Senior Compliance Engineer, AI Governance
True Anomaly
Senior Compliance Engineer, AI Governance
True Anomaly seeks those with the talent and ambition to build the technology that secures space. True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.
Your Mission
We are seeking a rare combination of disciplines: an experienced Sr. Compliance Engineer with deep AI Subject Matter Expertise (SME) and export compliance background to join our Governance, Risk, and Compliance (GRC) team. This role is responsible for building, implementing, and sustaining the organizational compliance posture across key regulatory and security frameworks — with a primary emphasis on RMF (NIST 800-53 Rev. 5 + Classified Overlays), CMMC Level 3, NIST 800-171 Rev. 3, EAR/ITAR cyber regulations, and — critically - the governance, risk management, and compliance controls surrounding AI/ML systems and large language models (LLMs) deployed across the enterprise.
As AI becomes embedded in True Anomaly's operations, mission systems, and products, this role serves as the organizational authority on how AI capabilities are adopted, audited, and controlled responsibly. You will architect and operationalize compliance checkpoints and governance gates within LLM pipelines, evaluate AI vendors and platforms (including OpenAI, Anthropic Claude, and others) against classified and unclassified compliance requirements, and ensure AI-driven workflows satisfy both regulatory obligations and internal risk tolerance.
The ideal candidate brings deep GRC knowledge, hands-on AI/LLM engineering fluency, and the ability to engage credibly with compliance assessors, government partners, and internal AI/ML engineering teams alike.
Responsibilities
Compliance Program Execution
- Lead and support compliance assessment readiness across key organizational frameworks including NIST SP 800-171 Rev. 2 and 3, CMMC Level 3, NIST SP 800-53 Rev. 5, and the NIST Cybersecurity Framework (CSF).
- Provide direction on cybersecurity readiness to address EAR and ITAR-related controls and requirements.
- Drive CMMC readiness activities across the organization, including scoping, gap analysis, control implementation validation, evidence collection, and pre-assessment preparation.
- Review, maintain, and mature System Security Plans (SSPs) to accurately reflect organizational control implementations, system boundaries, and operational practices — including AI/ML system boundaries and data flows.
- Manage Plans of Actions and Milestones (POA&Ms), tracking open findings to resolution, communicating status to GRC leadership, and coordinating remediation efforts across responsible teams.
- Conduct internal compliance audits and control effectiveness reviews to ensure ongoing adherence to applicable frameworks and to surface emerging gaps before external assessments.
- Maintain audit-ready evidence repositories and documentation packages, ensuring traceability between controls, evidence, and framework requirements.
AI Governance, Risk & Compliance (AI-GRC)
- Serve as the organizational AI compliance SME — the primary authority on how AI/LLM systems (including OpenAI GPT models, Anthropic Claude, open-source models, and internally developed models) are evaluated, onboarded, and continuously governed within True Anomaly's compliance boundaries.
- Design, implement, and maintain compliance checkpoints and enforcement gates within LLM pipelines, including:
- Input/output filtering and content policy enforcement layers
- Prompt injection detection and mitigation controls
- Data classification guardrails to prevent CUI, ITAR-controlled, or classified data from flowing into non-authorized AI systems or endpoints
- Automated audit logging of AI interactions for traceability and incident investigation
- Model access control and role-based permissions within AI platforms
- Conduct AI-specific risk assessments, including evaluation of AI vendor data handling practices, model training data provenance, and third-party AI API security postures against NIST AI RMF, NIST SP 800-53 AI overlays, and internal standards.
- Develop and enforce an AI System Acceptable Use Policy and supporting standards that govern how employees and systems interact with LLMs, including permissible data inputs, output handling, human-in-the-loop requirements, and escalation procedures.
- Evaluate proposed AI/ML use cases for regulatory risk (EAR/ITAR, CMMC, data privacy) and provide compliance go/no-go determinations with documented rationale.
- Collaborate with AI/ML engineers and DevSecOps teams to integrate compliance gates into CI/CD pipelines and MLOps workflows, ensuring model changes and prompt changes undergo review before production deployment.
- Maintain an AI system inventory, tracking all deployed models, APIs, integrations, and associated risk and compliance status.
- Monitor emerging AI regulatory developments (e.g., EO 14110, NIST AI RMF, DoD AI Ethics Principles, EU AI Act implications for U.S. defense partners) and assess organizational impact.
Cross-Functional Compliance Enablement
- Serve as a primary GRC team resource for compliance questions, control guidance, and framework interpretation across engineering, IT, operations, legal, and security teams.
- Partner with IT and security operations teams to verify that technical controls — including access management, logging, configuration baselines, and incident response procedures — meet CMMC and NIST requirements at an organizational level.
- Partner with AI/ML engineers, data scientists, and product teams to embed compliance thinking into AI system design, model selection, and deployment architecture.
- Collaborate with the Enterprise Risk Manager and broader GRC leadership to ensure compliance findings — including AI-specific risks — are reflected in the enterprise risk register and remediation priorities.
- Support the development of compliance training and awareness materials, including AI-specific training that builds organizational understanding of responsible AI use, LLM risk, and CMMC obligations.
- Coordinate with external assessors, third-party auditors, and government partners during assessment engagements, serving as a knowledgeable point of contact for evidence walkthroughs and control discussions.
Qualifications
- 7+ years of experience in IT security compliance, GRC, or a closely related discipline, with direct ownership of compliance program activities.
- Demonstrated expertise in NIST SP 800-171, CMMC (Level 2 or 3), and NIST SP 800-53, with hands-on experience conducting gap assessments, implementing controls, and preparing organizations for external audits.
- Extensive, hands-on experience with AI/LLM systems, including practical knowledge of platforms such as OpenAI (GPT-4/o-series), Anthropic Claude, Meta Llama, Microsoft Azure OpenAI Service, and/or comparable commercial and open-source LLM ecosystems.
- Demonstrated ability to design, implement, and operationalize compliance controls within LLM pipelines, including guardrail layers, content filtering, audit logging hooks, and data classification enforcement.
- Working knowledge of AI security risks, including prompt injection, jailbreaking, data exfiltration via LLM outputs, model inversion, and supply chain risks associated with third-party AI APIs.
- Familiarity with NIST AI Risk Management Framework (AI RMF) and its application to enterprise and defense AI deployments.
- Strong understanding of SSP development and maintenance, POA&M management, and audit evidence lifecycle practices in an organizational (non-product) compliance context.
- Proven experience developing and operationalizing information security policies, standards, and procedures across a multi-disciplinary organization.
- Strong communication skills with the ability to explain compliance requirements — including AI risk concepts — clearly to both technical practitioners and non-technical business stakeholders.
- Highly organized, with demonstrated ability to manage multiple concurrent compliance workstreams and deadlines in a fast-paced environment.
- Active or ability to obtain SECRET or TS/SCI security clearance.
- Must be a U.S. citizen, lawful permanent resident, or protected individual per ITAR requirements (8 U.S.C. 1324b(a)(3)).
Preferred Qualifications
- Strong EAR/ITAR background as it pertains to cybersecurity, AI-generated outputs, and policy development.
- J.D. focusing on technology law, export compliance (EAR and ITAR), AI regulation, or cyber law.
- Experience building MLOps or AI DevSecOps pipelines with integrated compliance gates, including automated policy enforcement, prompt review workflows, or model change management processes.
- Hands-on experience with AI safety
- ...Despite massive investment in commercial AI, organizations often find that demonstrated... ...models. CTGT is the deterministic governance layer that enables the most important global... ...benchmarked on HaluEval, the CTGT Policy Engine (paired with GPT-120B OSS) outperformed frontier...SeniorFull time
- ...to safely deploy, monitor, and scale autonomous AI agents with full visibility and governance. Our platform unifies semantic observability, dynamic... .... Role Overview We are looking for a Senior Applied AI Engineer to join our on-site Research & Intelligence team...SeniorFull time
- ...monitor, and scale autonomous AI agents with full visibility and governance. Our platform unifies semantic... ...Role Overview We are seeking a Senior Software Engineer to design, build, and own core... ...Exposure to security-sensitive, compliance-oriented, or multi-tenant...SeniorFull time
- ...ESG (Environmental, Social, Governance). Put simply, we build... ...the Role We're hiring a Senior Software Engineer to join the Financial Audit... ...genuinely new. We're not bolting AI onto traditional workflows;... ..., audit, accounting, or compliance Prior work building AI or...SeniorFull timeWork from homeFlexible hours
$137k - $188k
...several IP-centric businesses, and leads government relations. Based out of our... ..., and reporting to the Forensic Engineering Manager, the Senior Compliance Engineer is a key member of the technical... ..., and gather intelligence. Use AI‑assisted tools to support product...SeniorFull timeWork at officeLocal areaRemote workWorldwide- ...mission to supply the critical minerals powering modern energy, AI, and defense technologies. We’re reimagining the minerals supply... ...Mariana Minerals is looking for a highly motivated Sr. Process Engineer to join our San Francisco Pilot Plant team. You will lead the design...Senior
- ...Description Job Description Senior Technical Governance Manager Description: ~... ...responsibly innovate with AI. As a Senior Technical... ...in AI/ML systems, ensuring compliance with data protection laws (... ...Privacy, InfoSec, Legal, AI/ML engineers, data scientists and other...Senior
$170k - $240k
...Senior Software Engineer - Observability and Reliability About the Role We are growing... ...package. About us: Sigma is the AI Apps and agentic analytics platform built... ...all without moving data or breaking governance. Sigma supports a spreadsheet interface...SeniorFull timeWork at officeFlexible hours$170k - $240k
...architecture. Hence, we are growing the engineering team and looking for engineers who are excited... ...package. About us: Sigma is the AI Apps and agentic analytics platform... ...workflows all without moving data or breaking governance. Sigma supports a spreadsheet interface,...SeniorFull timeWork at officeFlexible hours$240k - $270k
...Role At Sigma, we’re not just adding AI—we’re building the future of how people... ...That’s where you come in. As an AI/ML Engineer, you’ll join a growing team focused on building... ...all without moving data or breaking governance. Sigma supports a spreadsheet interface,...SeniorFull timeWork at officeFlexible hours- ...Mercury is seeking a Data & AI Governance leader to build and spearhead an enterprise-wide governance program... ...technical fluency to work effectively with Data, Engineering, Product, Information Security, Legal, Compliance, and business teams. This person should be comfortable...SeniorFull time
$160 per hour
...About the Role The Data Governance function is pivotal in ensuring the... ...that not only meet compliance requirements, but actively enable... ...company. As a Data Governance Engineer, you will develop and implement... ...downstream use cases, including AI applications You will be...SeniorFull time$188k - $282k
...operate. By combining frontier agentic AI, an enterprise-grade platform, and... ...just getting started.Role OverviewAs a Senior Software Engineer on the Security Engineering team at Harvey... ...authentication, authorization, access governance, secrets management, and privileged...SeniorFlexible hours$104.33k - $139.1k
...to enable organizations to use data and AI responsibly. Our platform simplifies the... ...with consent and preferences, automates the governance of data with integrated risk management... ...Challenge We’re looking for a Sr. Solutions Engineer (SE) based in Chicago who will report to...SeniorWork at officeLocal areaFlexible hours3 days per week1 day per week- ...Genentech in San Francisco, CA, is seeking a Senior Principal DSX Data Scientist to drive scalable statistical computing across Product... ...macros, partnering with biostatisticians, clinicians, and engineers. The role requires a PhD or Master’s in a quantitative field...Senior
$270k
...Description Job Description Senior Account Executive, SLED... ...Universities Operationalize AI at Scale Austin, TX (Preferred... ...The conversation around AI in government and higher education is... ...Operationalize AI with governance and compliance built in The result is a...SeniorLocal areaShift work$166k - $225k
...building and running the world's best data and AI infrastructure platform so our customers... ...with a unified, scalable, and governed platform to deploy and manage AI/ML models... ...with strong SLAs and cost efficiency.As a Senior Engineer, you’ll play a critical role in shaping...SeniorLocal areaWorldwide$200k - $250k
AI only answers correctly when it can trust the data underneath it. This role owns two... ...MCP, giving external agents structured, governed access to Sigma's data model; owning the... ...new AI capabilities emerge.Partner with engineering and design to ship integration and semantic...SeniorFull timeWork at office$102.5k - $187.9k
...With rapid growth across SAP and Governance, Risk, and Compliance (GRC), EY is seeking SAP Security and... ...Application Security and GRC solutions. As a Senior Consultant in Risk Technology, you... ...SAP technologies such as BTP, SAC, AI, or RPA What we offer you At...SeniorSummer holidayFlexible hoursShift work$210k - $250k
...build apps, agents and dashboards on top of governed enterprise data. Hence, we are growing... ...for all users.We're looking for a Senior Product Designer / Design Engineer who sits at the intersection of interaction design and AI engineering: someone who uses AI to ship...SeniorFull timeWork at office- ...is seeking a strategic leader to build and guide a high-performing team. This role encompasses overseeing data science, AI initiatives, and governance, ensuring robust data management. Candidates should possess 12+ years in analytics and proven success delivering...Senior
$150k - $165k
Harness is the AI Software Delivery Platform company, led by... ...application security, reliability, compliance, and cost optimization.... ...while maintaining security and governance throughout the entire... ...about solving it — developers, engineering and security leaders, and the...SeniorLocal areaImmediate startFlexible hoursShift work$161.3k - $241.9k
...services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep... .... We’re looking for a Production Engineer to help build and operate Harvey’s core compute... ..., secrets management, auditing, and compliance controls. Develop scalable...SeniorFull time$175k - $220k
...RoleWe are looking for a highly technical Senior Security Engineer who thrives on building security... ...through engineering, automation, and AI rather than relying solely on commercial... ...engineering, Incident response, access governance, and security operations.Use software...SeniorFull timeWork at office$160k
...About the RoleThe Data Governance function is pivotal in ensuring the... ...frameworks that not only meet compliance requirements, but actively... ...company. As a Data Governance Engineer, you will develop and implement... ...use cases, including AI applicationsYou will be involved...SeniorFull timeWork at officeLocal areaRemote work- Eko Health is seeking a Senior Product Manager, Enterprise, to own... ..., dashboards, and governance for health systems. You will... ...backlog for web and platform engineering, driving end-to-end lifecycle... ...partner across Data Science/AI, Regulatory, Sales, Marketing...Senior
- Walmart is seeking a Senior Counsel to provide strategic legal... ...initiatives. You will support HIPAA compliance, privacy programs, and... ...partnering with product, engineering and business leaders. This role... ...to regulatory risk, data governance, and fast-moving health tech...Senior
$190.9k - $334.1k
...It all started when engineer Fred Luddy wrote code that automated... ...work. Today, ServiceNow is the AI control tower for business reinvention... ...own. Trust, safety, and governance. Own the guardrails:... ...human-in-the-loop controls, and compliance infrastructure that make...SeniorFull timeWork experience placementWork at officeImmediate startRemote workFlexible hours$160k - $180k
...advertising through the intelligent application of AI and machine learning, Tatari helps some... ...an executive team of former founders and senior leaders from companies including Shazam,... ...We are looking for a Senior or Staff engineer to join engineering at Tatari, working...SeniorFull timeWork at officeLocal area2 days per week- ...Airbyte is the data and action layer for AI agents. We give agents fast, accurate, authenticated access to business data across... ...everyone, everywhere. That everyone now includes AI agents. Engineering Hiring Sprint: We're growing our engineering team and are...SeniorFull timeWork at officeLocal areaImmediate startFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Compliance Engineer, AI Governance. Be the first to apply!
- senior technical service engineer San Francisco, CA
- senior technical consultant San Francisco, CA
- senior director product management San Francisco, CA
- senior vice president human resources San Francisco, CA
- senior automation controls engineer San Francisco, CA
- senior grant accountant San Francisco, CA
- senior technical recruiter San Francisco, CA
- senior compliance officer San Francisco, CA
- senior tax San Francisco, CA
- senior firmware engineer San Francisco, CA



