Job Description & Details
This role sits right at the chaotic intersection of rapid AI adoption and enterprise security governance. If you like the challenge of building guardrails for generative AI and model risk without completely grinding innovation to a halt, this contract position is worth a hard look.
What You'll Actually Be Doing
You'll spend your days acting as the crucial translation layer between security leadership, legal teams, and the engineers actually building out AI guardrails. Your primary mission is turning complex risk frameworks and compliance mandates into clean, actionable Jira tickets. You won't be writing code, but you will be running sprint planning, constantly grooming backlogs for AI/ML risk assessment tools, and arguing for the right prioritization when security needs clash with delivery timelines.
The Core Tech Stack
You need a deep, working fluency in AI/ML lifecycle risks—think prompt injection, data poisoning, and model drift—alongside a solid command of frameworks like the NIST AI RMF and ISO/IEC 42001. The team relies heavily on Agile methodologies and standard backlog management tools like Jira, so you'll need to prove you can wrangle stakeholders across GRC, data science, and architecture without losing your sanity.
Interview Expectations
Expect the hiring manager to throw a realistic scenario at you about a business unit wanting to deploy a customer-facing LLM next week while security screams about prompt injection vulnerabilities. They want to see how you balance risk mitigation with business velocity, so don't just quote compliance frameworks—show them how you negotiate tradeoffs. You'll also likely be quizzed on how you break down ambiguous regulatory mandates into concrete engineering user stories with testable acceptance criteria.
Application Advice
Your resume needs to immediately highlight your experience balancing product management with cybersecurity, GRC, or heavy data governance. Make sure keywords like NIST AI RMF, backlog grooming, and AI/ML risk are front and center so you clear the ATS filters. If you have actually stood up an AI governance program from scratch or dealt with retail compliance, put that right at the top of your summary.