Aura

GRC Engineer, AI & Privacy

Aura

full-time

Posted on:

Location: 🇺🇸 United States

Visit company website
AI Apply
Apply

Salary

💰 $100,000 - $135,000 per year

Job Level

Mid-LevelSenior

Tech Stack

AWSCloudPythonTerraform

About the role

  • Engineer and implement AI and Privacy controls across systems and services
  • Develop AI governance program using policy-as-code and industry standards (e.g., ISO 27001)
  • Perform technical control and risk assessments on new and existing AI systems
  • Advise engineering teams on secure architecture and design patterns for AI/ML
  • Support regular security audits and vulnerability assessments of AI systems with Information Security
  • Translate AI policies and privacy requirements into automated technical controls
  • Partner with Engineering, Data Science, MLOps, and Data Governance to design privacy-enhancing technologies and data governance controls
  • Lead selection and management of GRC tooling to monitor AI systems and automate evidence collection
  • Contribute to overall security and data strategy and stay abreast of AI security and privacy best practices

Requirements

  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • 3 - 5+ years of experience in a GRC, Information Security, or Cloud Security role
  • A self-starter mentality with the ability to work autonomously, manage competing priorities, and drive projects to completion in a fast-paced environment
  • Demonstrable experience implementing security controls for AI/ML systems and a strong understanding of privacy principles
  • Proficiency in a scripting language (e.g., Python) for automating compliance tasks
  • Experience with policy-as-code (PaC) concepts and tools (e.g., Open Policy Agent)
  • Strong understanding of cloud infrastructure management (ie: AWS), including networking, security groups, and IAM roles
  • Proven track record of working with security and privacy frameworks such as ISO 27001, PCI DSS, SOC 2, or US Data Privacy laws
  • Excellent communication and interpersonal skills
  • Experience with GRC and ticketing tools (Vanta, Jira) or Infrastructure-as-Code tools like Terraform is a plus