Overview In this role, you will shape the enterprise AI risk and compliance posture to enable safe, rapid innovation for Verizon's enterprise and public sector products. You'll bridge security, risk, and AI governance, partnering with product and engineering to embed privacy and security by design. You'll lead audits, assess AI/ML risk, and report on risk at the executive level, influencing governance across the organization. This position offers a meaningful chance to impact how AI-enabled services protect customer data and trust.
Compensation / Benefits- medical, dental, vision insurance
- 401(k) match
- paid holidays and personal days
- parental leave and tuition assistance
- life and disability insurance
- discretionary incentives and total rewards
Responsibilities- Design and maintain enterprise AI Risk Management Framework aligned with NIST AI RMF, ISO 42001, and evolving regulations
- Lead end-to-end security audits (SOC 2 Type II, ISO 27001) including evidence collection and remediation tracking
- Assess third-party SaaS vendors and AI model providers for security, privacy, data handling, and regulatory compliance
- Perform risk assessments and threat modeling for AI/ML initiatives and LLM integrations
- Advise Product, Engineering, and Business leaders to embed Security & Privacy by Design in roadmaps
- Define metrics, KRIs, and dashboards for executive risk reporting on compliance and AI risks
Key requirements- Six+ years of progressive Information Security Risk Management, IT Audit, or GRC experience
- Experience evaluating risks in AI/ML systems, LLMs, data pipelines, or AI vendor tools
- Proven track record leading SOC 2 Type II audits, ISO 27001, or regulatory compliance programs
- Deep familiarity with NIST SP 800-/CSF, SOC 2 Type II, ISO 27001, PCI-DSS, HIPAA, and AI frameworks (NIST AI RMF, OWASP LLM Top 10)
- Basic understanding of cloud infrastructure (AWS/GCP/Azure), API security, data pipelines, SDLC
- Exceptional written and verbal communication
- Cross-functional collaboration
- Strategic advisory mindset
- NIST SP 800-/CSF
- SOC 2 Type II
- ISO 27001