Назад
6 часов назад

Security Risk & Compliance, Agent Security (AI)

255 000 - 345 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Risk & Compliance, Agent Security (AI): Defining governance, security policies, and compliance controls for AI agents handling sensitive and regulated data with an accent on least-privilege access, human approval criteria, and auditable control frameworks. Focus on assessing agent-related risks, mapping controls to ISO 27001, ISO 42001, and the EU AI Act, and driving remediation with engineering teams.

Location: San Francisco, CA or New York City, NY; hybrid policy requires staff to work from an office at least 25% of the time

Annual salary: $255,000–$345,000 USD

Company

Anthropic builds reliable, interpretable, and steerable AI systems intended to be safe and beneficial for users and society.

What you will do

  • Author security policies and standards for building, deploying, and operating AI agents.
  • Define review and approval criteria for agents interacting with sensitive or regulated data.
  • Set data governance requirements covering least-privilege access, access reviews, and regulated data handling.
  • Monitor agent behavior and adapt governance requirements with security, research, and engineering teams.
  • Map agent security and data controls to ISO 27001, ISO 42001, and the EU AI Act to support auditable certifications.
  • Assess agent-related security and compliance risks, and own risk acceptance and exception policies through resolution.

Requirements

  • 8+ years of experience in security governance, risk, and compliance, including ownership of security policies and control standards at a technology company.
  • Experience protecting sensitive data, PII, or intellectual property through compartmentalization, identity, and access controls.
  • Ability to design least-privilege access and accountability controls for non-human identities and systems acting on behalf of people.
  • Ability to translate threat models into controls and explain trade-offs to engineers and auditors.
  • Experience defining risk-based reviews or approval criteria within engineering workflows.
  • Bachelor’s degree or equivalent education, training, or professional experience.

Nice to have

  • Understanding of the security properties of LLM agents.
  • Familiarity with AI governance and traditional security frameworks.
  • Experience adapting controls from regulated or highly sensitive environments to high-trust engineering cultures.
  • Certifications such as CISSP, CISM, CRISC, CISA, CCSP, ISO 27001, or ISO 42001.

Culture & Benefits

  • Collaborative environment spanning research, engineering, policy, and business functions.
  • Flexible working hours and office-based collaboration.
  • Competitive compensation, optional equity donation matching, generous vacation, and parental leave.
  • Visa sponsorship may be available, with immigration lawyer support, depending on the role and candidate.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →