Skip to content
AlpacaAlpacaUnited States

Cyber & AI Risk Analyst

Cyber & AI Risk Analyst supporting cybersecurity risk assessments, AI governance controls, and compliance for a fintech brokerage platform. Requires foundational cyber knowledge, understanding of AI risks, and strong communication skills; 1+ years experience preferred but internships welcome.

Salary not listed
Remote1+ YOEOther

About the role

Responsibilities

  • Support the execution of Alpaca’s cybersecurity risk management program
  • Conduct cyber risk assessments across cloud infrastructure, APIs, trading systems, and internal platforms
  • Identify, document, and evaluate AI-related risks (model risk, data privacy, bias, explainability, adversarial threats, model misuse)
  • Develop and maintain AI governance controls aligned with evolving regulatory expectations such as the EU AI Act
  • Perform third-party/vendor security and AI risk assessments
  • Contribute to control testing across frameworks such as SOC 2, ISO 27001, CSA Star, NIST CSF, and emerging AI governance standards
  • Track remediation efforts and maintain risk registers and reporting dashboards
  • Support internal and external audits by preparing documentation and evidence
  • Monitor regulatory developments related to cybersecurity, financial services, and AI governance
  • Mature policies, standards, and procedures for both cyber and AI domains
  • Develop a repeatable AI tool/model evaluation process (intake → review → decision) for new and in-use AI tools
  • Support Alpaca's AI usage guidance and standards, including safe use of AI-enabled developer tools and assistants
  • Maintain AI logging/monitoring standards (audit logging, evidence) for AI systems
  • Use AI tools in day-to-day work and help test how well AI-related controls are working

Requirements

  • 1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field (internships, coursework, or equivalent experience welcome)
  • Foundational understanding of cybersecurity principles (network security, cloud security, IAM, application security, vulnerability management)
  • Familiarity with common frameworks such as NIST CSF, ISO 27001, SOC 2, or similar
  • Understanding of AI/ML concepts and associated risks (data governance, model bias, hallucinations, prompt injection, model misuse, etc.)
  • Strong written communication and documentation skills
  • Ability to assess technical risks and clearly communicate them to non-technical stakeholders
  • Experience working cross-functionally with engineering and product teams
  • Highly organized with strong attention to detail
  • Comfort working in a fast-paced environment
  • Genuine curiosity about AI and a strong desire to learn; actively experiments with AI tools
  • Comfort using AI tools daily and willingness to learn newer agentic/assistant-based tooling

Nice-to-Haves

  • Academic background, personal interest, or real world experience in fintech, financial services, or trading platforms
  • Exposure to AI governance, model risk management, or responsible AI programs
  • Familiarity with emerging AI regulatory frameworks (e.g., NIST AI RMF, EU AI Act concepts, model governance practices)
  • Experience with GCP or other major cloud platforms
  • Experience supporting or observing SOC 2, ISO 27001, or regulatory audits
  • Security certifications (e.g., Security+, SSCP) or early-stage GRC certifications
  • Interest in pursuing advanced certifications (CISA, CRISC, CISSP, or AI governance certifications)
  • Experience working remotely or in distributed teams
  • Hands-on experience with AI/agentic tooling (e.g., AI coding assistants, LLM apps, or similar)
  • Personal projects or self-study in AI/ML that show initiative and interest

Compensation & Benefits

  • Competitive Salary & Stock Options
  • Health Benefits
  • New Hire Home-Office Setup: One-time USD $500
  • Monthly Stipend: USD $150 per month via a Brex Card

Skills

CybersecurityRisk ManagementGRCnist csfISO 27001SOC 2ai governanceCloud SecurityIAMVulnerability Managementeu ai actnist ai rmfGCP

Similar roles

Hilbert

Mathematician, Foundation Team

HilbertSan Francisco, CA

Entry-level mathematician on the Foundation Team formalizing growth concepts with set theory, axioms, and proofs for an AI-native growth intelligence platform. Applies formal systems to customer use cases while mapping empirical boundaries; works directly with CEO.

Salary not listedHybridEntry levelOther
Cloudflare

U.S. Public Policy and AI Innovation Intern

CloudflareWashington, DC

Supports U.S. technology policy advocacy while building AI-driven prototypes, prompts, and internal interfaces to improve policy workflows. The internship requires a relevant bachelor’s or master’s degree in progress, strong research and communication skills, and hands-on AI tool development experience.

50k – 50k/yrOn-siteEntry levelOther
Justworks

Associate, Financial Benefits

JustworksNew York, NY

Handle day-to-day 401(k) and retirement benefits operations, resolve inquiries from internal teams and employees, triage issues, and work with vendors. Requires 2+ years in operations/customer service, Excel proficiency, and strong communication skills.

63k – 82k/yrRemote2+ YOEOther
Crusoe

Purchasing Coordinator

CrusoeDenver, CO

Serve as the first point of contact triaging and processing high-volume procurement requests and requisitions in Coupa. Manage supplier onboarding, cross-functional coordination, tracking, and support for teams including Data Infrastructure, operations, cloud, and marketing. Requires 2+ years procurement/admin experience and strong multitasking/detail skills.

71k – 79k/yrOn-site2+ YOEOther
Dialpad

Dialership Program

DialpadUnited States

The Dialership Program is a virtual educational internship (June-August 2027) where participants attend 2 hours of weekly sessions exploring business functions at an Agentic AI company. Open to all backgrounds; unpaid with certificate upon completion. Requires curiosity in tech/AI and commitment to engage with leaders.

Salary not listedRemoteEntry levelOther