- Company Name
- eStaff LLC
- Job Title
- Risk Management Specialist
- Job Description
-
**Job Title**
Risk Management Specialist – AI Compliance and Policy Integration
**Role Summary**
Identify, assess, and mitigate risks associated with AI and data systems to ensure ethical, secure, and regulatory compliant deployment. Manage continuous monitoring, auditing, and policy lifecycle for AI initiatives while coordinating with enterprise cybersecurity and compliance teams.
**Expectations**
- Maintain an up‑to‑date risk register covering operational, ethical, and compliance risks.
- Lead AI audits, bias assessments, and security control reviews.
- Ensure continuous compliance with state and federal regulations (SB 896, SIMM 5305‑F, AB 2013, CPRA).
- Develop and test business continuity and disaster recovery plans for AI data platforms.
- Draft, update, and roll out AI and data policies; embed compliance into day‑to‑day operations.
- Communicate risk findings and recommendations to senior leadership.
**Key Responsibilities**
- **Security Control Management** – monitor and strengthen AI/data platform security controls; collaborate with enterprise cybersecurity to align with statewide standards.
- **AI Auditing & Fairness** – conduct regular audits of AI models and datasets for compliance, fairness, and bias; produce transparent audit reports.
- **Risk Register & Mitigation** – maintain comprehensive risk register; identify emerging risks, develop mitigation strategies, and report exposure to leadership.
- **Business Continuity & Disaster Recovery** – design, test, and integrate critical AI system continuity plans into enterprise frameworks.
- **Regulatory Compliance Monitoring** – track adherence to key mandates; implement continuous monitoring, reporting, and enforcement processes.
- **Ethical Oversight** – perform fairness and accountability reviews for AI initiatives; proactively address ethical concerns.
- **Policy Lifecycle Management** – manage review and update cycles for AI/data policies; ensure policies remain actionable and enforceable; support enterprise adoption of new processes.
- **Executive Communications Support** – contribute risk and compliance messaging for executive-level communications.
**Required Skills**
- 5+ years in risk management, compliance, or governance within technology or data environments.
- Deep understanding of AI systems, data governance, and information security frameworks.
- Experience implementing and auditing enterprise compliance programs.
- Strong written and verbal communication; documentation expertise.
- Ability to manage multiple priorities in regulation‑heavy, fast‑evolving contexts.
- Familiarity with ISO, NIST, or similar security standards.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Systems, Public Policy, or related field (Master’s preferred).
- Training or certification in risk management, compliance, or cybersecurity (e.g., CISA, CRISC, CIPM, PMP) is preferred.
Sacramento, United states
Hybrid
Mid level
03-11-2025