Principal Information Security Risk Management - AI

Early Warning®Chicago, IL
$184,000 - $276,000Hybrid

About The Position

The Principal Information Security Risk Management, AI is responsible for ensuring enterprise-wide Generative AI (GenAI), Agentic AI, LLMs, and ML security programs are effective, risk-aligned, and defensible—through independent challenge, governance, and validation. This role provides independent risk-based governance within a Three Lines of Defense (3LOD) model, ensuring GenAI and agent-based systems are secure, trustworthy, and aligned to risk appetite and regulatory expectations. The position partners closely with engineering, data science, product, and AI platform teams, acting as a credible challenger—not an operator.

Requirements

  • Typically, 15+ years of progressive IT experience with 8+ years in Information Security
  • Experience securing GenAI, LLM-based systems, or AI-driven platforms
  • Strong understanding of: LLM architectures, prompt engineering, and RAG patterns, Agentic AI systems, orchestration frameworks, and tool integrations, Common GenAI risks (prompt injection, data exfiltration, hallucinations, model misuse)
  • Experience operating in a Three Lines of Defense model and/or regulated environment (financial services preferred)
  • Ability to translate complex technical risks into business impact and executive-level insights
  • Experience in fintech or highly regulated industries
  • Familiarity with frameworks such as NIST AI RMF, ISO/IEC 42001, and emerging GenAI guidance
  • Understanding of secure AI development practices and model governance
  • Background in risk management, audit, or control validation
  • Background and drug screen

Responsibilities

  • Provide independent challenge and oversight of GenAI and agentic AI systems across design, deployment, and operation
  • Define and maintain AI security policies, standards, and control requirements for LLMs, prompt-based systems, and autonomous agents
  • Perform control validation and effectiveness testing across: Prompt handling and injection resistance, Model outputs and hallucination risk controls, Agent autonomy, decision boundaries, and tool use, Data access, grounding, and retrieval-augmented generation (RAG) pipelines
  • Assess and challenge risks related to: Prompt injection and jailbreak attacks, Data leakage through prompts, outputs, or embeddings, Model misuse, abuse, and unintended actions by agents, Third-party models such as MCP, APIs, and supply chain dependencies
  • Deliver risk-based reporting and insights on GenAI/agentic risks, control gaps, and systemic weaknesses
  • Provide oversight of AI platforms, orchestration frameworks, and tooling to ensure secure configuration and governance
  • Partner with First Line teams, Risk, Compliance, Legal, and Audit to ensure alignment with internal policies and emerging regulatory expectations
  • Support regulatory exams and internal audits as the AI Security Second Line SME

Benefits

  • Competitive medical (PPO/HDHP), dental, and vision plans
  • Company contributions to your Health Savings Account (HSA)
  • Pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses
  • 401(k) Retirement Plan – Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility
  • Flexible Time Off for Exempt (salaried) employees
  • Generous PTO for Non-Exempt (hourly) employees
  • 11 paid company holidays
  • Paid volunteer day
  • 12 weeks of Paid Parental Leave
  • Maven Family Planning support (egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service