About the Role
We are hiring our first dedicated Security & Trust Lead to own information security, compliance, and AI governance at Alex. This role is critical for ensuring our security and compliance program is robust and for building confidence with enterprise customers. You will own both the internal controls and external customer-facing security conversations.
Responsibilities
- Own the customer security review process from end to end, including questionnaires, SIGs, CAIQs, vendor risk assessments, DPAs, and security addenda.
- Automate security review processes by building an answer library, evidence repository, and tooling, including AI tooling, to reduce turnaround time.
- Become the company expert on AI risk and regulation, tracking changes in laws like the EU AI Act, NYC LL144, GDPR, and others, and translating them into actionable internal policies.
- Represent Alex externally in calls with enterprise prospects and customers regarding security, information security, and AI governance.
- Build the trust center, security whitepapers, and AI governance documentation to establish Alex as an enterprise-grade expert.
- Own SOC 2 compliance and drive the roadmap for future certifications like ISO 27001 and ISO 42001.
- Manage auditors, penetration tests, and compliance platform tooling.
- Partner with Engineering to ensure technical controls, access management, vendor reviews, vulnerability triage, incident response, and cloud security posture are robust.
- Build the risk register and manage the program against it.
- Collaborate with Product and Engineering early in the design phase of new features and model changes to address security, privacy, and AI governance concerns proactively.
Requirements
- Must be smart, technical, extremely organized, and genuinely interested in AI risk and security.
- Motivated to own the security and compliance space.
- Ability to get deep into technical and regulatory details quickly.
- Experience working closely with Engineering, Sales, and Operations teams.
- Experience managing customer security reviews and vendor risk assessments.
- Familiarity with AI risk and regulation (e.g., EU AI Act, NYC LL144, GDPR).
- Experience with compliance frameworks like SOC 2.
- Understanding of technical controls, access management, incident response, and cloud security.
- Ability to work proactively with Product and Engineering teams.
Skills
- Information Security
- Compliance
- AI Governance
- Risk Management
- Customer Security Reviews
- Questionnaire Management
- Vendor Risk Assessment
- Regulatory Analysis
- AI Risk
- Security Audits
- Technical Controls Implementation
- Product Collaboration
Location
- San Francisco
Work Type
- Onsite
- Full-time
Experience Level
- First dedicated hire
- Entry-level to mid-level (hiring for trajectory)
Salary/Compensations
- Competitive compensation, including equity
Benefits
- Healthcare
- Vision and dental insurance
- 401(k)
- Unlimited PTO
- Beautiful office in SF
- Company-paid lunches
- Great company events
About the Company
- Alex is an AI recruiter that interviews, screens, and schedules candidates using voice, video, and text to help talent teams hire faster without increasing headcount.
- The company has conducted over 1 million interviews, integrates with 33+ ATS platforms, and boasts a 96% candidate preference rate for interviewing with Alex.
- Alex is revenue-generating, well-funded, backed by premier investors, and focuses on enterprise customers, selling to VPs of Talent Acquisition, CHROs, and CFOs at large employers.
- The company is at the forefront of AI in hiring, a highly scrutinized category in enterprise software.
