Security Risk & Compliance, Data Centers & ComputePosted today$270K

The opportunity

As part of the Anthropic security department, the compliance team owns understanding security and AI safety expectations, as established by regulators, customers and (nascent) industry norms (which we also seek to influence). The compliance team uses this understanding to…

What you'll do

  • Understand how Anthropic's security and privacy capabilities across major: cloud platforms implement common frameworks (e.g., NIST 800-53, NIST 800-171, ISO 27001, ISO 27701, CSA CCM, and SOC 2).

  • Build scalable data center and hyperscaler processes and documentation: systems that will support future expansion to additional geographies and compliance frameworks.

  • Assess and mitigate security and operational risks, implementing corrective: actions, and managing vendor compliance.

  • Coordinate engagements with independent assessors to earn security and: privacy certifications and attestations important to Anthropic customers and enterprise partnerships, and to meet regulatory obligations.

  • Write, update and enact policies capturing security, privacy, and AI safety requirements.

  • Maintain and enhance Anthropic's system of security controls through audit: readiness, recordkeeping, and cross-functional communication.

What they're looking for

  • Have worked in AI/ML companies and understand unique security considerations: for model development and deployment
  • Have worked with cloud companies and understand cloud security controls and physical security requirements
  • Bring experience from high-growth technology companies managing rapid compliance expansion
  • Have some experience implementing automated enforcement of security controls (i.e., compliance as code)
  • Possess relevant certifications (CISA, CRISC, CISM, CISSP, or ISO 27001 Lead Auditor/Implementer)