Cyber & AI Risk Analyst supporting cybersecurity risk assessments, AI governance controls, and compliance for a fintech brokerage platform. Requires foundational cyber knowledge, understanding of AI risks, and strong communication skills; 1+ years experience preferred but internships welcome.
Salary not listed
Remote1+ YOEOther
About the role
Responsibilities
Support the execution of Alpaca’s cybersecurity risk management program
Conduct cyber risk assessments across cloud infrastructure, APIs, trading systems, and internal platforms
Identify, document, and evaluate AI-related risks (model risk, data privacy, bias, explainability, adversarial threats, model misuse)
Develop and maintain AI governance controls aligned with evolving regulatory expectations such as the EU AI Act
Perform third-party/vendor security and AI risk assessments
Contribute to control testing across frameworks such as SOC 2, ISO 27001, CSA Star, NIST CSF, and emerging AI governance standards
Track remediation efforts and maintain risk registers and reporting dashboards
Support internal and external audits by preparing documentation and evidence
Monitor regulatory developments related to cybersecurity, financial services, and AI governance
Mature policies, standards, and procedures for both cyber and AI domains
Develop a repeatable AI tool/model evaluation process (intake → review → decision) for new and in-use AI tools
Support Alpaca's AI usage guidance and standards, including safe use of AI-enabled developer tools and assistants
Maintain AI logging/monitoring standards (audit logging, evidence) for AI systems
Use AI tools in day-to-day work and help test how well AI-related controls are working
Requirements
1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field (internships, coursework, or equivalent experience welcome)
Familiarity with common frameworks such as NIST CSF, ISO 27001, SOC 2, or similar
Understanding of AI/ML concepts and associated risks (data governance, model bias, hallucinations, prompt injection, model misuse, etc.)
Strong written communication and documentation skills
Ability to assess technical risks and clearly communicate them to non-technical stakeholders
Experience working cross-functionally with engineering and product teams
Highly organized with strong attention to detail
Comfort working in a fast-paced environment
Genuine curiosity about AI and a strong desire to learn; actively experiments with AI tools
Comfort using AI tools daily and willingness to learn newer agentic/assistant-based tooling
Nice-to-Haves
Academic background, personal interest, or real world experience in fintech, financial services, or trading platforms
Exposure to AI governance, model risk management, or responsible AI programs
Familiarity with emerging AI regulatory frameworks (e.g., NIST AI RMF, EU AI Act concepts, model governance practices)
Experience with GCP or other major cloud platforms
Experience supporting or observing SOC 2, ISO 27001, or regulatory audits
Security certifications (e.g., Security+, SSCP) or early-stage GRC certifications
Interest in pursuing advanced certifications (CISA, CRISC, CISSP, or AI governance certifications)
Experience working remotely or in distributed teams
Hands-on experience with AI/agentic tooling (e.g., AI coding assistants, LLM apps, or similar)
Personal projects or self-study in AI/ML that show initiative and interest
Compensation & Benefits
Competitive Salary & Stock Options
Health Benefits
New Hire Home-Office Setup: One-time USD $500
Monthly Stipend: USD $150 per month via a Brex Card
Skills
CybersecurityRisk ManagementGRCnist csfISO 27001SOC 2ai governanceCloud SecurityIAMVulnerability Managementeu ai actnist ai rmfGCP
Similar roles
Mathematician, Foundation Team
HilbertSan Francisco, CA
Entry-level mathematician on the Foundation Team formalizing growth concepts with set theory, axioms, and proofs for an AI-native growth intelligence platform. Applies formal systems to customer use cases while mapping empirical boundaries; works directly with CEO.
Salary not listedHybridEntry levelOther
U.S. Public Policy and AI Innovation Intern
CloudflareWashington, DC
Supports U.S. technology policy advocacy while building AI-driven prototypes, prompts, and internal interfaces to improve policy workflows. The internship requires a relevant bachelor’s or master’s degree in progress, strong research and communication skills, and hands-on AI tool development experience.
50k – 50k/yrOn-siteEntry levelOther
Associate, Financial Benefits
JustworksNew York, NY
Handle day-to-day 401(k) and retirement benefits operations, resolve inquiries from internal teams and employees, triage issues, and work with vendors. Requires 2+ years in operations/customer service, Excel proficiency, and strong communication skills.
63k – 82k/yrRemote2+ YOEOther
Purchasing Coordinator
CrusoeDenver, CO
Serve as the first point of contact triaging and processing high-volume procurement requests and requisitions in Coupa. Manage supplier onboarding, cross-functional coordination, tracking, and support for teams including Data Infrastructure, operations, cloud, and marketing. Requires 2+ years procurement/admin experience and strong multitasking/detail skills.
71k – 79k/yrOn-site2+ YOEOther
Dialership Program
DialpadUnited States
The Dialership Program is a virtual educational internship (June-August 2027) where participants attend 2 hours of weekly sessions exploring business functions at an Agentic AI company. Open to all backgrounds; unpaid with certificate upon completion. Requires curiosity in tech/AI and commitment to engage with leaders.