TL;DR
Security and Compliance Manager (AI): Owning independent audits and regulatory programs for hirify.global's Conversational AI Platform with an accent on designing and operationalizing controls across multi-cloud environments, infrastructure, inference, and data platforms. Focus on building an evolving security controls library, assessing control effectiveness, and driving risk-based remediation while integrating security requirements into engineering workflows.
Location: On-site in San Francisco, CA
Company
hirify.global is creating an AI platform to help businesses build better, more human customer experiences.
What you will do
- Own independent audits and regulatory programs including ISO 42001, PCI DSS, NIST 800-53, FedRAMP, and HIPAA.
- Drive scope definition, readiness assessments, auditor engagement, remediation planning, and executive level reporting.
- Partner with Platform and Agent Engineering to design and operationalize controls across multi-cloud environments and AI platforms.
- Build a centralized and evolving security controls library and continuously assess control effectiveness.
- Define and enforce security baselines for cloud infrastructure, containerized workloads, Kubernetes, identity, encryption, logging, and network security controls.
- Design and operate automated compliance workflows using AI, infrastructure as code, and security tooling.
Requirements
- 8+ years of experience in security compliance or GRC within fast-growing technology companies.
- Deep expertise in security compliance frameworks including ISO 42001, PCI DSS, NIST 800-53, FedRAMP, and similar regulatory environments.
- A systems-oriented and engineering-focused GRC mindset.
- Experience owning complex audits and driving risk-based remediation across distributed teams.
- Hands-on experience with multi-cloud infrastructure (AWS, Azure, GCP).
- Strong experience implementing and automating security controls across cloud infrastructure, configuration management, container security, Kubernetes, encryption, identity, and authentication systems.
Nice to have
- Experience supporting AI platforms, fintech, healthcare, or other highly regulated environments.
- Familiarity with global regulatory environments including GDPR, DORA, the EU AI Act, and emerging security and AI governance requirements across APAC regions.
- Experience supporting public sector or FedRAMP aligned environments.
Culture & Benefits
- Flexible (Unlimited) Paid Time Off.
- Medical, Dental, and Vision benefits for you and your family.
- Life Insurance and Disability Benefits, and a Retirement Plan (401K) with hirify.global match.
- Parental Leave and fertility and family building benefits through Carrot.
- Lunch, as well as delicious snacks and coffee.
- Discretionary Benefit Stipend.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →