Overview
In this role you will help shape Subsea7’s AI strategy by building a secure, compliant, and well-governed AI environment. You will partner with IT, Security, Legal, Data and business teams to define AI guardrails, policies, and approved usage. You’ll assess new AI capabilities, identify security and privacy risks, and drive governance and risk controls across AI development and deployment. This position offers the opportunity to influence how AI is adopted safely at scale within the organisation.
Responsibilities
- Design, implement and maintain security controls across AI platforms, cloud services, enterprise apps and infrastructure
- Evaluate, secure and monitor AI solutions including Generative AI and ML environments
- Develop and automate security processes, detections and response capabilities using AI and SOAR tech
- Identify, assess and mitigate risks of AI adoption (data leakage, etc)
- Work with data, software engineering and cloud teams to embed security into AI lifecycles
- Support the Information Security Manager and collaborate across the organisation
- Provide technical security guidance for AI initiatives
- Conduct security assessments, threat modelling and architecture reviews for AI/tech solutions
- Monitor threat intelligence and emerging vulnerabilities in AI
- Support security incident investigations involving AI systems and contribute to lessons learned
- Support compliance and audits related to cybersecurity, data protection and AI governance
Key requirements
- Extensive experience in cybersecurity engineering, security operations or security architecture
- Experience with AI technologies, Generative AI platforms, ML environments, or AI governance and security controls
- Solid understanding of cybersecurity frameworks and best practices (e.g., NIST, ISO 27001, GDPR)
- Knowledge of AI security risks and controls (model security, prompt injection, data privacy, AI supply chain)
- Experience securing enterprise technologies with AI across platforms (Microsoft stack, Google, Anthropic, Github)
- Understanding of cloud security architectures, especially Microsoft Azure
- Effective communication with technical and non-technical stakeholders
- Ability to assess risk, prioritise work, and manage multiple initiatives
- Analytical and problem-solving skills with proactive security mindset
- #LI-AR1
- Effective communication with both technical and non-technical stakeholders
- Proactive, analytical, and innovative approach to security challenges
- Strong stakeholder engagement and collaboration
- AI security governance and risk management
- Security controls for AI platforms and cloud services
- Threat modelling and architecture reviews
…
