Tribe AI Logo

Tribe AI

Security & AI Governance Lead

Posted 10 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
260K-300K Annually
Senior level
Remote
Hiring Remotely in United States
260K-300K Annually
Senior level
Own Tribe’s corporate security, compliance, AI governance, and client-facing security programs. Lead SOC 2 and future certification efforts, enterprise security reviews, risk management, security controls, incident response, vendor risk, and Trust Center operations. Establish governance for AI agents, assistants, model providers, and subprocessors while partnering with engineering on architecture reviews, threat modeling, secure SDLC, data flows, and production readiness. Translate customer requirements into scalable security controls and operating processes.
The summary above was generated by AI
About Tribe AI

At Tribe, we’re on a mission to help enterprises realize the value of AI for their business. Every large enterprise wants to use AI to transform how they operate — but many don’t have the capabilities to do it. That gap is our opportunity.

We’re an AI-native services company that helps enterprises build and deploy best-in-class AI products that deliver real business impact. We partner closely with OpenAI and Anthropic, giving us rare visibility into the most advanced models, roadmaps, and GTM strategies in the world.

About the Role

Enterprise AI runs on trust. Tribe’s teams work inside client environments, with client code, data, infrastructure, and systems. Before we can build, enterprise security teams need precise answers: What can our engineers access? Which tools process their data? What is logged or prevented? How are AI systems governed? Who is accountable when something goes wrong?

We have a strong foundation, including SOC 2 Type II, enterprise security assessments, a public Trust Center, and experience delivering in regulated environments. As the volume and sophistication of our work grows, we need a dedicated leader to make that posture systematic, measurable, and consistently defensible.

As Security and AI Governance Lead, you’ll report to the CTO and own Tribe’s corporate security, compliance program, AI governance, and client-facing security work. This is not a policy-only or back-office role. You’ll build controls, lead difficult customer reviews, handle incidents, interrogate architectures and data flows, and help our teams ship securely without smothering them in process.

When the facts are distributed across Engineering, IT, Legal, and Delivery, you own the answer. You’ll identify the right evidence owners, validate the underlying facts, resolve inconsistencies, and package the result into a clear, credible response. You’ll be highly hands-on today and build the systems, and specialist partnerships Tribe needs as we scale.

Key Responsibilities

Customer Trust & Compliance

  • Lead enterprise security reviews, questionnaires, diligence, and escalations—giving precise answers about current controls, planned improvements, and how identified gaps are being managed.

  • Own Tribe’s SOC 2 program and future certifications, along with the Trust Center, evidence library, and reusable customer security package.

  • Partner with GTM, Legal, and Delivery to remove legitimate security blockers while managing vendor risk, subprocessors, data retention, and sustainable customer commitments.

Security Program & Operations

  • Own Tribe’s security roadmap, risk register, policies, exceptions, metrics, and executive reporting.

  • Establish and continuously improve controls across identity, SSO and MFA, access lifecycle, MDM, EDR, encryption, DLP, patching, BYOD, vulnerability management, logging, and SIEM.

  • Own incident readiness and response, including severity decisions, cross-functional coordination, client communication, tabletop exercises, postmortems, and durable remediation.

AI & Secure Delivery

  • Define governance for coding agents, AI assistants, model providers, and subprocessors—including approved accounts, data flows, retention, telemetry, and human oversight.

  • Partner with Forward Deployed Architects and infrastructure leads on architecture reviews, threat modeling, secure SDLC, authentication, client segmentation, observability, and production readiness.

  • Turn recurring customer requirements and delivery lessons into reusable controls and patterns while determining what Tribe should build, automate, outsource, or support with dedicated hires.

About You
  • You have 8+ years in security and have built or substantially improved an enterprise security and GRC program spanning identity, endpoints, data protection, monitoring, vendor risk, and incident response.

  • You have personally led demanding security reviews, questionnaires, diligence sessions, and escalations with large enterprise customers.

  • You have pragmatic technical depth: you can interrogate an architecture, trace a data flow, challenge an implementation, and determine what evidence would prove a control.

  • You have owned a SOC 2 or ISO 27001 cycle from control design and scope through audit and remediation.

  • You are credible and precise under pressure, distinguishing confirmed facts from assumptions, current controls from roadmap items, and meaningful risk from security theater.

  • You bring high agency and sound judgment, moving comfortably between strategy and execution while protecting the business without becoming a bottleneck.

Nice to Have

  • Experience securing AI or ML systems, including model providers, agentic workflows, telemetry, evaluations, and emerging AI-specific risks.

  • Experience in an AI-native services, consulting, or forward-deployed engineering environment

Why Join Us
  • Impact: Ship AI systems that don’t just demo well but run at scale in Fortune 500 enterprises.

  • Growth: Stay hands-on with cutting-edge frameworks while developing field-tested instincts.

  • Variety: Solve problems across industries, from finance to healthcare to defense.

  • Culture: Work in a team that prizes resilience, creativity, and winning over process.

  • Trajectory: Build both your technical and consulting muscles in one of the most demanding roles in AI delivery.

Similar Jobs

19 Days Ago
Remote
Illinois, USA
140K-180K Annually
Senior level
140K-180K Annually
Senior level
Cloud • HR Tech • Information Technology
Lead AI-focused security and controls by defining AI-specific risk standards, guiding secure design and deployment, supporting vendor/model risk assessments, and partnering across engineering, privacy, and security to implement and monitor controls across the AI lifecycle.
Top Skills: Agentic Ai / Agentic ArchitecturesAi/Ml ModelsAPIsMachine Learning PipelinesRetrieval-Augmented Generation (Rag)
3 Minutes Ago
In-Office or Remote
175K-175K Annually
Senior level
175K-175K Annually
Senior level
Consumer Web • Mobile • Software • Travel • App development
Lead strategy and execution of an omni-channel lifecycle program for 2M+ monthly users across email, push, in-app, and web. Own Braze integration, lifecycle roadmap, calendar, reporting, AI-driven automation, and cross-functional delivery while hiring and managing a lifecycle team to improve activation, retention, and LTV.
Top Skills: Ai/Machine LearningBrazeCdpDeliverabilityEnterprise CrmLiquidSQL
7 Minutes Ago
Remote or Hybrid
United States
81K-122K Annually
Senior level
81K-122K Annually
Senior level
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Administer and improve Workday and multi-platform HR security, including role-based access, security groups, access reviews, request approvals, audit support, governance documentation, and compliance controls. Evaluate elevated access requests, identify risks, resolve routine issues, coordinate remediation, and escalate complex decisions. Partner with HR, IT, Legal, and Compliance stakeholders to strengthen policies, processes, and least-privilege access across Workday, Peakon, UKG, Prism, and HR data platforms.
Top Skills: Cei Hr OdsExcelMicrosoft FabricPeakonPower BIPrismSailpointServicenowSharepointTableauUkgWorkday

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account