Compliance Research Associate

TODS Ventures

Northern (KY)

Hybrid

USD 93,000 - 170,000

Part time

38 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

TODS Ventures is building an Enterprise AI Governance Platform and seeks an experienced IT compliance or information security professional. You will map standards to product capabilities, bridging technical implementation and regulatory requirements for deployment into regulated environments.

This is a fractional engagement at ~20% FTE. The role focuses on data governance, controls mapping, audit readiness, and enterprise security documentation for financial services, healthcare, and critical

Qualifications

  • Hands-on experience with IT compliance standards across regulated environments.
  • Ability to translate controls into practical guidance for product teams.
  • Experience preparing compliance documentation and responses to security questionnaires.

Responsibilities

  • Advise on mapping IT compliance and information security standards to platform architecture.
  • Review design and documentation for enterprise/regulator readiness.
  • Define and validate the platform's compliance framework and data governance.
  • Create enterprise-facing compliance materials and risk assessments.

Skills

Compliance frameworks
Information security
Regulatory mapping
Stakeholder communication
Vendor risk

Education

Industry certifications (CISM, CISSP, CIPP/E)

Tools

ISO 42001
NIST AI RMF

Job description

About the Project

TODS Ventures is developing a highly ambitious Enterprise AI Governance Platform — a research-led project at the intersection of artificial intelligence, mathematics, law, ethics, and enterprise technology. The platform applies rigorous, multi-dimensional governance to AI interactions at scale, and is designed for deployment into regulated enterprise environments including financial services, healthcare, and critical infrastructure. The project combines original academic research with practical software engineering, and is preparing for peer-reviewed publication alongside a commercial product launch. This is an early-stage, high-calibre founding team engagement.

The Role

We are looking for an experienced IT compliance or information security professional with hands-on knowledge of enterprise technology standards and regulatory frameworks. You will advise on the compliance architecture of the platform — mapping standards and controls to product capabilities, supporting enterprise readiness, and helping ensure the platform can be deployed with confidence into regulated environments. A key part of the role is bridging the gap between technical implementation and compliance requirements across a range of frameworks. This is a fractional engagement at approximately 20% FTE.

Key Responsibilities
  • Advise on the mapping of IT compliance and information security standards to platform architecture — covering controls, audit requirements, and certification readiness.
  • Review product design and documentation through a compliance lens — identifying gaps and requirements for enterprise and regulated sector deployment.
  • Help define and validate the platform's compliance framework — covering data protection, information security, AI governance, and sector-specific obligations.
  • Support the development of enterprise-facing compliance materials — including due diligence packs, security questionnaires, and regulatory readiness assessments.
  • Advise on data governance, data residency, access control, and audit trail requirements as they apply to enterprise AI deployments.
  • Engage with the team on vendor risk, procurement compliance, and third-party assurance — particularly in financial services, healthcare, and critical infrastructure contexts.
Required Skills & Experience
  • Substantial hands-on experience with one or more of the following frameworks: ISO 42001, ISO 27001, SOC 2 Type 2, PCI DSS, HIPAA, GDPR (UK and/or EU), NIS2, or Basel II/III.
  • Ability to translate standard controls and certification requirements into practical product and engineering guidance.
  • Experience advising technology vendors or enterprise buyers on compliance readiness and security assurance.
  • Familiarity with data protection obligations — particularly under UK GDPR and EU GDPR — and how these apply to AI and data-intensive platforms.
  • Experience preparing compliance documentation, control frameworks, or responses to enterprise security questionnaires.
  • Strong communication skills — comfortable working with both technical teams and senior business stakeholders.
Desirable / Nice to Have
  • Professional qualifications in IT compliance or information security — e.g. CISM, CISSP, CIPP/E, ISO 27001 Lead Auditor, or equivalent.
  • Direct experience with ISO 42001 (AI Management Systems) or NIST AI RMF in a product or advisory context.
  • Familiarity with FCA/PRA model risk requirements or EBA guidelines on internal governance as they apply to AI systems.
  • Background in cloud security compliance — AWS, Azure, or GCP security frameworks and shared responsibility models.
  • Experience supporting technology companies through SOC 2 Type 2 audits or ISO 27001 certification.
  • Knowledge of sector-specific AI or data guidance — e.g. NHS AI frameworks, DORA (Digital Operational Resilience Act), or financial services operational resilience requirements.
  • Experience with grant-funded research projects — ARIA, Innovate UK, Horizon Europe, or equivalent.

Type Freelance · Research Associate

Duration 1 Jul 2026 – 31 Mar 2027

Commitment Part-time · ~20% FTE

Location UK or EU · Remote / Hybrid

Rate To be negotiated

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Frontend Developer
Frontend Developer

TODS Ventures • Northern (KY)

Hybrid
USD 86,000 - 126,000
Enterprise AI Compliance Researcher - Remote, Part-Time
Enterprise AI Compliance Researcher - Remote, Part-Time

TODS Ventures • Northern (KY)

Hybrid
USD 93,000 - 170,000
Backend Developer
Backend Developer

TODS Ventures • Aurora (CO), Northern (KY)

Hybrid
USD 109,000 - 164,000
AI Governance SME & Advisor (Architect II - Cloud Security Solutions)
AI Governance SME & Advisor (Architect II - Cloud Security Solutions)

UST • Taunton (MA)

Hybrid
USD 93,000 - 146,000
Senior Analyst Security Risk and Compliance (AI Risk Governance)
Senior Analyst Security Risk and Compliance (AI Risk Governance)

Cvent, Inc. • Tysons (VA)

Hybrid
USD 120,000 - 180,000
Remote Public Compliance Officer - 50862
Remote Public Compliance Officer - 50862

Turing • United States

On-site
USD 90,000 - 130,000
Strong compensation based on project
Fully remote work environment
Potential for full-time assignment
Information Technology Security Architect
Information Technology Security Architect

Tech Observer • United States

On-site
USD 137,760 - 179,088
Governance, Risk & Compliance Analyst
Governance, Risk & Compliance Analyst

B Capital • San Francisco (CA)

On-site
USD 140,000 - 200,000
AI Governance Associate (2027 Summer Internship)
AI Governance Associate (2027 Summer Internship)

risk3sixty LLC • Atlanta (GA), Northern (KY)

On-site
USD 21,000 - 34,000
Director, AI Security Platform Engineer
Director, AI Security Platform Engineer

Mindlance • United States

Remote
USD 180,000 - 250,000