Lead security initiatives for Sierra’s Conversational AI Platform spanning data protection, identity and access management, infrastructure hardening, change management, operational resilience, and vulnerability management.
Bring structure, visibility, and accountability to critical security programs, aligning them with company growth and customer trust goals.
Shape compliance readiness by aligning with frameworks such as ISO 42001, ISO 27001, PCI DSS, SOC 2, HIPAA, and the EU AI Act and translating these into actionable controls and scalable processes.
Build a security-first culture by designing awareness programs that empower every team member.
Embed trust by design, partnering with Product, Platform, and Agent Engineering to integrate security, privacy, and responsible AI practices into the stack.
Collaborate across Product, Platform Engineering, Agent Development, Legal, Operations, Sales, and GTM to embed security and compliance across the tech stack.
Requirements
Deep understanding of first principles in security and privacy
Strong command of standards like ISO 27001, ISO 42001, PCI DSS, SOC 2, HIPAA, and the EU AI Act
Product intuition: understanding of product data flows, agent behavior, and scalable infrastructure
Adaptability and ability to build in motion and solve ambiguous problems quickly
Strong communication skills to explain risks and trade-offs to engineers and customers
Experience operating in regulated/high-trust sectors (tech, fintech, healthcare, or AI) (preferred)