Назад
Company hidden
6 часов назад

Security & Compliance Lead (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US/Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security & Compliance Lead (AI): Building and scaling Phylo’s security, privacy, and compliance program for AI systems supporting biomedical research with an accent on SOC 2, ISO 27001, GDPR, HIPAA, and cloud security controls. Focus on leading audits, translating regulatory requirements into technical controls, automating evidence collection, and driving remediation across systems and vendors.

Location: Hybrid in Toronto or South San Francisco

Company

hirify.global is an applied research lab building agentic AI systems and the Biomni platform to accelerate biomedical discovery.

What you will do

  • Own and scale the security, privacy, and compliance roadmap.
  • Lead SOC 2, ISO 27001, and GDPR readiness, audits, evidence collection, and remediation.
  • Build HIPAA-ready processes for workloads involving protected health information.
  • Partner with engineers to implement scalable controls across cloud infrastructure, applications, and AI systems.
  • Lead customer security questionnaires, RFPs, due diligence, and security conversations.
  • Run risk assessments and automate evidence collection, monitoring, and compliance workflows.

Requirements

  • 5+ years of experience in security GRC, compliance, or a security engineering-adjacent role.
  • Experience leading SOC 2, ISO 27001, HIPAA, FedRAMP, or similar programs.
  • Strong understanding of cloud and application security.
  • Ability to translate regulatory requirements into practical technical controls.
  • Experience supporting audits and enterprise customer security reviews.
  • Strong cross-functional communication and program ownership with a pragmatic, hands-on approach.

Nice to have

  • Experience building a security program at an early-stage company.
  • Background in healthcare, life sciences, enterprise AI, or cloud infrastructure.
  • Experience with NIST SP 800-53, HITRUST, GDPR, or AI governance frameworks such as NIST AI RMF and ISO 42001.
  • Experience automating GRC and compliance workflows.

Culture & Benefits

  • Competitive salary and equity participation.
  • Medical, dental, and vision coverage, including therapy sessions and an eyewear stipend.
  • 401(k) and unlimited PTO for US employees.
  • Office lunches and snacks, regular team offsites, and company events.
  • Fast-paced culture focused on excellence, speed, and collaboration.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →