Senior Compliance Engineer, AI Governance
True Anomaly
Senior Compliance Engineer, AI Governance
Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it.
True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.
Our Values
- Be the offset. We create asymmetric advantages with creativity and ingenuity.
- What would it take? We challenge assumptions to deliver ambitious results.
- It's the people. Our team is our competitive advantage and we are better together.
Your Mission
We are seeking a rare combination of disciplines: an experienced Sr. Compliance Engineer with deep AI Subject Matter Expertise (SME) and export compliance background to join our Governance, Risk, and Compliance (GRC) team. This role is responsible for building, implementing, and sustaining the organizational compliance posture across key regulatory and security frameworks — with a primary emphasis on RMF (NIST 800-53 Rev. 5 + Classified Overlays), CMMC Level 3, NIST 800-171 Rev. 3, EAR/ITAR cyber regulations, and — critically - the governance, risk management, and compliance controls surrounding AI/ML systems and large language models (LLMs) deployed across the enterprise.
As AI becomes embedded in True Anomaly's operations, mission systems, and products, this role serves as the organizational authority on how AI capabilities are adopted, audited, and controlled responsibly. You will architect and operationalize compliance checkpoints and governance gates within LLM pipelines, evaluate AI vendors and platforms (including OpenAI, Anthropic Claude, and others) against classified and unclassified compliance requirements, and ensure AI-driven workflows satisfy both regulatory obligations and internal risk tolerance.
The ideal candidate brings deep GRC knowledge, hands-on AI/LLM engineering fluency, and the ability to engage credibly with compliance assessors, government partners, and internal AI/ML engineering teams alike.
Responsibilities
- Lead and support compliance assessment readiness across key organizational frameworks including NIST SP 800-171 Rev. 2 and 3, CMMC Level 3, NIST SP 800-53 Rev. 5, and the NIST Cybersecurity Framework (CSF).
- Provide direction on cybersecurity readiness to address EAR and ITAR-related controls and requirements.
- Drive CMMC readiness activities across the organization, including scoping, gap analysis, control implementation validation, evidence collection, and pre-assessment preparation.
- Review, maintain, and mature System Security Plans (SSPs) to accurately reflect organizational control implementations, system boundaries, and operational practices — including AI/ML system boundaries and data flows.
- Manage Plans of Actions and Milestones (POA&Ms), tracking open findings to resolution, communicating status to GRC leadership, and coordinating remediation efforts across responsible teams.
- Conduct internal compliance audits and control effectiveness reviews to ensure ongoing adherence to applicable frameworks and to surface emerging gaps before external assessments.
- Maintain audit-ready evidence repositories and documentation packages, ensuring traceability between controls, evidence, and framework requirements.
AI Governance, Risk & Compliance (AI-GRC)
- Serve as the organizational AI compliance SME — the primary authority on how AI/LLM systems (including OpenAI GPT models, Anthropic Claude, open-source models, and internally developed models) are evaluated, onboarded, and continuously governed within True Anomaly's compliance boundaries.
- Design, implement, and maintain compliance checkpoints and enforcement gates within LLM pipelines, including:
- Input/output filtering and content policy enforcement layers
- Prompt injection detection and mitigation controls
- Data classification guardrails to prevent CUI, ITAR-controlled, or classified data from flowing into non-authorized AI systems or endpoints
- Automated audit logging of AI interactions for traceability and incident investigation
- Model access control and role-based permissions within AI platforms
- Conduct AI-specific risk assessments, including evaluation of AI vendor data handling practices, model training data provenance, and third-party AI API security postures against NIST AI RMF, NIST SP 800-53 AI overlays, and internal standards.
- Develop and enforce an AI System Acceptable Use Policy and supporting standards that govern how employees and systems interact with LLMs, including permissible data inputs, output handling, human-in-the-loop requirements, and escalation procedures.
- Evaluate proposed AI/ML use cases for regulatory risk (EAR/ITAR, CMMC, data privacy) and provide compliance go/no-go determinations with documented rationale.
- Collaborate with AI/ML engineers and DevSecOps teams to integrate compliance gates into CI/CD pipelines and MLOps workflows, ensuring model changes and prompt changes undergo review before production deployment.
- Maintain an AI system inventory, tracking all deployed models, APIs, integrations, and associated risk and compliance status.
- Monitor emerging AI regulatory developments (e.g., EO 14110, NIST AI RMF, DoD AI Ethics Principles, EU AI Act implications for U.S. defense partners) and assess organizational impact.
Cross-Functional Compliance Enablement
- Serve as a primary GRC team resource for compliance questions, control guidance, and framework interpretation across engineering, IT, operations, legal, and security teams.
- Partner with IT and security operations teams to verify that technical controls — including access management, logging, configuration baselines, and incident response procedures — meet CMMC and NIST requirements at an organizational level.
- Partner with AI/ML engineers, data scientists, and product teams to embed compliance thinking into AI system design, model selection, and deployment architecture.
- Collaborate with the Enterprise Risk Manager and broader GRC leadership to ensure compliance findings — including AI-specific risks — are reflected in the enterprise risk register and remediation priorities.
- Support the development of compliance training and awareness materials, including AI-specific training that builds organizational understanding of responsible AI use, LLM risk, and CMMC obligations.
- Coordinate with external assessors, third-party auditors, and government partners during assessment engagements, serving as a knowledgeable point of contact for evidence walkthroughs and control discussions.
Qualifications
- 7+ years of experience in IT security compliance, GRC, or a closely related discipline, with direct ownership of compliance program activities.
- Demonstrated expertise in NIST SP 800-171, CMMC (Level 2 or 3), and NIST SP 800-53, with hands-on experience conducting gap assessments, implementing controls, and preparing organizations for external audits.
- Extensive, hands-on experience with AI/LLM systems, including practical knowledge of platforms such as OpenAI (GPT-4/o-series), Anthropic Claude, Meta Llama, Microsoft Azure OpenAI Service, and/or comparable commercial and open-source LLM ecosystems.
- Demonstrated ability to design, implement, and operationalize compliance controls within LLM pipelines, including guardrail layers, content filtering, audit logging hooks, and data classification enforcement.
- Working knowledge of AI security risks, including prompt injection, jailbreaking, data exfiltration via LLM outputs, model inversion, and supply chain risks associated with third-party AI APIs.
- Familiarity with NIST AI Risk Management Framework (AI RMF) and its application to enterprise and defense AI deployments.
- Strong understanding of SSP development and maintenance, POA&M management, and audit evidence lifecycle practices in an organizational (non-product) compliance context.
- Proven experience developing and operationalizing information security policies, standards, and procedures across a multi-disciplinary organization.
- Strong communication skills with the ability to explain compliance requirements — including AI risk concepts — clearly to both technical practitioners and non-technical business stakeholders.
- Highly organized, with demonstrated ability to manage multiple concurrent compliance workstreams and deadlines in a fast-paced environment.
- Active or ability to obtain SECRET or TS/SCI security clearance.
- Must be a U.S. citizen, lawful permanent resident, or protected individual per ITAR requirements (8 U.S.C. 1324b(a)(3)).
- A global professional services firm based in San Francisco seeks a Senior Associate in Cybersecurity to develop innovative AI-driven solutions. You will leverage your skills in software development and AI/ML to address complex cybersecurity challenges, mentor team members...Senior
$77k - $202k
...% At PwC, our people in risk and compliance focus on maintaining regulatory compliance... ...our clients through innovative, AI-driven solutions. As a Senior Associate, you will analyze complex... ...in software development or AI/ML engineering What Sets You Apart - Master...SeniorFull timeH1b$124k - $280k
..., our people in risk and compliance focus on maintaining regulatory... ...through innovative, AI-driven solutions. As a Senior Manager, you will lead... ...strategy, transformation and engineering projects and teams... ...enterprise-wide cyber risk governance frameworks Develop thorough...SeniorFull timeH1b- A tech-driven company focused on blockchain solutions is seeking a Senior ML Systems Engineer. In this role, you will build reusable workflows, automate model versioning, and deploy scalable AI systems. Candidates should have strong programming skills, experience with...Senior
- ...based in San Francisco is searching for a Senior Solutions Engineer to lead the technical side of sales.... ...strong expertise in cybersecurity and AI infrastructure, with responsibilities... ...opportunities for innovation in AI governance and requires US citizenship with a travel...Senior
- Gusto is seeking a Compliance Lead for its Retirement Compliance Team in San Francisco. This senior role entails owning the compliance programs for the Registered Investment Adviser and Broker-Dealer entities, ensuring frameworks and controls align with regulatory requirements...Senior
- A leading fintech company is seeking a Senior Lead Counsel for Data & Privacy with key... ...with experience in cybersecurity and AI governance. Ideal candidates will possess excellent... ...communication skills and a proactive approach to compliance. Join us to make an impactful...Senior
$165k - $220k
...through the responsible use of data and AI. We believe that ensuring data is... ...looks like. OneTrust, the AI-Ready Governance Platform™, unifies regulatory intelligence... .... The Challenge As a Senior Principal Software Engineer, you will serve as a technical...SeniorWork experience placementWork at officeLocal areaWorldwideFlexible hours3 days per week1 day per week- A healthcare AI venture studio in San Francisco seeks a General Counsel to oversee legal matters across its spinout companies. You will manage corporate governance, commercial contracts, and regulatory compliance while supporting fundraising activities. The ideal candidate...SeniorContract work
- ...leading technology firm in San Francisco is seeking an experienced attorney to manage AI governance. You will lead the design and implementation of privacy-centric policies and oversee compliance with various international laws. This role requires extensive experience in...Senior
$137k - $188k
...several IP-centric businesses, and leads government relations. Based out of our... ..., and reporting to the Forensic Engineering Manager, the Senior Compliance Engineer is a key member of the technical... ..., and gather intelligence. Use AI‑assisted tools to support product...SeniorFull timeWork at officeLocal areaRemote workWorldwide- Join Dynamo AI (YC W22), an AI governance and cybersecurity company protecting the world’s most advanced LLM deployments. Backed by 40 of... ...do too, you’ll fit right in. About the role As a Senior Solutions Engineer , you’ll be the technical heartbeat of Dynamo’s go‑to...Senior
- ...Security & Compliance Engineer San Francisco • Hybrid • Full-time BackOps AI is transforming supply chain operations with agentic AI solutions that automate... ...management, network/security hardening, backup governance, and data retention/deletion Drive audit readiness...Full timeRemote workFlexible hours
- ...Senior AI/ML Engineer — LLM & Agent Stack Every production AI system, whether it's powering... ...way to orchestrate agents and enforce governance. A unified compute layer to run it all... ...hybrid deployments, data residency, compliance requirements. Background in security...Senior
- ...with seamless automation. As a Research Engineer at Capably, you’ll help define how intelligent... ...help push beyond what today’s enterprise AI tools can reliably deliver. Research and... ...in production, with built‑in security, governance, and auditability. Success in this role...
- ...Senior Compliance Automation Engineer Denver, CO or Long Beach, CA or SF Bay area, CA or Washington, DC Space is a warfighting domain. True Anomaly... ...a Senior Compliance Automation Engineer to join our Governance, Risk, and Compliance (GRC) team and design and build...SeniorWork experience placement
$225k - $290k
...data quality, contracts, and governance; designing scalable reliability... ...the data landscape. As a senior technical leader, you will also... ...investments, define best-in-class data engineering practices, and lead complex,... ...Experience leveraging AI tools and methodologies to...SeniorFlexible hours- Vapi is seeking a Principal Product Manager to drive governance and compliance in voice AI. You will map enterprise deal obstacles, improve metrics, and enhance the product for regulated industries. Ideal candidates have 8+ years in product management within a technical...Flexible hours
$77k - $202k
...Senior Associate, Enterprise Risk And Controls Solutions... .... They evaluate compliance with regulations including assessing governance and risk management processes... ...services, using AI and other risk technology... ...Administration/Management, Engineering, Accounting &...Senior$50 - $150 per hour
A leading AI company is seeking a software engineer to review and evaluate model-generated code. This contract role requires several years of software engineering experience, particularly as a full-stack engineer at notable tech firms. You will assess code quality and provide...SeniorHourly payContract workFlexible hours- A leading AI technology firm in San Francisco seeks a Senior Research Engineer to develop advanced conversational AI models. The role involves enhancing model capabilities and integrating them into production systems. Candidates should have over 5 years of experience in...SeniorFlexible hours
$163.5k - $218k
A leading technology company in San Francisco is seeking a Principal Software Engineer to develop and support AI governance tools. The ideal candidate has 8+ years of experience in software engineering, with extensive knowledge in Java/J2EE, REST, and agile methodologies...- Zep AI (YC W24) is hiring a Senior Applied Research Engineer to explore novel memory and context generation approaches, taking research to production. The ideal candidate has over 6 years of production engineering experience with strong backend systems focus. Key qualifications...Senior
$272k - $336k
...billions in simulation across 15+ U.S. states. Waymo's Systems Engineering team works together to blend software and hardware systems in... ...g., UNECE requirements and Type Approval processes) to close compliance gaps. Represent technical teams and concepts accurately and...SeniorOdd jobFull timeRemote work- ...Senior/Staff ML Research Engineer We're assisting a profitable Enterprise AI Customer Support startup with their search for senior/staff ML research engineers. The role will be onsite in their SF office. What You'll Do: Develop models for customer support tasks...SeniorWork at office
$50 - $150 per hour
A leading AI company in San Francisco is seeking a Mid-Senior level contractor to improve large language model performance through software engineering expertise. The role involves leading projects, evaluating code quality, and collaborating with the team. Ideal candidates...SeniorContract workFor contractorsFlexible hours$157k - $281.93k
A leading design software company seeks a Senior Principal Content Strategist. This role involves defining content strategy for AI-driven experiences, partnering with cross-... ...functional teams, and establishing content governance standards. Candidates should have over 12...Senior$77k - $202k
...Management Level Senior Associate Job Description... .... They evaluate compliance with regulations including assessing governance and risk management processes... ...services, using AI and other risk technology... ...Administration/Management, Engineering, Accounting &...SeniorH1bRemote work- ...Senior AI Architect – Multi-Agent Systems & Platform Infrastructure... ...& Orchestration / Head of Engineering Seniority: Senior-Level (... ...private investments, and family governance through a secure, multi-... ...architecture grounded in privacy, compliance, and long-term legacy...SeniorFull timeWork at officeRemote work
$261k - $326k
A technology company specializing in AI infrastructure is seeking a Principal Engineer to enhance reliability and scalability of cloud systems. This role demands over 15 years of experience in production engineering or related fields and involves setting technical directions...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Compliance Engineer, AI Governance. Be the first to apply!
- regulatory compliance engineer San Francisco, CA
- compliance engineer San Francisco, CA
- senior development executive San Francisco, CA
- senior technical manager San Francisco, CA
- senior procurement specialist San Francisco, CA
- senior software development engineer in test San Francisco, CA
- senior manager data science San Francisco, CA
- senior platform engineer San Francisco, CA
- senior procurement San Francisco, CA
- senior director product management San Francisco, CA

