30 Sep
|
EthicalHat
|
India
Experience: 5+ Years
The Role
The AI Governance Specialist will support the design, implementation and ongoing management of governance and risk controls for Artificial Intelligence (AI) systems, including Generative AI. The role will help organisations identify and manage risks associated with the development, procurement and use of AI across the enterprise.
The position requires a strong understanding of technology risk, cybersecurity, privacy and AI governance principles. The specialist will conduct AI risk assessments; develop governance policies and control frameworks, support regulatory and standards alignment, and work with technology, security, legal, privacy, risk and business teams to enable responsible adoption of AI.
Key Responsibilities
- Conduct risk and governance assessments for AI and GenAI systems, use cases and third-party AI services across their lifecycle.
- Develop and maintain AI governance policies, standards, control requirements, risk assessment methodologies and operating procedures.
- Assess AI systems against applicable frameworks and standards such as NIST AI RMF, ISO/IEC 42001 and relevant regulatory requirements.
- Identify and document risks relating to data privacy, cybersecurity, model behaviour, bias, transparency, explainability, human oversight and misuse of AI systems.
- Support AI use-case intake, risk classification, approval and exception processes based on defined governance requirements.
- Define and assess controls for AI development, deployment, monitoring, access, data handling, model changes and retirement.
- Evaluate governance and security risks associated with third-party AI models, platforms, APIs and service providers.
- Maintain AI inventories, risk registers, assessment records, control evidence and governance documentation to support internal reviews and audits.
- Work with AI/ML, cybersecurity, privacy, legal, compliance and business teams to translate governance requirements into practical controls.
- Monitor developments in AI regulations, standards and industry guidance and assess their impact on organisational AI governance requirements.
Skills & Experience
- 5+ years of relevant experience in technology risk, cybersecurity governance, IT risk, privacy, compliance, responsible AI or AI governance, with practical exposure to AI-related risk and controls.
- Good understanding of AI/ML and Generative AI concepts, including models, training and inference data, prompts, APIs and common enterprise AI use cases.
- Working knowledge of NIST AI Risk Management Framework (AI RMF) and ISO/IEC 42001.
- Familiarity with AI regulatory developments and governance requirements, including the EU AI Act and other relevant AI regulations or guidance.
- Robust understanding of technology and cybersecurity risk assessment, control design, governance and remediation tracking.
- Understanding of AI-specific risks including data leakage, prompt injection, hallucination, model misuse, bias and third-party/model supply-chain risks.
- Experience conducting control assessments, gap assessments, risk reviews and developing policies, standards and governance documentation.
- Ability to evaluate technical AI risks and communicate their business, regulatory and security implications to relevant stakeholders.
- Strong analytical, documentation and report-writing skills.
- Ability to work effectively with technical teams as well as legal, privacy, compliance, risk and business stakeholders.
Preferred Qualifications
- Certifications or training in ISO/IEC 42001, NIST AI RMF, AI governance, responsible AI, cybersecurity, privacy or technology risk are preferred.
- Certifications such as IAPP AIGP, CISA, CISM, CISSP, CRISC or equivalent will be an advantage.
- Experience supporting AI governance programmes, AI risk assessments, regulatory readiness or responsible AI initiatives in consulting or enterprise environments is preferred.
Key Skills
- AI Governance
- Responsible AI
- AI Risk Management
- Generative AI
- NIST AI RMF
- ISO 42001
- EU AI Act
- AI Risk Assessment
- AI Controls
- Technology Risk
- Cybersecurity Governance
- AI Compliance
- Third-Party AI Risk
- AI Policy
- Model Governance
- Data Privacy
- Risk & Compliance
- AI Regulatory Compliance
📌 AI Governance Specialist (India)
🏢 EthicalHat
📍 India