The opportunity
Governance, Risk, and Compliance (GRC) is foundational to Security delivering mission outcomes at OpenAI. The GRC team provides security assurances and builds compliance for OpenAI’s technology, people, and products.
What you'll do
Strong technical product lifecycle assurance and security and privacy: compliance experience working in high velocity, low friction development environments.
Experience building technical controls, metrics, monitoring tools, CI/CD: tooling, high-fidelity risk signals and dashboards to meet product assurance goals
Ability to run an end-to-end, cross-functional, product assurance program: applying judgement where what type of process or controls should be in place to meet a high assurance bar
Capacity to shift product assurance to the left in the product development: cycle with just-in-time controls, guidance, guardrails and responsible friction for developers
Low ego outcome oriented mindset to achieve the product assurance goal required for OAI’s mission
Strong technical cross-functional leadership and don’t work in a vacuum: they influence, align and direct partner teams to achieve product assurance goals.
What they're looking for
- Exercise sound judgement in making high-stakes decisions related to product launch risk and controls.
- The end-to-end effective operation of OAI’s product assurance program from: product development to post-launch (continuous) monitoring
- Owning the GRC product assurance program, providing governance over Safety,: Deployment, Security, Legal reviews to ensure we effectively surface product risk and design scalable mitigations
- Driving cross-function collaboration and accountability in all aspects of the product assurance program