Cyber & AI Risk Analyst

29 minutes ago
Remote
Full-time
Junior
Artificial Intelligence and Machine Learning
Alpaca

Alpaca

Alpaca is a developer-first API for stock and crypto trading, offering easy-to-use APIs for building apps and trading algorithms.

Capital Markets
51-250
Founded 2015
$87M raised

Description

  • Support the execution of the cybersecurity risk management program.
  • Conduct cyber risk assessments across cloud infrastructure, APIs, trading systems, and internal platforms.
  • Identify, document, and evaluate AI-related risks such as model risk, data privacy, bias, explainability, adversarial threats, and model misuse.
  • Develop and maintain AI governance controls aligned with evolving regulatory expectations, including the EU AI Act.
  • Perform third-party and vendor security and AI risk assessments.
  • Contribute to control testing across frameworks such as SOC 2, ISO 27001, CSA Star, and NIST CSF.
  • Track remediation efforts and maintain risk registers and reporting dashboards.
  • Support internal and external audits by preparing documentation and evidence.
  • Monitor regulatory developments related to cybersecurity, financial services, and AI governance.
  • Help mature policies, standards, and procedures for cyber and AI domains.
  • Support a repeatable AI tool/model evaluation process for new and in-use AI tools.
  • Maintain AI logging and monitoring standards, including audit logging and evidence.
  • Use AI tools in day-to-day work and help test the effectiveness of AI-related controls.

Requirements

  • 1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field; internships, coursework, or equivalent experience are welcome.
  • Foundational understanding of cybersecurity principles, including network security, cloud security, IAM, application security, and vulnerability management.
  • Familiarity with common frameworks such as NIST CSF, ISO 27001, SOC 2, or similar.
  • Understanding of AI/ML concepts and associated risks, including data governance, model bias, hallucinations, prompt injection, and model misuse.
  • Strong written communication and documentation skills.
  • Ability to assess technical risks and communicate them clearly to non-technical stakeholders.
  • Experience working cross-functionally with engineering and product teams.
  • Highly organized with strong attention to detail.
  • Comfort working in a fast-paced environment.
  • Genuine curiosity about AI and a desire to learn, including daily use of AI tools and willingness to adopt newer agentic and assistant-based tooling.
  • Academic background, personal interest, or real-world experience in fintech, financial services, or trading platforms is preferred.
  • Exposure to AI governance, model risk management, or responsible AI programs is preferred.
  • Familiarity with emerging AI regulatory frameworks such as NIST AI RMF and EU AI Act concepts is preferred.
  • Experience with GCP or other major cloud platforms is preferred.
  • Experience supporting SOC 2, ISO 27001, or regulatory audits is preferred.
  • Security certifications such as Security+ or SSCP, or early-stage GRC certifications, are preferred.
  • Interest in pursuing advanced certifications such as CISA, CRISC, CISSP, or AI governance certifications is preferred.
  • Experience working remotely or in distributed teams is preferred.
  • Hands-on experience with AI or agentic tooling, such as AI coding assistants or LLM apps, is preferred.
  • Personal projects or self-study in AI/ML that show initiative and interest are preferred.

Benefits

  • Competitive salary with stock options.
  • Health benefits.
  • One-time USD $500 new hire home-office setup stipend.
  • USD $150 monthly stipend via Brex card.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Associate - 2nd Shift

Carvana 10K-50K Automotive

Carvana is hiring a Safe and Secure Associate to support gate operations, facility security, and inventory control at its Inspection Center and logistics site.

JIRA
14 minutes ago

Insider Threat Technical Lead

9th Way Insignia 51-250 Internet Software & Services

9th Way Insignia is seeking a remote Insider Threat Technical Lead to support USPTO’s established insider-risk program by leading Microsoft security tooling, analytics, and stakeholder guidance.

Cybersecurity JSON Penetration Testing SIEM Splunk YAML
2 days, 1 hour ago

Incident Responder

LastPass 251-1K IT Services

LastPass is hiring an Incident Responder to lead security investigations and incident response across its cloud environments, customers, and platform while strengthening detection and response capabilities.

Active Directory AWS Azure SIEM Wireshark
2 days, 1 hour ago

Risk Analyst (SQL), Card Payment Fraud

Binance 5K-10K Capital Markets

Binance is hiring a Fraud Risk Analyst, Card Payment to protect its card issuing business by monitoring and reducing real-time fraud losses across the card payments lifecycle.

Feature Engineering Machine Learning SQL
3 days, 1 hour ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers