Назад
Company hidden
2 дня назад

Lead Security Analyst (AI Governance)

90 000 - 132 000$
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Security Analyst (AI Governance): Operating the governance, risk, and compliance program across security questionnaires, vendor assessments, SOC 2, privacy, and access governance with an accent on safe AI adoption and regulatory alignment. Focus on building repeatable AI risk assessment and intake processes, maintaining security controls and inventories, and translating technical risk into clear stakeholder communications.

Location: Minneapolis, United States; frequent paid travel to the Minneapolis headquarters is required for company and team events and in-person collaboration.

Salary: $90,000–$132,000 annually, inclusive of a 20% bonus.

Company

hirify.global is an independent full-funnel media, measurement, creative, and MarTech firm helping brands improve media programs and achieve sustainable growth through its EMRge platform.

What you will do

  • Own client security questionnaires, vendor security assessments, SOC 2 evidence collection, control monitoring, and audit support.
  • Maintain the risk register, security policies, contractual security obligations, and data privacy operations covering CCPA and GDPR.
  • Operate AI tool and vendor intake, perform AI risk assessments, maintain inventories and policies, and manage exceptions.
  • Deliver secure-AI enablement through training, office hours, and onboarding for approved tools.
  • Manage security awareness training, phishing simulations, security communications, and employee security questions.
  • Coordinate access reviews, security metrics, threat intelligence reporting, alert triage support, incident documentation, and business continuity testing.

Requirements

  • Two-year or four-year degree in information security, information technology, business, or a related field, or 3+ years of equivalent experience.
  • 2–5 years of experience in security analysis, GRC, IT audit, compliance, or a similar role.
  • Working knowledge of SOC 2, NIST CSF, or ISO 27001, with experience handling questionnaires, vendor assessments, or audits.
  • Familiarity with CCPA, GDPR, and other data privacy requirements.
  • Hands-on experience with generative AI tools and strong interest in AI governance and safe adoption.
  • Excellent written communication, organization, attention to detail, and stakeholder collaboration skills.

Nice to have

  • Security+, CISA, CRISC, or CIPP certification.
  • Experience with Vanta, Drata, or similar compliance automation platforms.
  • Knowledge of NIST AI RMF, ISO/IEC 42001, or OWASP GenAI Security.
  • Exposure to SIEM, EDR, M365, Google Workspace, or basic Python scripting.
  • Experience handling personal information or other regulated data.

Culture & Benefits

  • Trust-based, transparent, inclusive workplace with close access to senior leaders.
  • Access to office spaces in Minneapolis, New York City, and Chicago.
  • Generous paid vacation, sabbatical program, 401(k) match, and health insurance.
  • Family formation benefits, mobile phone and data stipend, and charitable giving match.
  • Paid travel to Minneapolis for company, team, and in-person collaboration events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →