<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>f77c41bb-0ad</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p>We are seeking an experienced Application Security Engineer to join our team. As a subject matter expert, you will have direct experience in a wide range of security technologies, tools, and methodologies. The role is suited for an experienced Application Security engineer with proven understanding in enterprise security and AI security and will focus on building toolsets and processes to drive adoption of secure practices across the enterprise.</p>
<p>The team fosters a collaborative environment and is building a best-in-class program to partner with the business to protect the Firm’s information and computer systems. Millennium is a complex and robust technical environment and securing the Firm from external and internal threats is a top priority.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Define and implement security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.</li>
<li>Conduct specialized threat modeling, red teaming, and risk assessments for AI/ML models (e.g., testing for prompt injection, model theft, and data poisoning).</li>
<li>Lead risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects.</li>
<li>Engage throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards.</li>
<li>Evangelize AppSec and AI security best practices through developer education, training materials, and outreach.</li>
<li>Design robust security architectures and integrate automated security testing (SAST/DAST/SCA) into CI/CD pipelines.</li>
<li>Partner with Technology, Trading, Legal, and Compliance to create policies and communicate technical risks to non-technical stakeholders.</li>
</ul>
<p><strong>Qualifications</strong></p>
<ul>
<li>Bachelor&#39;s degree or higher in Computer Science, Computer Engineering, IT Security or related field.</li>
<li>5+ years’ experience working as an Application Security Engineer, Software Engineer, or similar role.</li>
<li>Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs.</li>
<li>Experience working with AI models, Agentic frameworks and security risks associated with AI.</li>
<li>Experience in working with global teams, collaborating on code and presentations.</li>
<li>Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)</li>
<li>Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols.</li>
<li>Experience with common SCM &amp; CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines</li>
<li>Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions.</li>
<li>Hands on experience with Secrets Management &amp; Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.</li>
<li>Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar.</li>
<li>Familiarity with Infrastructure as Code tools (CloudFormation, Terraform, Ansible, etc.)</li>
<li>Familiarity with web application security testing tools and methodologies.</li>
<li>Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.</li>
<li>Knowledge of Linux, OS internals and containers is a plus.</li>
<li>Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>AI-specific risks, Generative AI, LLMs, Agentic frameworks, Security guardrails, Threat modeling, Red teaming, Risk assessments, Application risk assessments, Design reviews, Mitigation strategies, Secure coding standards, Automated security testing, CI/CD pipelines, Security architectures, Secure configuration principles, Cryptography fundamentals, Encryption protocols, SCM &amp; CI/CD technologies, Security scanning, Vulnerability management, Static and dynamic security analysis tools, SCA/SBOM solutions, Secrets management, Password vault technologies, Secure programming, Infrastructure as Code tools, Web application security testing tools, Methodologies, Security frameworks, Standards, Linux, OS internals, Containers</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>IT Infrastructure</Employername>
      <Employerlogo>https://logos.yubhub.co/mlp.eightfold.ai.png</Employerlogo>
      <Employerdescription>IT Infrastructure is a technology-focused organisation that provides infrastructure services to various businesses.</Employerdescription>
      <Employerwebsite>https://mlp.eightfold.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://mlp.eightfold.ai/careers/job/755955629927</Applyto>
      <Location>Dublin, Ireland</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>6a75ea8b-5b4</externalid>
      <Title>Application Security Engineer</Title>
      <Description><![CDATA[<p>We are seeking an experienced Application Security Engineer to join our team. As a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies, you will play a key role in building toolsets and processes to drive adoption of secure practices across the enterprise.</p>
<p>The successful candidate will have a proven understanding in enterprise security and AI security and will focus on defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.</p>
<p>Key responsibilities include:</p>
<ul>
<li>Defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks</li>
<li>Conducting specialized threat modeling, red teaming, and risk assessments for AI/ML models</li>
<li>Leading risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects</li>
<li>Engaging throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards</li>
<li>Evangelizing AppSec and AI security best practices through developer education, training materials, and outreach</li>
</ul>
<p>Qualifications include:</p>
<ul>
<li>Bachelor&#39;s degree or higher in Computer Science, Computer Engineering, IT Security or related field</li>
<li>5+ years&#39; experience working as an Application Security Engineer, Software Engineer, or similar role</li>
<li>Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs</li>
<li>Experience working with AI models, Agentic frameworks and security risks associated with AI</li>
<li>Experience in working with global teams, collaborating on code and presentations</li>
</ul>
<p>Preferred qualifications include:</p>
<ul>
<li>Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)</li>
<li>Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols</li>
<li>Experience with common SCM &amp; CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines</li>
<li>Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions</li>
<li>Hands on experience with Secrets Management &amp; Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.</li>
<li>Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar</li>
<li>Familiarity with Infrastructure as Code tools (CloudFormation, Terraform, Ansible, etc.)</li>
<li>Familiarity with web application security testing tools and methodologies</li>
<li>Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.</li>
<li>Knowledge of Linux, OS internals and containers is a plus</li>
<li>Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous</li>
</ul>
<p>We offer a competitive salary and benefits package, as well as opportunities for professional growth and development.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>AI-specific risks, Generative AI, LLMs, Agentic frameworks, Security guardrails, Threat modeling, Red teaming, Risk assessments, Application risk assessments, Design reviews, Mitigation strategies, Secure coding standards, Developer education, Training materials, Outreach, Common SCM &amp; CI/CD technologies, GitHub, Jenkins, Artifactory, Security Scanning, Vulnerability Management, Static and dynamic security analysis tools, SCA/SBOM solutions, Secrets Management &amp; Password Vault technologies, Delinea Secret Server, Hashicorp Vault, Secure programming, Python, Java, C++, C#, Infrastructure as Code tools, CloudFormation, Terraform, Ansible, Web application security testing tools, Methodologies, Security frameworks, Standards, ISO 27001, NIST, OWASP, Linux, OS internals, Containers</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>IT Infrastructure</Employername>
      <Employerlogo>https://logos.yubhub.co/mlp.eightfold.ai.png</Employerlogo>
      <Employerdescription>IT Infrastructure is a department within a larger organisation that focuses on providing and maintaining the underlying technology infrastructure.</Employerdescription>
      <Employerwebsite>https://mlp.eightfold.ai</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://mlp.eightfold.ai/careers/job/755955629908</Applyto>
      <Location>London, United Kingdom</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>7a3c1d3f-0e2</externalid>
      <Title>Head of IT SOX</Title>
      <Description><![CDATA[<p>We are seeking a Head of IT SOX to join our Internal Audit SOX team at Anthropic. As the Head of IT SOX, you will lead the organisation&#39;s IT SOX compliance program, with a primary focus on IT General Controls (ITGCs), application controls, and system/process risk assessments.</p>
<p>In this role, you will work cross-functionally with Engineering, Security, IT, DevOps, and Finance to ensure the organisation meets SOX 404 compliance requirements in a rapidly scaling, technology-driven environment.</p>
<p>This is a unique opportunity to build IT SOX controls at an AI-first company, leveraging cutting-edge AI technology to create innovative, automated, and scalable compliance solutions.</p>
<p>You will help define how AI can transform traditional SOX processes,from continuous monitoring to intelligent risk assessment,while maintaining the rigor required for public company compliance.</p>
<p>As the Head of IT SOX, you will own SOX IT planning, scoping, testing, remediation, and reporting activities. You&#39;ll work directly with technical partners to design and implement scalable controls, oversee documentation, and manage communication with external auditors.</p>
<p>This role reports to the Head of Internal Audit and plays a critical part in strengthening internal control maturity as the company scales through pre-IPO readiness and longer term as a public company.</p>
<p>Responsibilities:</p>
<p>SOX IT Program Leadership</p>
<ul>
<li>Lead and manage the organisation&#39;s end-to-end IT SOX compliance program</li>
</ul>
<ul>
<li>Own SOX IT planning, scoping, testing, remediation, and reporting activities</li>
</ul>
<ul>
<li>Build scalable, automated, and sustainable controls to support growth through pre-IPO and post-IPO readiness</li>
</ul>
<ul>
<li>Develop and maintain the SOX IT compliance roadmap aligned with organisational growth</li>
</ul>
<ul>
<li>Pioneer the use of AI and automation technologies to enhance control effectiveness, continuous monitoring, and risk detection</li>
</ul>
<ul>
<li>Drive IT controls rationalisation initiatives to optimise the control environment and increase reliance on IT automated controls (ITACs)</li>
</ul>
<p>ITGC and Application Controls</p>
<ul>
<li>Design, implement, and monitor IT General Controls (ITGCs) across critical systems</li>
</ul>
<ul>
<li>Evaluate and test application controls and IT automated controls (ITACs) to ensure proper functionality and compliance</li>
</ul>
<ul>
<li>Conduct system and process risk assessments to identify control gaps and remediation needs</li>
</ul>
<ul>
<li>Oversee control documentation and ensure audit-ready evidence is maintained</li>
</ul>
<ul>
<li>Assess and monitor Systems Development Life Cycle (SDLC) controls for new system implementations and changes</li>
</ul>
<p>Cross-Functional Partnership</p>
<ul>
<li>Partner with Engineering, Security, IT, DevOps, and Finance teams to implement scalable controls</li>
</ul>
<ul>
<li>Work directly with technical partners to design controls that align with business operations</li>
</ul>
<ul>
<li>Collaborate with process owners to identify control improvements and automation opportunities</li>
</ul>
<ul>
<li>Support SEC cybersecurity disclosure requirements and ongoing monitoring of cyber risks</li>
</ul>
<p>External Audit Management</p>
<ul>
<li>Serve as the primary point of contact for external auditors on IT SOX matters</li>
</ul>
<ul>
<li>Manage audit requests, coordinate testing schedules, and facilitate audit walkthroughs</li>
</ul>
<ul>
<li>Track and report on IT SOX compliance status to leadership, the Board, and Audit Committee</li>
</ul>
<p>If you have 10+ years of hands-on IT audit and SOX compliance experience, preferably in both Big 4 and in-house internal audit/SOX leadership roles at a fast-paced technology company, you may be a good fit for this role.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$300,000-$360,000 USD</Salaryrange>
      <Skills>IT General Controls (ITGCs), application controls, system/process risk assessments, SOX 404 compliance, AI technology, automated and scalable compliance solutions, continuous monitoring, intelligent risk assessment, public company compliance, SOX IT planning, scoping, testing, remediation, reporting activities, scalable controls, documentation, communication with external auditors, internal control maturity, pre-IPO readiness, post-IPO readiness, IT controls rationalisation, IT automated controls (ITACs), Systems Development Life Cycle (SDLC) controls, cybersecurity disclosure requirements, cyber risks</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is an AI-first company that aims to create reliable, interpretable, and steerable AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5061691008</Applyto>
      <Location>San Francisco, CA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>9d8d91da-52f</externalid>
      <Title>Enterprise Risk Management Lead</Title>
      <Description><![CDATA[<p>About Gusto</p>
<p>At Gusto, we&#39;re on a mission to grow the small business economy. We handle the hard stuff , payroll, health insurance, 401(k)s, and HR , so owners can focus on their craft and their customers.</p>
<p>With teams in Denver, San Francisco, and New York, we support more than 400,000 small businesses nationwide and are building a workplace that reflects the people we serve.</p>
<p>All full-time employees receive competitive base pay, benefits, and equity (RSUs) , because everyone who helps build Gusto should share in its success. Offer amounts are determined by role, level, and location. Learn more about our Total Rewards philosophy.</p>
<p>AI is a fundamental part of how work gets done at Gusto. We expect all team members to actively engage with AI tools relevant to their role and grow their fluency as the technology evolves. AI experience requirements vary by role and will be assessed during the interview process.</p>
<p>About the Role:</p>
<p>Gusto is scaling our AI-powered risk function to support a complex, multi-entity business operating in highly regulated environments. As the Enterprise Risk Management Lead, you will own and operate Gusto&#39;s Enterprise Risk and Third Party Risk Management programs , built AI-first, designed to scale, and built to enable the business to move fast without breaking things.</p>
<p>This is a People Empowerer (manager) role. You balance hands-on program leadership with managing and developing a team of compliance professionals. You navigate the tension between &quot;doing the work&quot; and &quot;leading the work&quot; , contributing directly to complex, high-impact programs while ensuring your team delivers with excellence.</p>
<p>You are a change agent who influences how automated risk management gets done at Gusto, models AI-enabled ways of working, and helps others grow their own capabilities in the process.</p>
<p>You will champion the adoption of AI, machine learning, and process automation across risk monitoring, control testing, incident management, and reporting , and you will partner with Product, Data Science, and Engineering to make it explainable, adopted, compliant, and scalable.</p>
<p>Here’s what you’ll do day-to-day:</p>
<p>You manage initiatives that are complex in both scope and impact, influencing the strategic direction of Gusto&#39;s compliance risk management framework.</p>
<p>You apply a deep understanding of the regulatory landscape and how it intersects with Gusto&#39;s business model to proactively design and lead cross-functional risk programs.</p>
<p>You translate complex risk topics into clear, actionable guidance that senior leaders can immediately understand and operationalize.</p>
<p>You lead cross-functional working groups, align divergent perspectives, and drive cohesive progress toward shared goals , with minimal oversight.</p>
<p>As a PE, you balance individual risk and compliance contribution with team leadership.</p>
<p>You manage operations, professional development, resource allocation, and performance , while staying close enough to the work to be a credible, hands-on partner to your team and stakeholders.</p>
<p>You model responsible AI use, and act as a source of knowledge and mentorship , supporting your team&#39;s AI journey and helping others apply it responsibly and effectively.</p>
<p>AI-Enabled Risk Operations, Innovation &amp; Transformation</p>
<p>This is how you and your team operate , not a side project.</p>
<ul>
<li>Champion the adoption of AI, machine learning, process automation, and advanced analytics to improve risk monitoring, control testing, and reporting across ERM, TPRM, and broader compliance functions</li>
</ul>
<ul>
<li>Lead the integration of AI and automation into every phase of the risk lifecycle: vendor assessments, document ingestion and analysis, continuous monitoring and alerting, risk scoring, prioritization, and trend analysis</li>
</ul>
<ul>
<li>Build intelligent risk monitoring and evaluation systems , including auto-tagging for risk issues, audit requests, and regulatory changes , that improve real-time visibility and eliminate manual effort across the enterprise risk portfolio</li>
</ul>
<ul>
<li>Drive the digitalization of risk tools including RCSAs, KRIs, incident reporting, and audit tracking , transforming periodic, reactive processes into continuous intelligence systems with live leading and lagging indicators that enable real-time decision-making</li>
</ul>
<ul>
<li>Partner with Product, Data Science, and Engineering to define requirements for AI-driven workflows, decisioning engines, and dashboards , ensuring explainability, auditability, and regulatory defensibility of all AI-enabled risk decisions</li>
</ul>
<ul>
<li>Design and build intelligent dashboards and reporting tools that deliver real-time risk visibility and decision-quality insights to senior leadership and cross-functional stakeholders</li>
</ul>
<ul>
<li>Design AI workflows with appropriate validation loops, human-in-the-loop checkpoints, and guardrails , ensuring outputs are reliable, governable, and meet regulatory standards before being used to frame risks, recommendations, or decisions</li>
</ul>
<ul>
<li>Stay current on AI advancements and emerging technologies and proactively integrate new capabilities into team operations to increase velocity and scale</li>
</ul>
<ul>
<li>Model responsible AI use , supporting ICs in their AI journeys and fostering a culture of intentional experimentation, accountability, and continuous improvement</li>
</ul>
<p>Enterprise Risk Management</p>
<ul>
<li>Design, implement, and continuously improve Gusto&#39;s ERM framework, ensuring alignment with best practices and Gusto&#39;s stage of growth and strategic priorities across all entities</li>
</ul>
<ul>
<li>Define and maintain Gusto&#39;s enterprise risk taxonomy, risk appetite statement, and key risk indicators spanning operational, regulatory, technology, financial, and reputational risk domains</li>
</ul>
<ul>
<li>Lead Gusto&#39;s Enterprise Risk Management process , driving integration of risk practices across business functions, promoting a proactive risk culture, and ensuring incident management, root cause analysis, and lessons learned are systematically captured in an automated, AI forward way.</li>
</ul>
<ul>
<li>Apply AI-assisted insights to enterprise risk datasets to surface systemic patterns, validate assumptions, prioritize risks, and deliver proactive, data-driven advisory to senior leadership</li>
</ul>
<ul>
<li>Monitor the regulatory landscape (OCC, FDIC, CFPB, SEC, FINRA, GDPR, NIST, ISO, SOC) and leverage AI to proactively incorporate changes before they become compliance gaps</li>
</ul>
<ul>
<li>Act as a key advisor to senior compliance leadership , translating complex risk findings into clear, actionable recommendations with minimal oversight</li>
</ul>
<p>Third Party Risk Management (TPRM)</p>
<ul>
<li>Design, implement, and independently manage a high-impact, AI-first TPRM program with clear milestones, progress tracking, and measurable outcomes across all Gusto entities</li>
</ul>
<ul>
<li>Manage the full third-party risk lifecycle , onboarding and risk profiling, periodic assessments, issue management, corrective action tracking, and offboarding , across suppliers, product partners, contractors, service providers, and cloud service providers , and do so in an AI and automated way.</li>
</ul>
<ul>
<li>Maintain a centralized, authoritative vendor risk inventory and risk register, ensuring real-time visibility into Gusto&#39;s third-party risk posture</li>
</ul>
<ul>
<li>Conduct periodic AI-driven audits and reviews of third-party compliance with contractual obligations and regulatory standards, identifying patterns that inform continuous program improvement</li>
</ul>
<ul>
<li>Serve as the central orchestrator across Compliance, Security, Legal, Procurement, IT, and GRC for proactive and reactive third-party incident management</li>
</ul>
<ul>
<li>Own Gusto&#39;s TPRM policy and maintain comprehensive documentation , risk assessments, audit findings, corrective actions , ensuring full accountability and traceability</li>
</ul>
<p>People Leadership &amp; Team Development</p>
<ul>
<li>Balance individual compliance contribution with team leadership , managing operations, professional development, resource allocation, and performance while staying close to the work</li>
</ul>
<ul>
<li>Coach and develop ICs toward next</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Risk Management, Compliance, AI, Machine Learning, Process Automation, Advanced Analytics, Risk Monitoring, Control Testing, Incident Management, Reporting, Vendor Assessments, Document Ingestion, Analysis, Continuous Monitoring, Alerting, Risk Scoring, Prioritization, Trend Analysis, RCSAs, KRIs, Incident Reporting, Audit Tracking, AI-Driven Workflows, Decisioning Engines, Dashboards, Explainability, Auditability, Regulatory Defensibility, Intelligent Dashboards, Reporting Tools, Real-Time Risk Visibility, Decision-Quality Insights, Senior Leadership, Cross-Functional Stakeholders, Validation Loops, Human-in-the-Loop Checkpoints, Guardrails, Reliable Outputs, Governable Outputs, Regulatory Standards, AI Advancements, Emerging Technologies, Velocity, Scale, Responsible AI Use, ICs, AI Journeys, Accountability, Continuous Improvement, ERM Framework, Best Practices, Gusto&apos;s Stage of Growth, Strategic Priorities, Enterprise Risk Taxonomy, Risk Appetite Statement, Key Risk Indicators, Operational Risk, Regulatory Risk, Technology Risk, Financial Risk, Reputational Risk, Root Cause Analysis, Lessons Learned, Automated AI Forward Way, AI-Assisted Insights, Systemic Patterns, Assumptions, Proactive Advisory, Regulatory Landscape, OCC, FDIC, CFPB, SEC, FINRA, GDPR, NIST, ISO, SOC, Proactive Incorporation, Compliance Gaps, Key Advisor, Senior Compliance Leadership, Complex Risk Findings, Clear Actionable Recommendations, Minimally Supervised, High-Impact AI-First TPRM Program, Clear Milestones, Progress Tracking, Measurable Outcomes, Third-Party Risk Lifecycle, Onboarding, Risk Profiling, Periodic Assessments, Issue Management, Corrective Action Tracking, Offboarding, Suppliers, Product Partners, Contractors, Service Providers, Cloud Service Providers, AI and Automated Way, Centralized Vendor Risk Inventory, Risk Register, Real-Time Visibility, Third-Party Risk Posture, Periodic Audits, Reviews, Contractual Obligations, Patterns, Continuous Program Improvement, Central Orchestrator, Security, Legal, Procurement, IT, GRC, Proactive Incident Management, Reactive Incident Management, TPRM Policy, Comprehensive Documentation, Risk Assessments, Audit Findings, Corrective Actions, Traceability, Balance Individual Contribution, Team Leadership, Operations, Professional Development, Resource Allocation, Performance, Close to the Work, Coach and Develop ICs, Next Level</Skills>
      <Category>Legal</Category>
      <Industry>Finance</Industry>
      <Employername>Gusto</Employername>
      <Employerlogo>https://logos.yubhub.co/gusto.com.png</Employerlogo>
      <Employerdescription>Gusto is a company that provides payroll, health insurance, 401(k)s, and HR services to small businesses.</Employerdescription>
      <Employerwebsite>https://www.gusto.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/gusto/jobs/7746997</Applyto>
      <Location>Denver, CO;San Francisco, CA;New York, NY</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>e6b529b1-ff7</externalid>
      <Title>Cost Value Engineer, Supply Chain</Title>
      <Description><![CDATA[<p>The Cost Value Engineer drives the strategic supply network development and cost management of Anduril&#39;s product hardware across their lifecycles, by collaborating with suppliers and cross-functionally, including folks in engineering, quality, and manufacturing.</p>
<p>Key responsibilities include conducting supplier selection, partnering with strategic suppliers, managing CAPEX throughout NPI, conducting value-stream mapping, completing BOM risk assessments, ensuring completion of all component qualifications, reducing complexity through commonality optimization and component/supplier rationalization, and leading all cost engineering activities to converge the bottoms-up cost curve to product cost, maximizing the total cost of ownership (TCO) across the product lifecycle.</p>
<p>Required qualifications include a Bachelor&#39;s degree in engineering or other technical field, 3+ years of experience in sourcing engineering, supplier engagement and development, or design of electronics and/or mechanical devices, domain expertise of value/procurement engineering or TCO-related work at the component &amp; product level, ability to travel up to 25% of the time, and ability to relocate, if not already local to be onsite in Costa Mesa, CA.</p>
<p>Preferred qualifications include a Master&#39;s degree or advanced technical degree, deeper experience within design &amp; development of electronics and/or mechanical devices, advanced sourcing activities, including stints as commodity/sourcing managers, supplier development (technology, process, supply chain, etc.), early supplier engagement, ahead of product/engineering requirement realization, familiarity with developing high-tech products in a high-mix, low-volume environment, exposure to working in a fast-pace, start-up environment, and ability to obtain and maintain a U.S. TS clearance.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$129,000-$171,000 USD</Salaryrange>
      <Skills>Supplier selection, Partnering with strategic suppliers, Managing CAPEX, Value-stream mapping, BOM risk assessments, Component qualification, Commonality optimization, Cost engineering, Design and development of electronics and/or mechanical devices, Advanced sourcing activities, Supplier development, Early supplier engagement, High-tech product development, Fast-paced start-up environment, U.S. TS clearance</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anduril</Employername>
      <Employerlogo>https://logos.yubhub.co/anduril.com.png</Employerlogo>
      <Employerdescription>Anduril is a technology company that develops and manufactures advanced sensors and software for various industries.</Employerdescription>
      <Employerwebsite>https://www.anduril.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/andurilindustries/jobs/4930363007</Applyto>
      <Location>Costa Mesa, California, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>818537b4-1ae</externalid>
      <Title>Technical Program Manager (TPM) – SOX Compliance</Title>
      <Description><![CDATA[<p>CoreWeave is seeking a Technical Program Manager (TPM) to lead the end-to-end SOX program for technology and product systems. The successful candidate will have 8–15+ years of experience in SOX, IT Compliance, or Security GRC, ideally in a public-company SaaS environment. Key responsibilities include assessing new products and engineering changes for compliance, implementing and monitoring controls, and partnering closely with engineering, security, DevOps, and finance teams.</p>
<p>The TPM will be responsible for leading the SOX program, including onboarding, risk assessments, and control design for new features and significant engineering changes. They will also identify SOX risks and key controls, maintain the RCM, and oversee ITGCs and ITACs design and operating effectiveness.</p>
<p>The ideal candidate will have a proven track record of supporting product and engineering organizations, strong understanding of ITGCs, application controls, and risk assessments, and hands-on experience with SOX 404 control design, testing, issue management, and audit readiness.</p>
<p>In addition to the above responsibilities, the TPM will serve as the primary liaison to Internal and External Audit on technology- and product-related SOX matters, continuously improve the SOX program through metrics, automation, and monitoring, and track and resolve control issues, identify systemic gaps, and drive durable improvements to prevent recurrence.</p>
<p>If you&#39;re a motivated and experienced professional looking for a challenging role, please apply!</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$143,000 to $237,000</Salaryrange>
      <Skills>SOX 404 control design, SOX 404 testing, Issue management, Audit readiness, ITGCs, Application controls, Risk assessments, Identity and Access Management (IAM), Change management/SDLC controls, Cloud and SaaS control environments, System logic, configurations, and automated workflows, ITGCs and/or ITACs implementation or operation, Financial statement assertions, Order-to-cash, Procure-to-pay, Record-to-report</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>CoreWeave</Employername>
      <Employerlogo>https://logos.yubhub.co/coreweave.com.png</Employerlogo>
      <Employerdescription>CoreWeave is a cloud computing company founded in 2017, which became a publicly traded company in March 2025.</Employerdescription>
      <Employerwebsite>https://www.coreweave.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/coreweave/jobs/4652337006</Applyto>
      <Location>Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>af4fcc43-19c</externalid>
      <Title>Senior Cost Value Engineer</Title>
      <Description><![CDATA[<p>The Senior Cost Value Engineer drives the strategic supply network development and cost management of Anduril&#39;s product hardware across their lifecycles, by collaborating with suppliers and cross-functionally, including folks in engineering, quality, and manufacturing.</p>
<p>Key responsibilities include conducting supplier selection, partnering with strategic suppliers, managing CAPEX throughout NPI, conducting value-stream mapping, completing BOM risk assessments, ensuring completion of all component qualifications, reducing complexity through commonality optimization and component/supplier rationalization, and leading all cost engineering activities to converge the bottoms-up cost curve to product cost, maximizing the total cost of ownership (TCO) across the product lifecycle.</p>
<p>The ideal candidate will have a Bachelor&#39;s degree in engineering or other technical field, 5+ years of experience in sourcing engineering, supplier engagement and development, or design of electronics and/or mechanical devices, domain expertise of value/procurement engineering or TCO-related work at the component &amp; product level, ability to travel 10% - 40% of the time, and ability to relocate if not already local to be onsite in Costa Mesa, CA.</p>
<p>Preferred qualifications include a Master&#39;s degree or advanced technical degree, deeper experience within design &amp; development of electronics and/or mechanical devices, advanced sourcing activities, supplier development, early supplier engagement, familiarity with developing high-tech products in a high-mix, low-volume environment, exposure to working in a fast-pace, start-up environment, and ability to obtain and maintain a U.S. TS clearance.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$146,000-$194,000 USD</Salaryrange>
      <Skills>Supplier selection, Partnering with strategic suppliers, Managing CAPEX, Value-stream mapping, BOM risk assessments, Component qualifications, Commonality optimization, Cost engineering, Design and development of electronics and/or mechanical devices, Advanced sourcing activities, Supplier development, Early supplier engagement, High-tech product development, Fast-paced start-up environment, U.S. TS clearance</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anduril</Employername>
      <Employerlogo>https://logos.yubhub.co/anduril.com.png</Employerlogo>
      <Employerdescription>Anduril is a technology company that develops and manufactures advanced sensors and software for various industries.</Employerdescription>
      <Employerwebsite>https://www.anduril.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/andurilindustries/jobs/4930250007</Applyto>
      <Location>Costa Mesa, California, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>0710447f-f19</externalid>
      <Title>Information Systems Security Officer</Title>
      <Description><![CDATA[<p>We are seeking an experienced Information Systems Security Officer to join our team. greatness in the field of Information Systems Security Officer.</p>
<p>As an Information Systems Security Officer, you will play a critical role in shaping classified, closed, or air-gapped environments in which to deploy Anduril products or software. You will be well-versed in a combination of Information Technology, Security, and government accreditation processes, and will utilize your sharp critical thinking skills to balance Business Line needs, product velocity, and customer requirements.</p>
<p>Responsibilities:</p>
<ul>
<li>Provide expertise in documenting security controls that apply to respective systems to meet cybersecurity framework requirements.</li>
<li>Perform required security functions on an iterative basis to meet requirements and deliver results.</li>
<li>Apply technology standards from the commercial space in classified, air-gapped environments.</li>
<li>Assist the ISSM, fellow ISSOs, and other members of the Classified Infrastructure team to understand key stakeholders&#39; needs and provide complex technical solutions to meet contractual obligations.</li>
<li>Tailor NIST 800-53 controls to determine applicability to the network environment and oversee the implementation of Continuous Monitoring for respective programs.</li>
<li>Define, document, and conduct security scanning on Anduril&#39;s products and accredited information systems.</li>
<li>Scope, shape, and orchestrate the development of features to ensure products meet compliance goals.</li>
</ul>
<p>Requirements:</p>
<ul>
<li>Design, develop, and implement secure systems and networks per NIST RMF, JSIG, and other industry standards.</li>
<li>Participate and assist in security risk assessments, vulnerability assessments, and audits to identify and mitigate threats.</li>
<li>Speak to and recommend security solutions, such as IDS/IPS, encryption protocols, and secure communications technologies.</li>
<li>Develop and enforce access controls, encryption strategies, and other technical measures to safeguard systems.</li>
<li>Maintain and update System Security Plans (SSPs), POA&amp;Ms, and other accreditation documentation.</li>
<li>Manage the organization&#39;s security posture, ensuring compliance with internal policies and external regulatory frameworks.</li>
<li>Participate in the Authorization and Accreditation (A&amp;A) processes to obtain/maintain system Authority to Operate (ATO).</li>
<li>Able to assist, even lead, incident response efforts, including investigation, root cause analysis, containment, and reporting.</li>
<li>Conduct regular audits, continuous monitoring, and risk assessments to ensure ongoing compliance and system resilience.</li>
<li>Collaborate with government security officials, stakeholders, and teams to address security gaps and improve controls.</li>
<li>Currently possesses and is able to maintain an active U.S. Top Secret security clearance.</li>
</ul>
<p>Preferred Qualifications:</p>
<ul>
<li>Experience with industry standard tools such as Splunk, DISA STIGs, and SCC.</li>
<li>The ability to understand programming/scripting languages, i.e. Python, Powershell, Bash</li>
<li>An understanding of Linux Red Hat operating systems and SELinux policy.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$113,000-$149,000 USD</Salaryrange>
      <Skills>NIST RMF, JSIG, IDS/IPS, Encryption protocols, Secure communications technologies, Access controls, Encryption strategies, System Security Plans, POA&amp;Ms, Authorization and Accreditation, Incident response, Continuous monitoring, Risk assessments, Splunk, DISA STIGs, SCC, Python, Powershell, Bash, Linux Red Hat operating systems, SELinux policy</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anduril</Employername>
      <Employerlogo>https://logos.yubhub.co/anduril.com.png</Employerlogo>
      <Employerdescription>Anduril is a technology company that designs and manufactures advanced sensors and software for various applications.</Employerdescription>
      <Employerwebsite>https://www.anduril.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/andurilindustries/jobs/4993772007</Applyto>
      <Location>Costa Mesa, California, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>5ca1d076-26a</externalid>
      <Title>Information Systems Security Manager</Title>
      <Description><![CDATA[<p>Job Title: Information Systems Security Manager</p>
<p>About the Team: Anduril employs a variety of networks and networking infrastructures to support global operations. Information Systems Security Managers are in charge of directly supporting business lines that wish to deploy Anduril products in classified environments.</p>
<p>About the Job: As an Information Systems Security Manager, you will be responsible for providing expertise in documenting security controls to reduce the administrative cost of deploying Anduril&#39;s products into operational environments. You will partner with program and security teams to coordinate security artifacts in support of classified deployments. You will apply technology standards from the commercial space in classified, air-gapped environments.</p>
<p>Responsibilities:</p>
<ul>
<li>Provide expertise in documenting security controls to reduce the administrative cost of deploying Anduril&#39;s products into operational environments.</li>
<li>Partner with program and security teams to coordinate security artifacts in support of classified deployments.</li>
<li>Apply technology standards from the commercial space in classified, air-gapped environments.</li>
<li>Collaborate with Information System Owners to understand key stakeholders&#39; needs and provide complex technical solutions to meet contractual obligations.</li>
<li>Tailor NIST 800-53 controls to determine applicability to the network environment and oversee the implementation of Continuous Monitoring for respective programs.</li>
<li>Define, document, and conduct security scanning on Anduril&#39;s products and accredited information systems.</li>
<li>Scope, shape, and orchestrate the development of features to ensure products meet compliance goals.</li>
</ul>
<p>Required Qualifications:</p>
<ul>
<li>Design, develop, and implement secure systems and networks per NIST RMF, JSIG, and other industry standards.</li>
<li>Integrate security best practices into Anduril&#39;s Software Development Lifecycle (SDLC) and infrastructure design, collaborating with internal IT and engineering teams.</li>
<li>Conduct security risk assessments, vulnerability assessments, and audits to identify and mitigate threats.</li>
<li>Recommend and implement security solutions, such as IDS/IPS, encryption protocols, and secure communications technologies.</li>
<li>Develop and enforce access controls, encryption strategies, and other technical measures to safeguard systems.</li>
<li>Maintain and update System Security Plans (SSPs), POA&amp;Ms, and other accreditation documentation.</li>
</ul>
<p>Preferred Qualifications:</p>
<ul>
<li>Experience with application security paradigms such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA).</li>
<li>Proven experience in securing micro-services architecture, including implementing best practices and compliance with DoD cybersecurity standards.</li>
<li>Experience with cybersecurity in unmanned and ground control system within DoD environments.</li>
<li>Experience with containerization and kubernetes along with the best practices for securing them.</li>
<li>Experience with Cloud Service Providers (CSPs) and the various tools they offer for implementing security and compliance best practices.</li>
</ul>
<p>Salary: The salary range for this role is $146,000-$194,000 USD.</p>
<p>Benefits: Anduril offers top-tier benefits for full-time employees, including comprehensive medical, dental, and vision plans at little to no cost to you. Anduril also offers income protection, generous time off, family planning and parenting support, mental health resources, professional development, commuter benefits, relocation assistance, and a retirement savings plan.</p>
<p>Protecting Yourself from Recruitment Scams: Anduril is committed to maintaining the integrity of our Talent acquisition process and the security of our candidates. We&#39;ve observed a rise in sophisticated phishing and fraudulent schemes where individuals impersonate Anduril representatives, luring job seekers with false interviews or job offers. These scammers often attempt to extract payment or sensitive personal information.</p>
<p>To ensure your safety and help you navigate your job search with confidence, please keep the following critical points in mind:</p>
<ul>
<li>No Financial Requests: Anduril will never solicit payment or demand personal financial details (such as banking information, credit card numbers, or social security numbers) at any stage of our hiring process. Our legitimate recruitment is entirely free for candidates.</li>
<li>Please always verify communications:</li>
<li>Direct from Anduril: If you receive an email from one of our recruiters, it will only come from an @anduril.com address.</li>
<li>Via Agency Partner: If contacted by a recruiting agency for an Anduril role, their email will clearly identify their agency. If you suspect any suspicious activity, please verify the agency&#39;s authenticity by reaching out to contact@anduril.com.</li>
<li>Exercise Caution with Unsolicited Outreach: If you receive any communication that appears suspicious, contains grammatical errors, or makes unusual requests, do not respond or engage with the sender.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$146,000-$194,000 USD</Salaryrange>
      <Skills>Design, develop, and implement secure systems and networks per NIST RMF, JSIG, and other industry standards, Integrate security best practices into Anduril&apos;s Software Development Lifecycle (SDLC) and infrastructure design, collaborating with internal IT and engineering teams, Conduct security risk assessments, vulnerability assessments, and audits to identify and mitigate threats, Recommend and implement security solutions, such as IDS/IPS, encryption protocols, and secure communications technologies, Develop and enforce access controls, encryption strategies, and other technical measures to safeguard systems, Experience with application security paradigms such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA), Proven experience in securing micro-services architecture, including implementing best practices and compliance with DoD cybersecurity standards, Experience with cybersecurity in unmanned and ground control system within DoD environments, Experience with containerization and kubernetes along with the best practices for securing them, Experience with Cloud Service Providers (CSPs) and the various tools they offer for implementing security and compliance best practices</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Anduril</Employername>
      <Employerlogo>https://logos.yubhub.co/anduril.com.png</Employerlogo>
      <Employerdescription>Anduril is a technology company that employs a variety of networks and networking infrastructures to support global operations.</Employerdescription>
      <Employerwebsite>https://www.anduril.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/andurilindustries/jobs/4861096007</Applyto>
      <Location>Washington, District of Columbia, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>5627f042-ed8</externalid>
      <Title>Head of IT SOX</Title>
      <Description><![CDATA[<p>We are seeking a Head of IT SOX to join our Internal Audit SOX team at Anthropic. As the Head of IT SOX, you will lead the organisation&#39;s IT SOX compliance program, with a primary focus on IT General Controls (ITGCs), application controls, and system/process risk assessments.</p>
<p>In this role, you will work cross-functionally with Engineering, Security, IT, DevOps, and Finance to ensure the organisation meets SOX 404 compliance requirements in a rapidly scaling, technology-driven environment.</p>
<p>This is a unique opportunity to build IT SOX controls at an AI-first company, leveraging cutting-edge AI technology to create innovative, automated, and scalable compliance solutions.</p>
<p>As the Head of IT SOX, you will own SOX IT planning, scoping, testing, remediation, and reporting activities. You&#39;ll work directly with technical partners to design and implement scalable controls, oversee documentation, and manage communication with external auditors.</p>
<p>Responsibilities:</p>
<ul>
<li>Lead and manage the organisation&#39;s end-to-end IT SOX compliance program</li>
<li>Own SOX IT planning, scoping, testing, remediation, and reporting activities</li>
<li>Build scalable, automated, and sustainable controls to support growth through pre-IPO and post-IPO readiness</li>
<li>Develop and maintain the SOX IT compliance roadmap aligned with organisational growth</li>
<li>Pioneer the use of AI and automation technologies to enhance control effectiveness, continuous monitoring, and risk detection</li>
<li>Drive IT controls rationalisation initiatives to optimise the control environment and increase reliance on IT automated controls (ITACs)</li>
</ul>
<p>ITGC and Application Controls:</p>
<ul>
<li>Design, implement, and monitor IT General Controls (ITGCs) across critical systems</li>
<li>Evaluate and test application controls and IT automated controls (ITACs) to ensure proper functionality and compliance</li>
<li>Conduct system and process risk assessments to identify control gaps and remediation needs</li>
<li>Oversee control documentation and ensure audit-ready evidence is maintained</li>
<li>Assess and monitor Systems Development Life Cycle (SDLC) controls for new system implementations and changes</li>
</ul>
<p>Cross-Functional Partnership:</p>
<ul>
<li>Partner with Engineering, Security, IT, DevOps, and Finance teams to implement scalable controls</li>
<li>Work directly with technical partners to design controls that align with business operations</li>
<li>Collaborate with process owners to identify control improvements and automation opportunities</li>
<li>Support SEC cybersecurity disclosure requirements and ongoing monitoring of cyber risks</li>
</ul>
<p>External Audit Management:</p>
<ul>
<li>Serve as the primary point of contact for external auditors on IT SOX matters</li>
<li>Manage audit requests, coordinate testing schedules, and facilitate audit walkthroughs</li>
<li>Track and report on IT SOX compliance status to leadership, the Board, and Audit Committee</li>
</ul>
<p>You may be a good fit if you:</p>
<ul>
<li>Have 10+ years of hands-on IT audit and SOX compliance experience, preferably in both Big 4 and in-house internal audit/SOX leadership roles at a fast-paced technology company</li>
<li>Have proven ability to establish or scale SOX IT compliance programs at newly public or pre-IPO companies</li>
<li>Possess deep understanding of ITGCs, application controls, and risk assessments</li>
<li>Have strong project management, analytical, and communication skills</li>
<li>Hold a Bachelor&#39;s degree in Information Systems, Computer Science, Accounting, or a related field</li>
<li>Are passionate about building scalable processes that support organisational growth and Anthropic&#39;s mission to create safe AI</li>
</ul>
<p>Strong candidates may also have:</p>
<ul>
<li>Experience with Workday, Salesforce, NetSuite, GitHub, or other enterprise business systems</li>
<li>CISA, CIA, CPA, or similar certification</li>
<li>Experience supporting rapid company growth and scaling compliance programs accordingly</li>
<li>Interest in or experience applying AI/ML technologies to audit, compliance, or risk management processes</li>
<li>Understanding of financial data security and compliance requirements</li>
<li>Experience working at a high-growth AI or technology company</li>
<li>Familiarity with auditing modern software development environments</li>
</ul>
<p>The annual compensation range for this role is $300,000-$360,000 USD.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$300,000-$360,000 USD</Salaryrange>
      <Skills>SOX compliance, IT General Controls, application controls, risk assessments, project management, analytical skills, communication skills, AI and automation technologies, continuous monitoring, risk detection, IT controls rationalisation, IT automated controls, Systems Development Life Cycle, cybersecurity disclosure requirements</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is an AI-first company that aims to create reliable, interpretable, and steerable AI systems.</Employerdescription>
      <Employerwebsite>https://www.anthropic.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5061691008</Applyto>
      <Location>San Francisco, CA</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>95824db8-c14</externalid>
      <Title>Vice President of Environmental Health &amp; Safety</Title>
      <Description><![CDATA[<p>Saronic Technologies is seeking a highly experienced Vice President of Environmental Health &amp; Safety (EHS) to lead, scale, and globalize our EHS organization as we expand from a domestic defense and maritime manufacturing base into an international leader in AI-driven autonomous maritime systems.</p>
<p>The ideal candidate brings deep expertise in defense, shipbuilding, and advanced manufacturing, with exposure to AI-enabled, robotics, or autonomous vehicle technologies. This individual will have a proven record of designing and implementing world-class EHS programs in high-risk, high-technology, safety-critical maritime environments.</p>
<p>Responsibilities:</p>
<ul>
<li><p>Strategic Leadership &amp; Organizational Development: Develop and execute a global EHS strategy that supports the rapid growth of defense, maritime, and AI/autonomous manufacturing programs.</p>
</li>
<li><p>Scale the EHS organization across multiple international sites, ensuring regional compliance, consistent standards, and operational excellence.</p>
</li>
<li><p>Coordinate with Security, Legal, and Compliance in all strategic planning, including facility expansion, technology integration, facility and operational controls, and entry into new international markets.</p>
</li>
<li><p>Regulatory Compliance &amp; Certification: Lead efforts to achieve and maintain ISO 14000 and ISO 45001 certifications and ensure compliance with ASTM E2920-24, DoD/NAVSEA standards, ISM, and other applicable defense and maritime environmental and health and safety regulations.</p>
</li>
<li><p>Oversee audit programs, risk assessments, and corrective action plans across all operations, including those integrating AI, robotics, and autonomous technologies.</p>
</li>
<li><p>Operational Excellence &amp; Risk Management: Develop and implement scalable, data-driven EHS management systems.</p>
</li>
<li><p>Drive advanced risk management initiatives.</p>
</li>
<li><p>Oversight of serious incident investigations, regulator engagement, and executive communications.</p>
</li>
</ul>
<p>Qualifications:</p>
<ul>
<li><p>Education &amp; Credentials: Bachelor’s degree in Environmental Engineering, Safety Engineering, Industrial Hygiene, or related field (Master’s preferred).</p>
</li>
<li><p>Professional certifications such as CSP, CIH, CHMM, ICS, PE, or CPEA preferred.</p>
</li>
<li><p>Experience: Minimum 15+ years of progressive EHS leadership experience in a global EHS program in defense, maritime, shipbuilding, or advanced manufacturing industries.</p>
</li>
<li><p>Experience in high hazard environments including shipbuilding or ship repair, aerospace or defense manufacturing, offshore oil &amp; gas, heavy industrial manufacturing, large-scale energy.</p>
</li>
<li><p>Maritime experience in shipyard safety, pier-side and at-sea testing, vessel commissioning and sea trials.</p>
</li>
<li><p>Experience managing EHS for autonomous or remotely operated systems, robotics or unmanned platforms, complex software-hardware integration.</p>
</li>
<li><p>Proven track record in achieving ISO 14001 and ISO 45001 certifications and ensuring ASTM E2920-24 compliance.</p>
</li>
<li><p>Skills &amp; Attributes: Strategic, visionary leadership with deep operational and technical EHS expertise.</p>
</li>
<li><p>Strong understanding of risk management frameworks for autonomous and AI-enabled systems.</p>
</li>
<li><p>Excellent cross-functional collaboration skills across engineering, software, and manufacturing disciplines.</p>
</li>
<li><p>Exceptional communication, stakeholder engagement, and cross-cultural leadership abilities.</p>
</li>
<li><p>Commitment to continuous improvement, sustainability, and ethical responsibility</p>
</li>
</ul>
<p>Physical Requirements:</p>
<ul>
<li>Position occasionally requires the ability to work overtime and weekends when needed.</li>
<li>Role requires up to 20% travel between CA, TX, LA, and VA with opportunities to travel to other US cities.</li>
<li>Ability to lift 35 lbs unassisted.</li>
</ul>
<p>Benefits:</p>
<ul>
<li>Medical Insurance: Comprehensive health insurance plans covering a range of services.</li>
<li>Saronic pays 100% of the premium for employees and 80% for dependents.</li>
<li>Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care.</li>
<li>Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents.</li>
<li>Time Off: Generous PTO and Holidays.</li>
<li>Parental Leave: Paid maternity and paternity leave to support new parents.</li>
<li>Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses.</li>
<li>Retirement Plan: 401(k) plan with company match.</li>
<li>Stock Options: Equity options to give employees a stake in the company’s success.</li>
<li>Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage.</li>
<li>Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline.</li>
<li>Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>executive</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Environmental Health &amp; Safety, Defense, Shipbuilding, Advanced Manufacturing, AI-enabled, Robotics, Autonomous Vehicle Technologies, Risk Management, Regulatory Compliance, ISO 14000, ISO 45001, ASTM E2920-24, DoD/NAVSEA standards, ISM, Audit Programs, Risk Assessments, Corrective Action Plans, Data-Driven EHS Management Systems, Serious Incident Investigations, Regulator Engagement, Executive Communications</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Saronic Technologies</Employername>
      <Employerlogo>https://logos.yubhub.co/saronictechnologies.com.png</Employerlogo>
      <Employerdescription>Saronic Technologies is a leader in revolutionizing autonomy at sea, developing state-of-the-art solutions for maritime operations through autonomous and intelligent platforms.</Employerdescription>
      <Employerwebsite>https://www.saronictechnologies.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/saronic/13dc6af6-4b38-4ed8-b1bc-15b50eea5249</Applyto>
      <Location>CA</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>40d6a030-5f0</externalid>
      <Title>Senior Project and Events Manager</Title>
      <Description><![CDATA[<p>About Charlotte Tilbury Beauty</p>
<p>We&#39;re a global beauty company that has revolutionised the face of the industry by de-coding makeup applications for everyone, everywhere. Our easy-to-use, easy-to-choose, easy-to-gift range has broken records across countries, channels, and categories.</p>
<p>Job Title: Senior Project and Events Manager</p>
<p>We&#39;re looking for a strategic and hands-on Senior Project Manager to join our UK Leadership Team and report directly to the GM. You&#39;ll lead the end-to-end planning, coordination, and operational delivery of key cross-functional strategic projects and events, spanning tech, commercial, VM, store design, marketing, retail, operations, and education.</p>
<p>Responsibilities</p>
<ul>
<li><p>Lead Distribution &amp; Operational Readiness: Act as the key gatekeeper for all upcoming distribution and CPA milestones. Manage critical timelines and decision points across functions, ensuring smooth internal and external reviews. Oversee operational readiness for new store openings and concessions, including supply chain and logistics coordination.</p>
</li>
<li><p>Facilitate Measurement &amp; Reporting: Support in driving post-project and event reviews to capture learnings and implement improvements. Collaboratively collate key KPIS with stakeholders for each activation and operational project, and ensure clear process &amp; accountability mapping.</p>
</li>
<li><p>Change Management &amp; Communications: Own communication and integration for strategic initiatives such as tech upgrades, clienteling platforms, and SAP systems. Lead stakeholder engagement and ensure seamless regional adoption.</p>
</li>
<li><p>Promotional Calendar &amp; Commercial Moments: Manage promotional timelines, including AOV drivers and key commercial events. Oversee sign-off processes and coordinate cross-functional kick-offs to ensure flawless execution.</p>
</li>
<li><p>Budget Governance: Own budget management processes across all functions, ensuring timely reviews, and approvals are met within given timeframes.</p>
</li>
</ul>
<p>Event &amp; Activation Management</p>
<ul>
<li><p>Retail Conference &amp; Showcase PM Leadership: Co-lead major retail conference and product showcase events, managing cross-functional CPAs, logistics, presenter coordination, content reviews, and approvals. Act as on-the-day production lead, directing timelines and team responsibilities.</p>
</li>
<li><p>Experiential Activations &amp; Pop-Ups: Own CPAs, logistics, and approval timelines to deliver exceptional brand experiences. Act as on-the-day production lead, directing timelines and team responsibilities.</p>
</li>
<li><p>Charlotte &amp; Team Tilbury PA Events: Lead planning and execution of Charlotte Tilbury (founder) PA events, managing CPAs, logistics, and approvals. Collaborate closely with global teams to ensure alignment, consistency &amp; approvals.</p>
</li>
</ul>
<p>Reporting Relationships</p>
<ul>
<li><p>Reporting directly into the GM of the region</p>
</li>
<li><p>Dotted line to full regional SLT</p>
</li>
<li><p>Member of UK/PP/ANZ Lead team</p>
</li>
<li><p>Closely collaborates with full UK cross-functional team</p>
</li>
<li><p>Collaborates with the Global Marketing function</p>
</li>
<li><p>Collaborates with Global Tech &amp; Transformation teams</p>
</li>
</ul>
<p>Requirements</p>
<ul>
<li><p>Proven experience in event management and retail operations within beauty, fashion, or luxury sectors.</p>
</li>
<li><p>Previous senior project management experience</p>
</li>
<li><p>Strong project management skills (tools like Asana, Monday.com).</p>
</li>
<li><p>Financial acumen and governance discipline.</p>
</li>
<li><p>Excellent stakeholder management and communication skills.</p>
</li>
<li><p>Knowledge of H&amp;S compliance, permits, and risk assessments.</p>
</li>
<li><p>Ability to thrive in fast-paced, ambiguous environments.</p>
</li>
</ul>
<p>Benefits</p>
<ul>
<li><p>Be a part of this values-driven, high-growth, magical journey with an ultimate vision to empower everyone, everywhere to be the best version of themselves.</p>
</li>
<li><p>We&#39;re a hybrid model with flexibility, allowing you to work how best suits you.</p>
</li>
<li><p>25 days holiday (plus bank holidays) with an additional day to celebrate your birthday.</p>
</li>
<li><p>Inclusive parental leave policy that supports all parents and carers throughout their parenting and caring journey.</p>
</li>
<li><p>Financial security and planning with our pension and life assurance for all.</p>
</li>
<li><p>Wellness and social benefits including Medicash, Employee Assist Programs, and regular social connects with colleagues.</p>
</li>
<li><p>Bring your furry friend to work with you on our allocated dog-friendly days and spaces.</p>
</li>
<li><p>And not to forget our generous product discount and gifting!</p>
</li>
</ul>
<p>At Charlotte Tilbury Beauty, our mission is to empower everybody in the world to be the most beautiful version of themselves. We celebrate and support this by encouraging and hiring people with diverse backgrounds, cultures, voices, beliefs, and perspectives into our growing global workforce.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Project management, Event management, Retail operations, Financial acumen, Governance discipline, Stakeholder management, Communication skills, H&amp;S compliance, Permits, Risk assessments</Skills>
      <Category>Retail</Category>
      <Industry>Beauty</Industry>
      <Employername>Charlotte Tilbury Beauty</Employername>
      <Employerlogo>https://logos.yubhub.co/charlottetilbury.com.png</Employerlogo>
      <Employerdescription>A global beauty company founded by British makeup artist Charlotte Tilbury MBE in 2013, with over 2,300 employees globally.</Employerdescription>
      <Employerwebsite>https://www.charlottetilbury.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://apply.workable.com/j/0B5DA56869</Applyto>
      <Location>London</Location>
      <Country></Country>
      <Postedate>2026-03-20</Postedate>
    </job>
    <job>
      <externalid>0d6b0b5c-92a</externalid>
      <Title>Governance, Risk, and Compliance (GRC) SME- (m/w/d) DACH-Region</Title>
      <Description><![CDATA[<p><strong>Job Description</strong></p>
<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. As a Cyber GRC Senior Consultant, you will work with security, IT, and compliance teams to strengthen cybersecurity, manage cyber risks, and ensure regulatory compliance.</p>
<p><strong>Key Responsibilities</strong></p>
<ul>
<li>Participate in global projects in an international team, supported by over 330,000 technical professionals from our parent company</li>
<li>Contribute to the development of consulting offerings and innovative go-to-market solutions for the C-Suite to make cyber risks understandable and reducible</li>
<li>Lead and conduct risk analyses according to the NIST CSF</li>
<li>Be responsible for conceiving innovative new services using AI and ML where they offer real added value</li>
<li>Support pre-sales, sales, and account management activities from the perspective of a subject matter expert</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>You have a clear career progression and experience working with renowned consulting firms and large commercial sector customers</li>
<li>You bring a strong passion for cybersecurity and actively follow current industry trends and developments</li>
<li>Your cybersecurity expertise includes:</li>
</ul>
<p>+ A relevant university degree (Bachelor or Master) in Information Security, Cybersecurity, or IT Security 	+ At least 1-5+ years of experience in the field of Cyber Security/Information Security 	+ A broad business competence profile, including stakeholder management, problem-solving ability, and resilience 	+ Experience in collecting, validating, analyzing, documenting, and communicating information to stakeholders</p>
<p><strong>Desired Skills</strong></p>
<ul>
<li>Good knowledge of the NIST Cybersecurity Framework (CSF)</li>
<li>A further university degree in Cyber or Information Security</li>
<li>Cyber Due Diligence Assessments</li>
<li>Cyber Risk Management for third parties and supply chains</li>
<li>Review of Incident Response Plans</li>
<li>Support in tenders, RFP responses, and offers</li>
<li>Conducting Crisis Management Exercises (CMX)</li>
<li>Certifications such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM</li>
<li>Participation in the development of Target Operating Models (TOMs) and RACI matrices</li>
<li>Creation of Cyber Security Roadmaps</li>
<li>Support in Post-Incident Reviews</li>
<li>Analysis and summarization of Cyber Threat Intelligence Reports</li>
<li>Implementation of Cyber Compliance Programs (DSGVO, DORA, ISO 27001, NIS2, SOX)</li>
<li>Cyber Risk or Maturity Assessments</li>
<li>Conception and/or implementation of Awareness Trainings</li>
<li>Participation in Identity &amp; Access Management Projects</li>
<li>Participation in Privileged Access Management Projects</li>
</ul>
<p><strong>Ideal Candidate Profile</strong></p>
<ul>
<li>Our ideal candidates have the following skills:</li>
</ul>
<p>+ Strong business competence, particularly in stakeholder management and problem-solving 	+ Experience in preparing and communicating complex information to stakeholders 	+ Very good communication skills in German (C2) and English (C2) and project-related travel readiness 	+ Enjoy working with customers from different industries 	+ Experience in balancing technical and commercial requirements to develop practical solutions 	+ Ability to build lasting business relationships at all levels 	+ Ability to provide expert support and guidance to less experienced colleagues 	+ Ability to explain complex cyber methods in a non-technical and understandable way (written and oral)</p>
<p><strong>Benefits</strong></p>
<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. Our team of business analysts, enterprise architects, and cyber security specialists combines operational, strategic, analytical, and innovative competencies to drive business-IT alignment, IT governance transformation, IT cost optimization, efficiency improvement, innovation promotion, and cyber risk, governance, and compliance topics.</p>
<p><strong>About Infosys Consulting</strong></p>
<p>You will be part of a globally renowned management consulting firm that is on the front-line of industry disruption. We are a mid-size player with a supportive, entrepreneurial spirit that works with a market-leading brand in every sector, while our parent organization Infosys is a top-5 powerhouse IT brand that is outperforming the market and experiencing rapid growth.</p>
<p>Our consulting business is annually recognized as one of the UK&#39;s top firms by the Financial Times and Forbes due to our client innovations, our cultural diversity, and dedicated training and career paths we offer to our consultants. We are committed to fostering an inclusive work culture that inspires everyone to deliver their best.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Cybersecurity, Risk Management, Regulatory Compliance, NIST CSF, Cyber Due Diligence Assessments, Cyber Risk Management, Incident Response Plans, Crisis Management Exercises, Certifications, Target Operating Models, RACI matrices, Cyber Security Roadmaps, Post-Incident Reviews, Cyber Threat Intelligence Reports, Cyber Compliance Programs, Cyber Risk Assessments, Awareness Trainings, Identity &amp; Access Management, Privileged Access Management, German, English, Stakeholder Management, Problem-Solving, Resilience, Communication, Project Management, Business Analysis, Enterprise Architecture, Cyber Security, IT Governance, IT Cost Optimization, Efficiency Improvement, Innovation Promotion</Skills>
      <Category>IT</Category>
      <Industry>Consulting</Industry>
      <Employername>Infosys Consulting - Europe</Employername>
      <Employerlogo>https://logos.yubhub.co/view.com.png</Employerlogo>
      <Employerdescription>Infosys Consulting is a globally renowned management consulting firm that works with a market-leading brand in every sector, while its parent organization Infosys is a top-5 powerhouse IT brand.</Employerdescription>
      <Employerwebsite>https://jobs.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/oexxh4mvWPKhUMdVS3q5pd/hybrid-governance%2C-risk%2C-and-compliance-(grc)-sme--(m%2Fw%2Fd)-dach-region-in-munich-at-infosys-consulting---europe</Applyto>
      <Location></Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>1bdc3caf-792</externalid>
      <Title>Governance, Risk, and Compliance (GRC) SME - Senior Consultant</Title>
      <Description><![CDATA[<p>Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients&#39; most important challenges? We are growing and are looking for people to join our team. You&#39;ll be part of an entrepreneurial, high-growth environment of 300,000 employees. Our dynamic organization allows you to work across functional business pillars, contributing your ideas, experiences, diverse thinking, and a strong mindset. Are you ready?</p>
<p>We are looking for a highly skilled Cyber GRC (Governance, Risk, and Compliance) Senior Consultant to help organizations strengthen their cybersecurity posture, manage cyber risks, and ensure regulatory compliance. The ideal candidate will have deep expertise in cybersecurity frameworks, risk management, regulatory compliance, and security governance.</p>
<p>As a Cyber GRC Senior Consultant, you will collaborate with client security, IT, and compliance teams to direct and oversee the development and implementation of cybersecurity policies, conduct risk assessments, and ensure adherence to global security standards and regulations.</p>
<p><strong>Key Responsibilities:</strong></p>
<p>Work on global projects with a truly global team, with the support of over 330,000 technical staff from our parent organization.</p>
<p>Contribute to the development of consulting go to market offerings and innovative solutions targeted at the C-Suite executive community that help them to understand and mitigate their cyber risks.</p>
<p>Direct and lead NIST CSF risk assessments</p>
<p>Oversee the design of innovative new services to lead the market incorporating AI and ML where it brings value.</p>
<p>Support presales, sales, and account management pursuits from a subject matter expert perspective.</p>
<p><strong>Requirements</strong></p>
<p>You will have already achieved strong career progression to date, and experience working with recognized consulting brands and large commercial sector clients. You will have a passion for cyber security and a genuine interest in staying updated with the latest industry trends and developments.</p>
<p>Your security experience must include:</p>
<p>A relevant undergrad or post grad degree (Infosec, Cyber Security, IT Security)</p>
<p>1-5 years+ in the field of cyber security/infosec.</p>
<p>A broad business skill set including stakeholder management, problem-solving, and resilience</p>
<p>Experience in gathering, validating, synthesizing, documenting, and communicating data and information for a range of audiences</p>
<p>Excellent interpersonal skills and strong written and verbal communication skills in country’s official language(s) (C2 proficiency) and English (C2 proficiency), project-related mobility/willingness to travel</p>
<p>Your diverse Security experience should include one or some of below:</p>
<p>A good understanding of NIST CSF</p>
<p>A post graduate degree in cyber /information security</p>
<p>Cyber Due Diligence Assessments</p>
<p>Third- Party &amp; Supply chain Cyber Risk Management</p>
<p>Incident Response Plan review</p>
<p>Supporting bids, RFP responses and proposals</p>
<p>Crisis Management Exercises (CMX)</p>
<p>Accreditation such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM,</p>
<p>Helped design Target Operating Models (TOMs) and RACI Matrices</p>
<p>Helping the design of Cyber Security Roadmaps</p>
<p>Supporting Post Incident Reviews</p>
<p>Reading and summarising Cyber Threat Intelligence reports</p>
<p>Cyber Security Risk Assessments or Maturity Assessments</p>
<p>Design and/deliver awareness training.</p>
<p>Worked on Identity and Access Management projects.</p>
<p>Worked on Privileged access management projects</p>
<p><strong>Our ideal candidate may have some of the following skills:</strong></p>
<p>Have a broad business skill set including stakeholder management, problem-solving, and resilience</p>
<p>Have experience in gathering, validating, synthesizing, documenting, and communicating data and information for a range of audiences</p>
<p>Have excellent interpersonal skills and strong written and verbal communication skills in country’s official language(s) (C2 proficiency) and English (C2 proficiency), project-related mobility/willingness to travel</p>
<p>Enjoy working with different clients from different industries.</p>
<p>Have some experience in balancing technical and commercial considerations to develop practical advice or solutions for clients.</p>
<p>Be able to build strong and effective business relationships at all levels</p>
<p>Be able to support and oversee staff with less experience in their tasks</p>
<p>Be able to explain complex cyber methodologies using accessible non-technical language (both written and verbal)</p>
<p>_Given that this is just a short snapshot of the role we encourage you to apply even if you don&#39;t meet all the requirements listed above. We are looking for team members who strive to make an impact and are eager to learn. If this sounds like you and you feel you have the skills and experience required, then please apply now._</p>
<p><strong>About your team</strong></p>
<p>At the Tech Transformation practice, we help CIOs overcome their biggest challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget constraints; enabling them to leverage technology to deliver value to their business. We have a team of business analysts, enterprise architects and cybersecurity specialists with business, operational, strategic, analytical and innovation skills. that come together to drive business IT alignment, Transform IT governance, IT Cost containment, operating efficiency improvements, Innovation enablement and cybersecurity risk, governance, and compliance.</p>
<p><strong>About Infosys Consulting</strong></p>
<p>Be part of a globally renowned management consulting firm on the front-line of industry disruption and at the cutting edge of technology. We work with market leading brands across sectors. Our culture is inclusive and entrepreneurial. Being a mid-size consultancy within the scale of Infosys gives us the global reach to partner with our clients throughout their transformation journey.</p>
<p>Our core values, IC-LIFE, form a common code that helps us move forward. IC-LIFE stands for Inclusion, Equity and Diversity, Client, Leadership, Integrity, Fairness, and Excellence. To learn more about Infosys Consulting and our values, please visit our careers page.</p>
<p>Within Europe, we are recognized as one of the UK’s top firms by the Financial Times and Forbes due to our client innovations, our cultural diversity and dedicated training and career paths. Infosys is on the Germany’s top employers list for 2023. Management Consulting Magazine named us on their list of Best Firms to Work for. Furthermore, Infosys has been recognized by the Top Employers Institute, a global certification company, for its exceptional standards in employee conditions across Europe for five years in a row.</p>
<p>We offer industry-leading compensation and benefits, along with top training and development opportunities so that you can grow your career and achieve your personal goals. Curious to learn more? We’d love to hear from you.... Apply today!</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>cybersecurity frameworks, risk management, regulatory compliance, security governance, NIST CSF, cyber due diligence assessments, third-party and supply chain cyber risk management, incident response plan review, crisis management exercises, accreditation such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM, target operating models, RACI matrices, cybersecurity roadmaps, post-incident reviews, cyber threat intelligence reports, cybersecurity risk assessments, identity and access management, privileged access management, stakeholder management, problem-solving, resilience, data and information gathering, data and information validation, data and information synthesis, data and information documentation, data and information communication, interpersonal skills, written communication skills, verbal communication skills</Skills>
      <Category>IT</Category>
      <Industry>Consulting</Industry>
      <Employername>Infosys Consulting - Europe</Employername>
      <Employerlogo>https://logos.yubhub.co/view.com.png</Employerlogo>
      <Employerdescription>Infosys Consulting is a globally renowned management consulting firm that works with market leading brands across sectors. Its parent organization, Infosys, is a top-5 powerhouse IT brand.</Employerdescription>
      <Employerwebsite>https://jobs.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/kpLfuJ6MMnQF6UP1PbZm31/remote-governance%2C-risk%2C-and-compliance-(grc)-sme---senior-consultant-in-poland-at-infosys-consulting---europe</Applyto>
      <Location></Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>ea937e88-d5b</externalid>
      <Title>Site Manager</Title>
      <Description><![CDATA[<p>Make a difference as a Site Manager – lead safe, efficient, and compliant site operations.</p>
<p>Reporting to the Regional General Manager, you’ll take full ownership of day-to-day operations at our West Midlands site.</p>
<p>With safety, health and environmental standards front and centre, you’ll drive operational efficiency, boost financial performance, and deliver outstanding service to both internal and external customers. You’ll lead from the front — developing your team, championing innovation, and unlocking the site’s full potential all measured through clear, outcome-focused KPIs.</p>
<p>Success in this role means strong collaboration with the Regional General Manager and the Project and Maintenance Manager, while fostering a proactive, high-performance culture across the site.</p>
<p><strong>Health, Safety &amp; Environment</strong></p>
<ul>
<li>Lead site health, safety and environmental performance, reducing incidents and embedding a strong safety-first culture.</li>
<li>Enforce site rules and procedures, conducting investigations and disciplinaries where required.</li>
<li>Ensure full compliance with permits, licences and legal obligations — achieving zero EA CAR scores, no discharge breaches, no reportable emissions, and no long-term waste stock.</li>
</ul>
<p><strong>Operational Performance</strong></p>
<ul>
<li>Plan and coordinate treatments to maximise efficiency and capacity.</li>
<li>Quote customers, review bookings and eliminate non-value-adding activities to consistently meet service KPIs.</li>
<li>Drive continuous improvement across processes, systems and site standards.</li>
</ul>
<p><strong>Financial Management</strong></p>
<ul>
<li>Control site budgets across treatment, disposal, labour and maintenance.</li>
<li>Deliver strong monthly P&amp;L performance and meet or exceed agreed financial targets.</li>
<li>Identify cost-saving opportunities without compromising safety or service quality.</li>
</ul>
<p><strong>People &amp; Leadership</strong></p>
<ul>
<li>Oversee staffing levels, schedules and performance management.</li>
<li>Set clear objectives and hold teams accountable for results.</li>
<li>Work closely with the Site Manager and wider teams to ensure effective resourcing and collaboration.</li>
<li>Develop your people through structured training, coaching and hands-on leadership.</li>
</ul>
<p>Requirements</p>
<p>Our essential requirements.</p>
<ul>
<li>IOSH Managing Safely (or equivalent) is essential; COTC Level 4 in hazardous waste treatment and transfer is highly desirable.</li>
<li>Experience managing operational teams in a fast-paced, regulated environment; hazardous waste or treatment/transfer station experience is desirable.</li>
<li>Degree in Chemistry, Engineering, or a related science is preferred but not essential.</li>
<li>Good working knowledge of site permitting, risk assessments, and ISO standards (9001, 14001, 45001), with confidence in leading investigations and disciplinaries.</li>
<li>Proficient in MS Office, with strong organisational skills and the ability to manage a mixed-skills team effectively.</li>
</ul>
<p>Benefits</p>
<p>And here’s why you’ll love it at Biffa.</p>
<ul>
<li>Ongoing career development, training and coaching – Because if you don’t grow, we don’t grow.</li>
<li>Generous pension scheme.</li>
<li>Retail and leisure discounts.</li>
<li>Holiday and travel discounts.</li>
<li>Life cover.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>IOSH Managing Safely, COTC Level 4 in hazardous waste treatment and transfer, Degree in Chemistry, Engineering, or a related science, Good working knowledge of site permitting, risk assessments, and ISO standards (9001, 14001, 45001), Proficient in MS Office, Experience managing operational teams in a fast-paced, regulated environment, Hazardous waste or treatment/transfer station experience</Skills>
      <Category>Operations</Category>
      <Industry>Manufacturing</Industry>
      <Employername>Biffa</Employername>
      <Employerlogo>https://logos.yubhub.co/j.com.png</Employerlogo>
      <Employerdescription>Biffa is a waste management company with over 11,500 employees across the UK.</Employerdescription>
      <Employerwebsite>https://apply.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://apply.workable.com/j/EC74D9BB4E</Applyto>
      <Location>West Midlands</Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>61702c2e-92c</externalid>
      <Title>Operations Manager</Title>
      <Description><![CDATA[<p>Join Biffa as an Operations Manager. This is a full-time role, working Monday to Friday, 37.5 hours per week. As an IVC Operations Manager within the Organics Division, you will be a key member of the site leadership team, responsible for overseeing daily operations at the IVC site. You will act as the main point of contact for site staff and the IVC Manager, ensuring operational efficiency, accurate record-keeping, and compliance with environmental and health and safety standards.</p>
<p>A core part of your role involves leading the operational team to deliver high performance, aligned with the company’s mission to foster a safe, productive, and inclusive workplace culture. This is a site-based role involving regular outdoor work in varying weather conditions, with rotational availability required for operational oversight outside of standard working hours.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Provide day-to-day operational oversight of the site, leading the foreman and plant operators to ensure efficiency, compliance, and achievement of operational targets.</li>
<li>Ensure full compliance with Health &amp; Safety legislation, company policies, risk assessments, SSOWs, SOPs, and the Site Traffic Management Plan.</li>
<li>Monitor composting processes and key parameters using SCADA and other systems, ensuring compliance with ABP, PAS 100, and APHA requirements.</li>
<li>Oversee equipment inspections, LOLER compliance, planned preventative maintenance, breakdown response, and accurate maintenance records.</li>
<li>Manage contractors, visitors, and suppliers on site, including inductions, permits to work, procurement, and stock control within budget.</li>
<li>Lead health, safety, and environmental performance, including inspections, audits, incident investigations, pest control, and continuous improvement initiatives.</li>
<li>Lead, motivate, and manage the operational team, including rotas, training, performance management, inductions, and workforce planning.</li>
<li>Maintain effective communication and reporting, acting as a key site contact for regulators and stakeholders, and supporting audits, inspections, and community engagement.</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>Demonstrable supervisory experience within waste management, composting, recycling, or a similar industrial environment.</li>
<li>Proven experience producing and delivering risk assessments, permits to work, SOPs, and toolbox talks.</li>
<li>Experience maintaining accurate operational records and extracting data from SCADA or similar automated control systems.</li>
<li>Previous responsibility for ordering and managing consumables, PPE, lubricants, and spare parts.</li>
<li>Strong working knowledge of health and safety legislation applicable to high-risk industrial or waste environments, with a focus on good housekeeping and site standards.</li>
<li>Experience using and completing internal learning platforms or training modules.</li>
</ul>
<p><strong>Benefits</strong></p>
<ul>
<li>Ongoing career development, training and coaching – Because if you don’t grow, we don’t grow.</li>
<li>Car or allowance.</li>
<li>Competitive salary.</li>
<li>Generous pension scheme.</li>
<li>Retail and leisure discounts.</li>
<li>Holiday and travel discounts.</li>
<li>Life cover.</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>supervisory experience, waste management, composting, recycling, industrial environment, risk assessments, permits to work, SOPs, toolbox talks, operational records, SCADA, automated control systems, consumables, PPE, lubricants, spare parts, health and safety legislation, good housekeeping, site standards, internal learning platforms, training modules</Skills>
      <Category>Operations</Category>
      <Industry>Manufacturing</Industry>
      <Employername>Biffa</Employername>
      <Employerlogo>https://logos.yubhub.co/j.com.png</Employerlogo>
      <Employerdescription>Biffa is a UK-based waste management company with over 11,500 employees. It provides business waste management services across the country.</Employerdescription>
      <Employerwebsite>https://apply.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://apply.workable.com/j/6983A4AB93</Applyto>
      <Location>Egginton, Derbyshire</Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>617efd60-cc2</externalid>
      <Title>Strategic Account Executive, Investment Banking &amp; Capital Markets</Title>
      <Description><![CDATA[<p><strong>About Anthropic</strong></p>
<p>Anthropic&#39;s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.</p>
<p><strong>Responsibilities</strong></p>
<p>As an Account Executive focused on Investment Banking &amp; Capital Markets at Anthropic, you&#39;ll be part of the foundational team bringing frontier AI to one of the most complex and high-stakes sectors in finance. You&#39;ll drive adoption of Claude across investment banks, capital markets firms, asset managers, and sell-side research institutions—helping them transform workflows in deal execution, research production, trading operations, and client advisory.</p>
<p>You&#39;ll leverage deep consultative sales expertise and sector knowledge to secure strategic enterprise deals while becoming a trusted partner to stakeholders navigating AI deployment in highly regulated environments. In collaboration with GTM, Product, Policy, and Marketing teams, you&#39;ll shape our approach to this critical vertical and help define how AI transforms capital markets.</p>
<p><strong>Responsibilities:</strong></p>
<ul>
<li>Own the full sales cycle from prospecting through close, winning new business and driving revenue within investment banking and capital markets accounts. Navigate complex organisational structures to reach decision-makers across front office, middle office, and technology functions.</li>
</ul>
<ul>
<li>Design and execute sales strategies tailored to the unique procurement dynamics, budget cycles, and risk considerations of capital markets institutions. Translate market intelligence into targeted account plans and campaigns.</li>
</ul>
<ul>
<li>Identify and develop new use cases across investment banking workflows—M&amp;A analysis, equity research, fixed income trading, compliance, and client reporting—collaborating cross-functionally to differentiate our offerings.</li>
</ul>
<ul>
<li>Build consensus across complex stakeholder ecosystems including Managing Directors, technology leadership, risk and compliance officers, and procurement teams.</li>
</ul>
<ul>
<li>Serve as the voice of the customer internally, gathering feedback from users and conveying market needs to inform product roadmaps, security requirements, and go-to-market positioning.</li>
</ul>
<ul>
<li>Contribute to the evolution of our financial services sales methodology by documenting learnings, refining playbooks, and identifying process improvements that drive productivity and consistency.</li>
</ul>
<p><strong>You may be a good fit if you have:</strong></p>
<ul>
<li>7+ years of enterprise B2B sales experience, with significant time selling into investment banks, capital markets firms, or asset managers</li>
</ul>
<ul>
<li>A track record of closing complex, six- and seven-figure deals within financial institutions by navigating both technical requirements and business use cases</li>
</ul>
<ul>
<li>Deep familiarity with how investment banks and capital markets firms buy technology—including vendor risk assessments, security reviews, and multi-stakeholder approval processes</li>
</ul>
<ul>
<li>Experience negotiating enterprise agreements within financial services procurement frameworks, including navigating legal, compliance, and infosec requirements</li>
</ul>
<ul>
<li>Proven history of exceeding revenue targets by effectively managing pipeline and executing a disciplined sales process</li>
</ul>
<ul>
<li>Strong executive presence and the ability to present confidently to audiences ranging from analysts and associates to C-suite executives</li>
</ul>
<ul>
<li>Understanding of investment banking and capital markets workflows, pain points, and competitive dynamics</li>
</ul>
<ul>
<li>A strategic, analytical mindset combined with creative tactical execution</li>
</ul>
<ul>
<li>Genuine enthusiasm for AI and its potential to transform financial services, paired with appreciation for the importance of safe and responsible deployment</li>
</ul>
<p><strong>Logistics</strong></p>
<p><strong>Education requirements:</strong> We require at least a Bachelor&#39;s degree in a related field or equivalent experience. <strong>Location-based hybrid policy:</strong> Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.</p>
<p><strong>Visa sponsorship:</strong> We do sponsor visas! However, we aren&#39;t able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.</p>
<p><strong>We encourage you to apply even if you do not believe you meet every single qualification.</strong> Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you&#39;re interested in this work.</p>
<p><strong>Your safety matters to us.</strong> To protect yourself from potential scams, remember that Anthropic recruiters only contact you from @anthropic.com email addresses. In some cases, we may partner with vetted recruiting agencies who will identify themselves as working on behalf of Anthropic. Be cautious of emails from other domains. Legitimate Anthropic recruiters will never ask for money, fees, or banking information before your first day. If you&#39;re ever unsure about a communication, don&#39;t hesitate to reach out to us directly.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$290,000 - $435,000 USD</Salaryrange>
      <Skills>Enterprise B2B sales experience, Investment banking and capital markets knowledge, Vendor risk assessments, Security reviews, Multi-stakeholder approval processes, Enterprise agreements, Financial services procurement frameworks, Legal, Compliance, Infosec requirements, Revenue targets, Pipeline management, Disciplined sales process, Executive presence, Investment banking and capital markets workflows, Pain points, Competitive dynamics, Strategic mindset, Analytical mindset, Creative tactical execution, Enthusiasm for AI, Appreciation for safe and responsible deployment, Investment banking and capital markets workflows, Pain points, Competitive dynamics, Strategic mindset, Analytical mindset, Creative tactical execution, Enthusiasm for AI, Appreciation for safe and responsible deployment</Skills>
      <Category>Sales</Category>
      <Industry>Finance</Industry>
      <Employername>Anthropic</Employername>
      <Employerlogo>https://logos.yubhub.co/anthropic.com.png</Employerlogo>
      <Employerdescription>Anthropic is a quickly growing organisation with a mission to create reliable, interpretable, and steerable AI systems. The company&apos;s team includes researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.</Employerdescription>
      <Employerwebsite>https://job-boards.greenhouse.io</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/anthropic/jobs/5041290008</Applyto>
      <Location>New York City, NY; San Francisco, CA</Location>
      <Country></Country>
      <Postedate>2026-03-08</Postedate>
    </job>
    <job>
      <externalid>544e96bb-5c3</externalid>
      <Title>Security Engineer, Application Security</Title>
      <Description><![CDATA[<p><strong>Security Engineer, Application Security</strong></p>
<p><strong>Location</strong></p>
<p>New York City</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Location Type</strong></p>
<p>Hybrid</p>
<p><strong>Department</strong></p>
<p>Security</p>
<p><strong>Compensation</strong></p>
<ul>
<li>$260K – $385K • Offers Equity</li>
</ul>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p>More details about our benefits are available to candidates during the hiring process.</p>
<p><strong>About the Team</strong></p>
<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>
<p><strong>About the Role</strong></p>
<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>
<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>
<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>
<p><strong>In this role, you will:</strong></p>
<ul>
<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>
</ul>
<ul>
<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>
</ul>
<ul>
<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>
</ul>
<ul>
<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>
</ul>
<ul>
<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>
</ul>
<ul>
<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>
</ul>
<ul>
<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>
</ul>
<p><strong>You might thrive in this role if you:</strong></p>
<ul>
<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>
</ul>
<ul>
<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>
</ul>
<ul>
<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>
</ul>
<ul>
<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>
</ul>
<ul>
<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve this, we are building a team of talented engineers, researchers, and designers who share our vision and values.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$260K – $385K • Offers Equity</Salaryrange>
      <Skills>information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. It is a privately held company.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/ec5a5d98-6314-44d9-9466-8d4d7ee866f6</Applyto>
      <Location>New York City</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>90d20db9-de4</externalid>
      <Title>Security Engineer, Application Security</Title>
      <Description><![CDATA[<p><strong>Job Posting</strong></p>
<p><strong>Security Engineer, Application Security</strong></p>
<p><strong>Location</strong></p>
<p>San Francisco</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Location Type</strong></p>
<p>Hybrid</p>
<p><strong>Department</strong></p>
<p>Security</p>
<p><strong>Compensation</strong></p>
<ul>
<li>$260K – $385K • Offers Equity</li>
</ul>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p>More details about our benefits are available to candidates during the hiring process.</p>
<p>This role is at-will and OpenAI reserves the right to modify base pay and other compensation components at any time based on individual performance, team or company results, or market conditions.</p>
<p><strong>About the Team</strong></p>
<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>
<p><strong>About the Role</strong></p>
<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>
<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>
<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>
<p><strong>In this role, you will:</strong></p>
<ul>
<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>
</ul>
<ul>
<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>
</ul>
<ul>
<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>
</ul>
<ul>
<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>
</ul>
<ul>
<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>
</ul>
<ul>
<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>
</ul>
<ul>
<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>
</ul>
<p><strong>You might thrive in this role if you:</strong></p>
<ul>
<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>
</ul>
<ul>
<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>
</ul>
<ul>
<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>
</ul>
<ul>
<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>
</ul>
<ul>
<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve this, we are committed to advancing the state-of-the-art in AI research and development.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$260K – $385K • Offers Equity</Salaryrange>
      <Skills>information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. The company was founded in 2015 and has since grown to become a leading player in the field of artificial intelligence.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/0322d6d8-6588-4209-a304-83e768063a25</Applyto>
      <Location>San Francisco</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>716951c0-38c</externalid>
      <Title>Senior Manager, Financial Risk Management</Title>
      <Description><![CDATA[<p><strong>Senior Manager, Financial Risk Management</strong></p>
<p><strong>Location</strong></p>
<p>San Francisco</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Department</strong></p>
<p>Finance</p>
<p><strong>Compensation</strong></p>
<ul>
<li>$216K – $240K • Offers Equity</li>
</ul>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance-related bonus(es) for eligible employees, and the following benefits.</p>
<p><strong>Benefits</strong></p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p><strong>About the Team</strong></p>
<p>The Internal Controls function sits within the broader Finance Risk Management (FRM) organization and plays a key role in strengthening the integrity, scalability, and reliability of OpenAI’s finance-critical operations.</p>
<p>Our team designs and governs the Internal Controls over Financial Reporting (ICFR) framework that supports accurate, transparent financial results. We focus on business-process controls across areas like Order-to-Cash, Compute, Data, Global Financial Close, Accounting Operations, Real Estate and AI infrastructure-related spend. We work closely with Product, GTM, Corporate Finance, Legal, BizOps, Strategic Finance, Accounting, Finance Platforms and Compliance to ensure processes are well-designed, well-documented, and audit-ready.</p>
<p>FRM, as the broader function, leads OpenAI’s financial risk posture—spanning governance over internal controls, third-party risk, audit readiness, and financial systems oversight. Together, we provide the foundation of trust that enables OpenAI to operate at global scale.</p>
<p><strong>About the Role</strong></p>
<p>We’re seeking a Senior Manager, Financial Risk Management to shape and scale the readiness frameworks and ways of working that underpin OpenAI’s SOX/ICFR program and broader FRM priorities. This is a highly cross-functional role for someone who can translate ambiguity into clear standards, expectations, and decision paths—so workstream owners can move quickly and consistently.</p>
<p>You’ll be a core partner to Finance, Systems, and operational leaders—aligning stakeholders, driving remediation progress, and turning complex, multi-team efforts into crisp leadership updates and decision asks. Success in this role requires strong judgment, clear communication, and the ability to drive outcomes through influence.</p>
<p>This role is based in San Francisco, CA. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>
<p><strong>In this role, you will:</strong></p>
<ul>
<li>Build and scale the ICFR readiness framework (standards, playbooks, governance, and review cadences) that ensures business-process controls stay consistent, auditable, and scalable as OpenAI grows.</li>
</ul>
<ul>
<li>Lead process/controls design for key finance and spend domains for your assigned pillars (e.g. Revenue, Compute, Financial Close, Accounting Operations), translating complex workflows into clear risks, controls, and ownership models.</li>
</ul>
<ul>
<li>Drive risk assessments and control rationalization (what matters most, where to automate, where to simplify), using data and business context to focus effort on highest-impact reporting risks.</li>
</ul>
<ul>
<li>Run targeted assessments for new/changed areas and translate them into clear expectations, owners, and timelines.</li>
</ul>
<ul>
<li>Provide governance and oversight of the Big 4 provider’s execution of RCMs, narratives, and end-to-end process documentation, ensuring that all documentation is accurate, up-to-date, and fully prepared for testing—clearly articulating evidence requirements and system dependencies.</li>
</ul>
<ul>
<li>Oversee issue management and remediation for your process areas, ensuring deficiencies are root-caused, fixed at the system or process level, and sustainably closed.</li>
</ul>
<ul>
<li>Serve as primary liaison for audits and internal stakeholders for your domains—anticipating requests, aligning on PBC expectations, and communicating control health, risks, and progress through clear metrics and reporting.</li>
</ul>
<ul>
<li>Partner with workstream leads and co-sourced teams to ensure outputs are consistent, high-quality, and leadership-ready.</li>
</ul>
<p><strong>You might thrive in this role if you have:</strong></p>
<ul>
<li>Bachelor’s or Master’s degree in Accounting, Finance, Business Administration, or a related field; CPA, CA, CISA or equivalent strongly preferred.</li>
</ul>
<ul>
<li>10+ years of experience in financial risk management, internal audit, or financial process transformation, preferably in high-growth, technology-enabled or product-driven env</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$216K – $240K</Salaryrange>
      <Skills>Financial Risk Management, Internal Controls, SOX/ICFR, Financial Reporting, Business Process Controls, Order-to-Cash, Compute, Data, Global Financial Close, Accounting Operations, Real Estate, AI infrastructure-related spend, Product, GTM, Corporate Finance, Legal, BizOps, Strategic Finance, Accounting, Finance Platforms, Compliance, Audit Readiness, Financial Systems Oversight, Risk Assessments, Control Rationalization, Data Analysis, Business Context, Process Design, Risk Management, Internal Audit, Financial Process Transformation, High-Growth, Technology-Enabled, Product-Driven, Cloud Computing, Data Analytics, Machine Learning, Artificial Intelligence, Cybersecurity, IT Risk Management, Compliance, Audit, Financial Planning, Analysis, Business Intelligence, Data Visualization, Business Process Improvement, Change Management, Leadership, Communication, Team Management, Project Management</Skills>
      <Category>Finance</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is a technology company that specializes in artificial intelligence. It was founded in 2015 and is headquartered in San Francisco, California.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/3aa78781-3eaa-4716-a395-444184564ddc</Applyto>
      <Location>San Francisco</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>659bf794-7b5</externalid>
      <Title>Security Engineer, Application Security</Title>
      <Description><![CDATA[<p><strong>Security Engineer, Application Security</strong></p>
<p><strong>Location</strong></p>
<p>Seattle</p>
<p><strong>Employment Type</strong></p>
<p>Full time</p>
<p><strong>Department</strong></p>
<p>Security</p>
<p><strong>Compensation</strong></p>
<ul>
<li>$260K – $385K • Offers Equity</li>
</ul>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p>More details about our benefits are available to candidates during the hiring process.</p>
<p><strong>About the Team</strong></p>
<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>
<p><strong>About the Role</strong></p>
<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>
<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>
<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>
<p><strong>In this role, you will:</strong></p>
<ul>
<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>
</ul>
<ul>
<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>
</ul>
<ul>
<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>
</ul>
<ul>
<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>
</ul>
<ul>
<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>
</ul>
<ul>
<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>
</ul>
<ul>
<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>
</ul>
<p><strong>You might thrive in this role if you:</strong></p>
<ul>
<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>
</ul>
<ul>
<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>
</ul>
<ul>
<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>
</ul>
<ul>
<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>
</ul>
<ul>
<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$260K – $385K • Offers Equity</Salaryrange>
      <Skills>information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. The company was founded in 2015 and has since grown to become a leading player in the field of artificial intelligence.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/1e110226-448a-4c0b-b0e4-d0f5df579fbf</Applyto>
      <Location>Seattle</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>db71246c-702</externalid>
      <Title>HSE Specialist (Bahraini Nationals)</Title>
      <Description><![CDATA[<p><strong>Job Description</strong></p>
<p>Type: Full-Time</p>
<p>Location: Bahrain, Sakhir</p>
<p><strong>Qualification and Skills Required:</strong></p>
<ol>
<li>Bachelor’s degree in Occupational Health &amp; Safety, Environmental Science, or a related field.</li>
<li>1–3 years of HSE experience, preferably in technical or industrial settings.</li>
<li>Strong knowledge of HSE standards and documentation.</li>
</ol>
<p><strong>Key Responsibilities includes but not limited to:</strong></p>
<ol>
<li>Support the implementation of HSE policies and procedures.</li>
<li>Conduct inspections, audits, and risk assessments.</li>
<li>Maintain HSE records and monitor PPE usage.</li>
<li>Assist in incident investigations and corrective actions.</li>
<li>Deliver safety inductions and awareness sessions.</li>
<li>Help organise emergency drills and HSE Committee meetings.</li>
<li>Promote environmental compliance and safe work practices.</li>
</ol>
<p><strong>Benefits:</strong></p>
<ul>
<li>Competitive salary and benefits package</li>
<li>Opportunities for career growth and professional development</li>
<li>Collaborative and dynamic work environment</li>
</ul>
<p><strong>Duration:</strong></p>
<p>1 year</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>entry</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>Competitive salary and benefits package</Salaryrange>
      <Skills>Occupational Health &amp; Safety, Environmental Science, HSE standards and documentation, Risk assessments, PPE usage, Incident investigations, Corrective actions, Safety inductions, Awareness sessions, Emergency drills, HSE Committee meetings, Environmental compliance, Safe work practices</Skills>
      <Category>Engineering</Category>
      <Industry>Motorsport</Industry>
      <Employername>Racing Force</Employername>
      <Employerlogo>https://logos.yubhub.co/racingforce.com.png</Employerlogo>
      <Employerdescription>Racing Force is a leading organisation in the motorsport industry, with a global presence and a team of over 500 employees. They specialise in designing and manufacturing high-performance vehicles and equipment.</Employerdescription>
      <Employerwebsite>https://www.racingforce.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://www.racingforce.com/vacancy/hse-specialist-bahraini-nationals/</Applyto>
      <Location>Sakhir, Bahrain</Location>
      <Country></Country>
      <Postedate>2026-03-06</Postedate>
    </job>
    <job>
      <externalid>7b285212-dc6</externalid>
      <Title>Governance, Risk &amp; Compliance Lead</Title>
      <Description><![CDATA[<p>We are seeking a highly experienced Governance, Risk &amp; Compliance Analyst to join our team. This role exists to help shape our compliance and risk management program, ensuring that we are always operating in a secure and compliant manner.</p>
<p><strong>What you&#39;ll do</strong></p>
<p>As a Governance, Risk &amp; Compliance Lead, you will be responsible for implementing and leading frameworks such as SOC2, ISO 27001 and HIPAA. You will also ensure and maintain compliance with GDPR, CCPA, CPRA and other privacy regulations.</p>
<ul>
<li>Implement and lead frameworks such as SOC2, ISO 27001 and HIPAA. Ensuring compliance with certification requirements</li>
<li>Ensure and maintain compliance with GDPR, CCPA, CPRA and other privacy regulations</li>
<li>Design and build scalable audit management processes and documentation systems that will support future expansion to additional compliance frameworks</li>
<li>Conduct risk assessments and mitigate data security and compliance risks</li>
<li>Write, update and enact policies capturing security, privacy, and AI safety requirements</li>
<li>Follow and help shape the AI regulatory and standards landscape to keep the company at the forefront of industry developments and best practices</li>
</ul>
<p><strong>What you need</strong></p>
<ul>
<li>6+ years of experience leading engagements in audit and compliance</li>
<li>Experience leading compliance teams</li>
<li>Worked in high tech companies in cloud-native environments</li>
<li>Able to translate complex compliance requirements into clear and actionable work-streams</li>
<li>Strong commitment to cross-functional collaboration with IT, Security, GTM, and Engineering</li>
<li>Self-motivated, detailed and organized, with a diligent approach to project completion</li>
<li>Excellent written, verbal, and interpersonal communication skills</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange>$200K - $220K</Salaryrange>
      <Skills>Governance, Risk &amp; Compliance, SOC2, ISO 27001, HIPAA, GDPR, CCPA, CPRA, Audit management, Compliance frameworks, Risk assessments, Policy writing, AI regulatory and standards landscape</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>Perplexity</Employername>
      <Employerlogo>https://logos.yubhub.co/perplexity.com.png</Employerlogo>
      <Employerdescription>Perplexity is a fast-growing startup that is revolutionizing the way people search and interact online. With a world-class team and a passion for driving compliance and building customer trust, Perplexity is an exciting place to work.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/perplexity/977b626c-5546-42c6-95c8-4e2350ec41c9</Applyto>
      <Location>San Francisco</Location>
      <Country></Country>
      <Postedate>2026-03-04</Postedate>
    </job>
    <job>
      <externalid>1fc18bb2-95b</externalid>
      <Title>M-Sport Member Spotlight</Title>
      <Description><![CDATA[<p>Erin Kerley, our Health and Safety Advisor here at M-Sport, has a number of responsibilities, including overseeing track activities and general health and safety throughout the site and during events. Find out about her experience below.</p>
<p><strong>What you&#39;ll do</strong></p>
<p>From a Health and Safety point of view, my main responsibilities include ensuring compliance with all health and safety regulations, conducting regular risk assessments, and implementing safety protocols to prevent accidents. I also oversee the maintenance of safety equipment, provide training and guidance to staff on safe practices, and review current legislation to make sure we&#39;re following the latest regulations.</p>
<p><strong>What you need</strong></p>
<p>For Health and Safety, excellent attention to detail helps in day-to-day work (such as conducting risk assessments etc). Effective communication and interpersonal skills are also needed, especially when it comes to training staff, as well as communicating with engineers, technicians, and drivers when I&#39;m trackside.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>mid</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>health and safety regulations, risk assessments, safety protocols, safety equipment maintenance, staff training, problem-solving, quick decision-making</Skills>
      <Category>Engineering</Category>
      <Industry>Motorsport</Industry>
      <Employername>M-Sport</Employername>
      <Employerlogo>https://logos.yubhub.co/m-sport.co.uk.png</Employerlogo>
      <Employerdescription>M-Sport is a British motorsport company that has been involved in various forms of motorsport, including rallying and touring cars. The company has a strong reputation for its expertise and commitment to excellence in the motorsport industry.</Employerdescription>
      <Employerwebsite>https://www.m-sport.co.uk</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://www.m-sport.co.uk/erin-kerley</Applyto>
      <Location>Brackley</Location>
      <Country></Country>
      <Postedate>2025-12-20</Postedate>
    </job>
  </jobs>
</source>