
AI Security & Controls Lead
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Illinois.
• Develop, implement, and assess security and risk controls specifically for AI throughout its lifecycle.
• Collaborate with AI engineers, developers, as well as information security, privacy, governance, and risk teams to establish standards for AI security and risk management.
• Convert enterprise security principles and risk frameworks into guidance relevant to AI.
• Tackle issues such as model access control, prevention of abuse, security of prompts and context, data leakage, risks of memorization and inference, and safeguards for agent autonomy.
• Establish expectations for AI runtime monitoring and incident response.
• Ensure that AI security guidance remains aligned with advancing technological trends, external standards, and internal frameworks.
• Align security requirements with AI governance policies, controls, and standards.
• Identify AI-specific risks posed by vendors, models, platforms, and APIs.
• Set expectations for AI security controls concerning vendors and managed services.
• Assist in assessing vendor AI security posture, due diligence, onboarding, and ongoing risk evaluations.
• Counsel AI engineering, product, privacy, and security teams on the safe design and deployment of AI systems.
• Offer practical guidance that balances stringent security measures with business agility.
• Aid teams in implementing secure-by-design AI solutions without creating unnecessary obstacles.
• Over 5 years of pertinent experience or equivalent expertise in information security, technology risk, AI governance, model risk management, privacy engineering, or similar roles.
• In-depth understanding of AI architectures, machine learning pipelines, retrieval-augmented generation (RAG), and agentic and tool-utilizing AI patterns.
• Capability to convert technical AI and security concepts into clear control expectations and guidance.
• Experience in cross-functional collaboration with engineering, security, privacy, and risk teams.
• A practical, risk-oriented mindset complemented by strong judgment and attention to detail.
• Outstanding written communication skills with the ability to produce clear, defensible documentation.
• Relevant certifications are preferred, such as AAISM, CISSP, CISM, CRISC, AIGP, or cloud security certifications.
• A Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience.
• Must possess work authorization in the United States without the need for current or future visa sponsorship.
• Health, dental, and vision coverage starting from Day One.
• Wellbeing programs.
• Retirement plans with contribution matching.
• Generous time off policies.
• Parental leave.
• Opportunities for continuing education.
• Career advancement prospects.
• Flexible working arrangements.
• Competitive total rewards package.
• Continuing education and training.
• Bonus and/or incentive eligibility based on role and level.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.