AI Security Manager
On-site · Madrid, Madrid, Spain
Job Summary
AI Security Manager responsible for ensuring AI systems are secure, resilient, and compliant with regulatory and internal risk standards. Defines AI security policies aligned with frameworks (e.g., NIST AI RMF, ISO), conducts AI risk assessments including ethical, legal, and privacy considerations, ensures regulatory compliance (e.g., EU AI Act, data protection laws), and maintains audit trails. Leads security across the AI/ML lifecycle (data ingestion, training, deployment, inference), embeds secure-by-design principles, mitigates risks such as model inversion and adversarial attacks, and implements secure MLOps practices. Leads threat modeling, vulnerability assessment, incident readiness, and governance across AI initiatives; collaborates with AI/Innovation teams and cross-functional stakeholders to translate risk into business impact and ensure resilience and incident response readiness.
Required Qualifications
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Security, Data Science, or related discipline
- Advanced certifications in security or risk management (e.g., CISSP, CISM, CRISC) preferred
- 7–10+ years of experience in cybersecurity, information security, or technology risk management
- Proven experience in governance, risk, and compliance (GRC) and/or security architecture roles
- Hands-on exposure to AI/ML systems, data platforms, or advanced analytics environments
- Experience implementing or aligning with security frameworks (e.g., NIST, ISO 27001)
- Demonstrated involvement in incident response, threat modeling, or resilience planning
- Experience working cross-functionally with technology, engineering, data science, and legal/compliance teams
- Fluent English written & spoken
- Strong understanding of AI/ML concepts, including the full model lifecycle and MLOps practices
- Knowledge of AI-specific threats such as adversarial attacks, prompt injection, and model leakage
- Cloud security, APIs, and data protection in distributed environments
- Ability to design and implement risk-based control frameworks for emerging technologies
- Clear communication skills to articulate risk, trade-offs, and control effectiveness
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.