Information Security Analyst (AI Governance)

Form Energy

Somerville (MA)

On-site

USD 180,000 - 260,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Stock options
Company sponsored 401k
Health insurance coverage begins first
PTO - generous
Dependent Care Account
Annual professional development budget
Life & disability insurance

Job summary

Form Energy is seeking a Manager of AI Applications to own the full lifecycle of AI tools, plugins, and agents across the organization. You will assess value, data access, and security posture before adoption, lead risk reviews, and govern deployment with robust access controls and training.

This hands-on, cross-functional role combines security judgment with IT operations and program management to balance rapid AI enablement with governance across teams.

Qualifications

  • Experience evaluating, deploying, or managing AI applications in a business or enterprise IT setting.
  • Strong stakeholder management and ability to run intake/review processes.
  • Project and program management skills with tracking of vendors and review cycles.
  • Familiarity with AI/LLM security concepts: data exfiltration, prompt injection, and access controls.
  • Excellent written and verbal communication to translate technical risk for non-technical stakeholders.
  • Comfort with SaaS security fundamentals: OAuth and API permission review; third‑party integration risk.

Responsibilities

  • Own the intake/review process for new AI applications, plugins, and agents.
  • Lead security review of AI tools, including data handling and model/vendor trust boundaries.
  • Manage deployment and configuration of approved AI applications and access provisioning.
  • Maintain an inventory/risk register of all AI tools, tracking ownership and data scope.
  • Define and enforce guardrails for agentic tools and set approval thresholds.
  • Monitor usage, cost, and performance; manage vendor relationships and renewals.
  • Develop AI usage policy in collaboration with stakeholders; implement scalable approvals.
  • Investigate AI-related incidents and coordinate remediation and post-incident review.
  • Create documentation and offer training to help employees use approved tools safely.

Skills

Stakeholder management
Intake/review process
AI/LLM security concepts
Vendor evaluation & governance
Project & program management
Communication (written & verbal)
SaaS security fundamentals (OAuth, API

Tools

OAuth
API permission review

Job description

  • As Form Energy scales, AI tools are becoming embedded in how our teams write, code, analyze, and make decisions — through AI applications, custom skills, plugins, and autonomous agents deployed across the business
  • The Manager of AI Applications will own the full lifecycle of these tools: evaluating and reviewing new AI applications before adoption, securing them against data-exposure and misuse risk, deploying and configuring them for business use, and managing their ongoing performance, access, and governance
  • This is a hands‑on, cross‑functional role that combines security judgment, IT operations discipline, and a genuine curiosity about how AI systems behave — bridging the gap between fast‑moving AI capabilities and the guardrails Form Energy needs to adopt them safely and effectively
  • Own the intake and review process for new AI applications, skills, plugins, and agents — assessing business value, data access, permission scope, and vendor security posture before approval
  • Lead security review of AI tools, including evaluating data handling and retention practices, model/vendor trust boundaries, prompt‑injection and jailbreak exposure, third‑party plugin risk, and integration permissions (OAuth scopes, API access, connected data sources)
  • Manage deployment and configuration of approved AI applications across the organization, including access provisioning, environment/tenant setup, and rollout communication and training
  • Establish and maintain an inventory and risk register of all AI applications, skills, plugins, and agents in use, tracking ownership, data scope, and review status — including inactive or abandoned deployments
  • Define and enforce guardrails for agentic tools specifically — reviewing what actions an agent is authorized to take autonomously (e.g., sending communications, modifying records, executing code) and setting approval thresholds, logging, and rollback procedures
  • Monitor usage, cost, and performance of deployed AI tools, and manage the ongoing vendor relationship including contract renewals, model/version updates, and deprecation planning
  • Partner with IT security, legal, and business stakeholders to develop and maintain AI usage policy, acceptable‑use guidelines, and an approval workflow that scales with demand without becoming a bottleneck
  • Investigate and respond to AI‑related incidents (e.g., data leakage through a connected tool, unexpected agent behavior, plugin compromise), coordinating remediation and post‑incident review
  • Build lightweight documentation, training, and office‑hours support to help employees use approved AI tools effectively and safely, and to route new requests through the review pipeline
  • Stay current on the fast‑changing AI application, plugin, and agent landscape, and proactively flag emerging capabilities or risks relevant to Form Energy
Benefits
  • 100% of medical, dental, and vision premiums covered for employees
  • Health insurance coverage begins first day of employment
  • Health Savings Account
  • Generous PTO policies to enable employees to recharge when needed
  • An Employee Resource Program that provides mental health counseling services, legal guidance, financial resources, and other helpful consulting services
  • 80% of the total medical, dental, and vision premiums covered for dependents
  • 12 weeks of paid parental leave, 14 weeks for the birthing parent
  • Access to a Dependent Care Account
  • Access to a Health Flexible Spending Account
  • Access to a Commuter Benefits Account
  • Access to an Adoption Assistance Flexible Spending Account
  • Stock options granted to all employees
  • Stock equity education and tax advice service provided by Carta
  • Company sponsored 401k
  • Access to an annual budget for professional development
  • License to complete Gallup’s Strengths Finder Assessment and ongoing resources
  • 100% employer-sponsored coverage life insurance, and short and long‑term disability policies

Strong stakeholder management skills: able to run an intake/review process that business teams actually use, and to say no to risky requests without becoming a blockerWorking knowledge of AI/LLM security concepts — data exfiltration risk, prompt injection, model access controls, plugin/tool permission scopes, and agent autonomy riskClear written and verbal communication; able to translate technical AI risk into guidance non-technical stakeholders can act onDirect experience evaluating, deploying, or managing AI applications, copilots, or LLM-based tools in a business or enterprise IT settingProject and program management skills: able to track a growing portfolio of tools, vendors, and review cycles with clear documentation and measurable outcomesComfort with SaaS security fundamentals: OAuth and API permission review, third‑party integration risk assessment, and access governance

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Analyst, AI Governance
Information Security Analyst, AI Governance

Form Energy • Maryland

Hybrid
USD 110,000 - 170,000
Relocation assistance
Hybrid work model
Stock options
+2
Information Security Analyst, AI Governance
Information Security Analyst, AI Governance

Form Energy • Somerville (MA)

On-site
USD 140,000 - 180,000
Stock options
Competitive salary
Holistic benefits
+1
AI Security Engineer
AI Security Engineer

interrahealth • United States

Remote
USD 140,000 - 180,000
Remote-first in the US
Home office stipend
Monthly Wi‑Fi reimbursement
+3
Staff Security Engineer (Enterprise AI)
Staff Security Engineer (Enterprise AI)

Affirm • New York (NY)

Remote
USD 150,000 - 210,000
Remote-first
Spending wallets
Supportive communities
+7
Security Solutions Principal - AI Security
Security Solutions Principal - AI Security

World Wide Technology • New Home (MO)

On-site
USD 153,200 - 191,500
Health and Wellbeing
Profit Sharing
401k Matching
+2
AI Security Engineer- Hybrid (US Citizens/ Green Cards- Local to DMV only)
AI Security Engineer- Hybrid (US Citizens/ Green Cards- Local to DMV only)

Swingtech • Washington

On-site
USD 150,000 - 190,000
15 PTO days
11 paid holidays
Medical Insurance options with HSA
AI Security Engineer (GRC)
AI Security Engineer (GRC)

SCAN • Long Beach (CA)

On-site
USD 125,400 - 215,975
Annual employee bonus program
Robust Wellness Program
Generous paid-time-off (PTO)
Principal AI Security Engineer
Principal AI Security Engineer

Capitolis • Atlanta (GA)

On-site
USD 120,000 - 150,000
AI Platform Architect
AI Platform Architect

MRO • United States

On-site
USD 106,000 - 143,000
AI Security Specialist
AI Security Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 180,000