SlipstreamJobsFresh Startup & VC-Backed Jobs

Security & Trust Engineer

Rsi Paper Mill - San Francisco, CA, USA - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Alex is an AI-powered recruiting platform that conducts interviews, screens, and schedules candidates across voice, video, and text. The company has processed over 1M interviews, integrates with 33+ ATS platforms, and serves enterprise customers including VPs of Talent Acquisition, CHROs, and CFOs. You will be Alex's first dedicated Security & Trust Engineer, owning information security, compliance, and AI governance across the organization. This is a high-visibility role given the regulatory scrutiny on AI in hiring—you'll need to build a security and compliance program that withstands enterprise CISO review. Key responsibilities include: **Customer Security Reviews**: Own the end-to-end security review process, including infosec questionnaires, SIGs, CAIQs, vendor risk assessments, DPAs, and security addenda. Unblock deals stalled on security concerns and turn around reviews rapidly without pulling engineering resources. **Process Automation**: Build an answer library, evidence repository, and tooling (including AI-assisted tools) to reduce questionnaire turnaround from weeks to days. Success is measured by increased volume with decreased manual effort. **AI Risk & Regulation**: Become the expert on EU AI Act, NYC LL144, GDPR, state AI and biometric laws, bias auditing, and emerging global rules on automated employment decision tools. Translate regulatory changes into operational requirements and keep Sales, Product, and leadership informed. **External Representation**: Lead security and AI governance calls with enterprise prospects and customers. Build the trust center, security whitepapers, and AI governance documentation that positions Alex as enterprise-grade and a leading expert. **Compliance & Audit**: Own SOC 2 certification, drive the roadmap for ISO 27001 and ISO 42001, manage auditors and penetration tests, and maintain compliance platform tooling. **Technical Controls**: Partner with Engineering to ensure systems, processes, and technical controls back up customer commitments. Own access management, vendor/subprocessor review, vulnerability triage, incident response, and cloud/CI/CD security posture. Build and maintain the risk register. **Shift-Left Security**: Collaborate with Product and Engineering early on new features and model changes to address security, privacy, and AI governance at design time. You'll report to the CTO and work closely with Engineering, Sales, and Operations. This is a foundational role where you define the security program and narrative from scratch, not inherit an existing one. The role offers direct impact on enterprise GTM, exposure to leadership and customers, and the opportunity to build a playbook for AI hiring security that doesn't yet exist.

Similar roles