Назад
Company hidden
3 часа назад

Security & Compliance Lead (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US/Australia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security & Compliance Lead (AI): Owning end-to-end security risk, GRC, SOC 2, ISO/IEC 27001 and ISO/IEC 42001 compliance for an AI-powered customer intelligence platform with an accent on compliance automation, enterprise security reviews, and emerging AI governance. Focus on building evidence and control monitoring tooling, developing hands-on AWS security engineering capabilities, and defining governance for AI systems and agentic workflows.

Location: Sydney, Australia; in person four days a week at the Surry Hills HQ

Company

hirify.global is an AI-powered customer intelligence platform that unifies feedback from sales calls, support tickets, research, and other customer touchpoints.

What you will do

  • Own the security risk function, including risk registers, product and feature assessments, mitigation tracking, and third-party risk management.
  • Run SOC 2, ISO/IEC 27001, and ISO/IEC 42001 certification and surveillance cycles, including control design, evidence collection, internal audits, and auditor relationships.
  • Support enterprise deals through security questionnaires, customer trust reviews, due diligence, and collaboration with sales and legal.
  • Build tooling to automate evidence collection, monitor control drift, and report security posture continuously.
  • Develop hands-on security engineering capabilities across detection and response, AWS cloud security posture, and vulnerability management.
  • Define AI governance for AI systems, model providers, and agentic features; contribute to incident response and security culture development.

Requirements

  • Deep experience running SOC 2 and ISO/IEC 27001 compliance programmes in a software business.
  • Technical credibility with engineers on cloud architecture and security controls.
  • Enterprise experience with customer procurement teams, security reviewers, questionnaires, and due diligence.
  • Interest in building automation and developing deeper hands-on security engineering skills.
  • Pragmatic, adaptable, quality-focused, and able to communicate risk and effort clearly to engineers, executives, and customer CISOs.
  • Availability to work in person four days per week from the Sydney office is required.

Nice to have

  • Familiarity with ISO/IEC 42001 and emerging AI assurance frameworks.
  • Experience with AWS security tooling such as GuardDuty, Security Hub, Inspector, and Detective.
  • Exposure to EKS, TypeScript, Pulumi, or Terraform.

Culture & Benefits

  • Individual contributor role reporting to engineering leadership in an in-person-first Sydney engineering environment.
  • Competitive base salary and equity options.
  • $3,000 learning and development allowance or up to $1,000 in wellness benefits.
  • Four weeks of accrued leave, floating public holidays, and additional Kit Kat days.
  • Up to four weeks of work from anywhere per year, plus parental leave and return-to-work support.
  • Additional four weeks of leave after four years and comprehensive US health, dental, vision, and 401(k) benefits where applicable.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →