AI Governance Engineer
$200,000–$260,000 year
HybridWestport, Connecticut, United States
Job Summary
Develop and manage the AI Secure Software Development Lifecycle (AI-SSDLC), including governance controls and an enterprise agent registry. Lead AI threat modeling, risk assessments, red team exercises, and security reviews for AI agents and platforms. Monitor AI systems for security, compliance, and behavioral risks; enforce governance standards and executive reporting. Partner with Legal, Privacy, Compliance, and Security teams to align AI programs with regulatory frameworks. Drive automation, process scalability, and reporting dashboards to improve governance efficiency. This role works across IT, Compliance, Legal, and every business unit building or consuming AI tools, serving as the primary SME on Agentic AI security for senior leadership and the board. The position requires a Bachelor's degree in Information Security, Risk Management, Computer Science, or a related field, with 5+ years of experience in information security, IT governance, risk management, compliance, or software engineering, including 2+ years of hands-on enterprise AI/automation experience. Approximately 10% travel is required both domestically and internationally.
Required Qualifications
- Bachelor's Degree or Diploma in Information Security, Risk Management, Computer Science, or a related field
- 5+ years of experience in information security, IT governance, risk management, compliance, or software engineering
- 2+ years of hands-on enterprise AI/automation experience
- Knowledge of AI in Power Automate, including AI Builder, agentic workflows, connector permissions, and audit logging
- Strong understanding of Model Context Protocol (MCP), trust boundaries, tool scoping, and AI agent security
- Expertise with Microsoft Purview, including DSPM for AI, DLP, sensitivity labels, audit logging, insider risk
- Experience with OWASP, STRIDE, PASTA, NIST, AI RMF, ISO/IEC
- Ability to develop scripts or low code solutions; Python, Powershell, or Power Platform and analyze security logs
- Approximately 10% travel required both domestically and internationally
Desired Qualifications
- Integrity and sound judgment in balancing AI innovation with risk management
- Expertise in AI governance, AI-SSDLC, and enterprise risk frameworks
- Strong knowledge of AI security, threat modeling, red teaming, and agentic AI architectures
- Ability to influence and collaborate across IT, Legal, Compliance, Privacy, and business teams
- Proven capability to design scalable governance processes, controls, and automation
- Executive-level communication skills with the ability to present complex AI risks and strategies to senior leadership and the board
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.