Developer APIs for stocks and crypto trading, investing apps, and embedded fintech.
Cyber & AI Risk Analyst
Location
United States + 31 moreAll locations: United States, Canada, Brazil, Colombia, Argentina, Chile, Venezuela, Bolivarian Republic Of, Bolivia, Plurinational State Of, Ecuador, French Guiana, Guyana, Paraguay, Peru, Suriname, Uruguay, Mexico, Costa Rica, El Salvador, Guatemala, Honduras, Nicaragua, Panama, Dominican Republic, Puerto Rico, Bahamas, Guadeloupe, Haiti, Jamaica, Martinique, Montserrat
Posted
11 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
As a Cyber & AI Risk Analyst, you will play a critical role in strengthening Alpaca’s security, compliance, and AI risk posture across the organization. Working closely with the Cyber GRC Lead, you will support the identification, assessment, and documentation of cybersecurity and AI-related risks that impact our infrastructure, products, trading systems, and internal operations.
- Support the execution of Alpaca’s cybersecurity risk management program
- Conduct cyber risk assessments across cloud infrastructure, APIs, trading systems, and internal platforms
- Assist in identifying, documenting, and evaluating AI-related risks (model risk, data privacy, bias, explainability, adversarial threats, model misuse)
- Help develop and maintain AI governance controls aligned with evolving regulatory expectations, such as the EU AI Act
- Perform third-party/vendor security and AI risk assessments
- Contribute to control testing across frameworks such as SOC 2, ISO 27001, CSA Star, NIST CSF, and emerging AI governance standards
- Track remediation efforts and maintain risk registers and reporting dashboards
- Support internal and external audits by preparing documentation and evidence
- Monitor regulatory developments related to cybersecurity, financial services, and AI governance
- Help mature policies, standards, and procedures for both cyber and AI domains
Qualifications
- 1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field - internships, coursework, or equivalent experience is welcome
- Foundational understanding of cybersecurity principles (network security, cloud security, IAM, application security, vulnerability management)
- Familiarity with common frameworks such as NIST CSF, ISO 27001, SOC 2, or similar
- Understanding of AI/ML concepts and associated risks (data governance, model bias, hallucinations, prompt injection, model misuse, etc.) - you don’t need to be an expert, just curious
- Strong written communication and documentation skills
- Ability to assess technical risks and clearly communicate them to non-technical stakeholders
- Experience working cross-functionally with engineering and product teams
- Highly organized with strong attention to detail
- Comfort working in a fast-paced environment
Requirements
- Academic background, personal interest, or real-world experience in fintech, financial services, or trading platforms
- Exposure to AI governance, model risk management, or responsible AI programs
- Familiarity with emerging AI regulatory frameworks (e.g., NIST AI RMF, EU AI Act concepts, model governance practices)
- Experience with GCP or other major cloud platforms
- Experience supporting or observing SOC 2, ISO 27001, or regulatory audits
- Security certifications (e.g., Security+, SSCP) or early-stage GRC certifications
- Interest in pursuing advanced certifications (CISA, CRISC, CISSP, or AI governance certifications)
- Experience working remotely or in distributed teams
Benefits
- Competitive Salary & Stock Options
- Health Benefits
- New Hire Home-Office Setup: One-time USD $500
- Monthly Stipend: USD $150 per month via a Brex Card
Job Requirements
- 1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field - internships, coursework, or equivalent experience is welcome
- Foundational understanding of cybersecurity principles (network security, cloud security, IAM, application security, vulnerability management)
- Familiarity with common frameworks such as NIST CSF, ISO 27001, SOC 2, or similar
- Understanding of AI/ML concepts and associated risks (data governance, model bias, hallucinations, prompt injection, model misuse, etc.) - you don’t need to be an expert, just curious
- Strong written communication and documentation skills
- Ability to assess technical risks and clearly communicate them to non-technical stakeholders
- Experience working cross-functionally with engineering and product teams
- Highly organized with strong attention to detail
- Comfort working in a fast-paced environment
- Academic background, personal interest, or real-world experience in fintech, financial services, or trading platforms
- Exposure to AI governance, model risk management, or responsible AI programs
- Familiarity with emerging AI regulatory frameworks (e.g., NIST AI RMF, EU AI Act concepts, model governance practices)
- Experience with GCP or other major cloud platforms
- Experience supporting or observing SOC 2, ISO 27001, or regulatory audits
- Security certifications (e.g., Security+, SSCP) or early-stage GRC certifications
- Interest in pursuing advanced certifications (CISA, CRISC, CISSP, or AI governance certifications)
- Experience working remotely or in distributed teams
Benefits
- Competitive Salary & Stock Options
- Health Benefits
- New Hire Home-Office Setup: One-time USD $500
- Monthly Stipend: USD $150 per month via a Brex Card
Related Guides
Related Categories
Related Job Pages
More Sales Engineer Jobs
The Field Sales Engineer is responsible for identifying and developing prospects, selling, and servicing existing accounts within a defined territory, focusing on Festo’s Pneumatic and Control Systems products. This role involves providing technical expertise and support throughout the sales process to ensure customer satisfaction and increase market share.
The Sales Engineer will develop new accounts by providing solution-based consultation services to customers in the oil & gas, power generation, and other process industries. This role involves working directly with end-users and their engineers to understand customer needs and de...
Senior Sales Engineer – GIA
G-PFind, hire and manage teams in days instead of months with the #1 Global Growth Platform.™
Technical Sales Engineer for AI SaaS product at G-P
Sales Engineer
Carenet HealthA leader in the transformation of healthcare consumer engagement, including closing gaps in care, telehealth & advocacy.
This role involves creating effective healthcare solutions to real client problems. As a Sales Engineer at Carenet Health, you will: Conduct structured discovery workshops to identify client goals, operational limitations, and success metrics. Collaborate closely with Sales to re...