineering systems before they go live, including auditability, segregation of duties, immutable logging, and evidence retention.
- Review infrastructure, system, and agent framework changes for SOX scope and control impact.
- Build continuous control monitoring and automated evidence collection, including control testing, walkthrough preparation, population validation, and framework mapping.
- Drive root-cause analysis and remediation of ITGC deficiencies with Engineering, Internal Audit, and external auditors.
- Assess new products, entities, systems, and integrations while aligning SOX controls with SOC 2, ISO 27001/42001, and other compliance frameworks.
Requirements
- Leadership or senior-contributor experience with an ITGC program through SOX 404 readiness or at a public company.
- Working knowledge of PCAOB AS 2201, COSO 2013, and external-auditor technology-control testing and deficiency evaluation.
- Engineering fluency, including the ability to read code and Terraform, follow CI/CD pipelines, and assess technical designs.
- Programming experience in Python or a systems language such as Go, Rust, or C/C++.
- Deep familiarity with developer platforms, release engineering, cloud infrastructure, or ERP and financial-systems controls.
- Bachelor’s degree or equivalent education, training, or relevant experience; use of Claude and other LLMs as daily work tools.
Nice to have
- Big Four or equivalent audit/advisory experience combined with in-house experience at an AI-focused technology company.
- Experience with first-year SOX 404(a) and 404(b) assessments, external ITGC audits, or controls for financially significant custom systems.
- Experience with AI/ML systems, production agents, continuous controls monitoring, automated evidence programs, SOC 1 reliance, or service-organization control mapping.
- CISSP, CISA, CPA, or an equivalent certification.
Culture & Benefits
- Collaborative environment focused on safe, trustworthy, and beneficial AI research.
- Flexible working hours and hybrid office collaboration.
- Competitive compensation, optional equity donation matching, generous vacation, and parental leave.
- Visa sponsorship may be available, with immigration-lawyer support, depending on the role and candidate.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
11 дней назад
Staff Infrastructure Security Engineer (USA)
168 000 - 238 000$
11 дней назад
Senior Cyber Security Engineer - Automation, Data Center & Networking Security
160 000 - 240 000$
9 дней назад
Identity & Corporate Security Engineer (AI)
160 000 - 190 000$
9 дней назад
Principal Security Engineer, Orchestration and Automation (AI)
117 200 - 157 500$
Asana
10 дней назад
Director of Security Engineering (Cybersecurity)
306 000 - 360 000$
5 дней назад