Security, Privacy & Trust Lead

Livemindz

United States

On-site

USD 140,000 - 190,000

Full time

30 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Livemindz is seeking an experienced Security, Privacy & Trust Lead to build and operationalize a pragmatic security and privacy program for an AI-driven platform. The role spans cybersecurity, privacy engineering, AI security, third-party risk, incident response, secure software development, and responsible AI.

You will conduct end-to-end assessments across mobile apps, APIs, cloud, IAM, data stores, and AI services; develop policies; establish data lifecycle; create an incident response plan;

Qualifications

  • 8+ years in application/product security, cloud security, privacy engineering, security architecture, GRC, or related areas.
  • Strong experience with SaaS, cloud-native, mobile, or AI-enabled applications.
  • Hands-on knowledge of AWS, APIs, OAuth/OIDC, IAM, Docker, CI/CD, encryption, and secure SDLC.
  • Experience with AI/LLM security and emerging GenAI risks.
  • Strong understanding of privacy-by-design, data retention/deletion, consent, and data subject rights.
  • Experience with vendor risk management, DPAs, incident response, and security policies.
  • Working knowledge of SOC 2, NIST, OWASP, CCPA/CPRA, and GDPR.
  • Startup/scale-up security program experience preferred.

Responsibilities

  • Conduct end-to-end security and privacy assessments across mobile apps, APIs, cloud infrastructure, IAM, data stores, AI/LLM services, integrations, logging, and CI/CD.
  • Perform threat modeling, identify vulnerabilities and privacy risks, and create a prioritized remediation roadmap.
  • Develop and operationalize security and privacy policies, including information security, data retention, incident response, vendor risk, privacy impact assessments, and responsible AI.
  • Establish data lifecycle, retention/deletion, anonymization, and member data-rights processes.
  • Develop and test an Incident Response & Breach Notification Plan, including a tabletop exercise.
  • Assess third-party vendors, DPAs, subprocessors, data sharing, and security/privacy controls.
  • Establish AI security controls covering prompt injection, data leakage, AI memory, model retention, agent permissions, tool access, unsafe outputs, logging, and human oversight.
  • Assess application, cloud, API, IAM, encryption, DevSecOps, vulnerability management, backup, and secure SDLC practices.
  • Support readiness for SOC 2, NIST CSF, NIST AI RMF, OWASP, CCPA/CPRA, and GDPR.
  • Provide executive/Board-level reporting on risks, remediation, and security maturity.
  • Current-State Security & Privacy Assessment
  • Security Remediation Roadmap
  • Data Inventory, Data Flow & Retention Schedule
  • Security & Privacy Policy Library
  • Incident Response & Breach Plan
  • Data Subject Rights Procedure
  • Vendor Security & DPA Framework
  • Privacy Impact Assessment Process
  • AI Security & Responsible AI Framework
  • Executive/Board Security Readout

Skills

Security leadership
Cloud security
Privacy engineering
Security architecture
GRC
DevSecOps
Threat modeling
AI/LLM security

Tools

AWS
APIs
OAuth/OIDC
IAM
Docker
CI/CD
Encryption
Secure SDLC
DevSecOps tooling

Job description

We are looking for an experienced Security, Privacy & Trust Lead to build and operationalize a pragmatic security and privacy program for an AI-driven platform. The role covers cybersecurity, privacy engineering, AI security, third-party risk, incident response, secure software development, and responsible AI.

Key Responsibilities
  • Conduct end-to-end security and privacy assessments across mobile apps, APIs, cloud infrastructure, IAM, data stores, AI/LLM services, integrations, logging, and CI/CD.
  • Perform threat modeling, identify vulnerabilities and privacy risks, and create a prioritized remediation roadmap.
  • Develop and operationalize security and privacy policies, including information security, data retention, incident response, vendor risk, privacy impact assessments, and responsible AI.
  • Establish data lifecycle, retention/deletion, anonymization, and member data-rights processes.
  • Develop and test an Incident Response & Breach Notification Plan, including a tabletop exercise.
  • Assess third-party vendors, DPAs, subprocessors, data sharing, and security/privacy controls.
  • Establish AI security controls covering prompt injection, data leakage, AI memory, model retention, agent permissions, tool access, unsafe outputs, logging, and human oversight.
  • Assess application, cloud, API, IAM, encryption, DevSecOps, vulnerability management, backup, and secure SDLC practices.
  • Support readiness for SOC 2, NIST CSF, NIST AI RMF, OWASP, CCPA/CPRA, and GDPR.
  • Provide executive/Board-level reporting on risks, remediation, and security maturity.
  • Current-State Security & Privacy Assessment
  • Security Remediation Roadmap
  • Data Inventory, Data Flow & Retention Schedule
  • Security & Privacy Policy Library
  • Incident Response & Breach Plan
  • Data Subject Rights Procedure
  • Vendor Security & DPA Framework
  • Privacy Impact Assessment Process
  • AI Security & Responsible AI Framework
  • Executive/Board Security Readout
Qualifications
  • 8+ years in application/product security, cloud security, privacy engineering, security architecture, GRC, or related areas.
  • Strong experience with SaaS, cloud-native, mobile, or AI-enabled applications.
  • Hands‑on knowledge of AWS, APIs, OAuth/OIDC, IAM, Docker, CI/CD, DevSecOps, encryption, and secure SDLC.
  • Experience with AI/LLM security and emerging GenAI risks.
  • Strong understanding of privacy‑by‑design, data retention/deletion, consent, and data subject rights.
  • Experience with vendor risk management, DPAs, incident response, and security policies.
  • Working knowledge of SOC 2, NIST, OWASP, CCPA/CPRA, and GDPR.
  • Startup/scale‑up security program experience preferred.
Ideal Candidate

A pragmatic, hands‑on security leader who can move seamlessly between architecture reviews, threat modeling, AI security, privacy policies, vendor assessments, incident response, and executive/Board discussions.

The ideal candidate can clearly prioritize what must be addressed before launch, what comes next, and what can mature as the business scales

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer - AI Focus
Senior Security Engineer - AI Focus

Euna Solutions • Atlanta (GA)

On-site
USD 140,000 - 210,000
Senior AI Security & Privacy Trust Lead
Senior AI Security & Privacy Trust Lead

Livemindz • United States

On-site
USD 140,000 - 190,000
Head of Security
Head of Security

TriHire Solutions • San Francisco (CA)

On-site
USD 180,000 - 240,000
Lead Senior Security Engineer (Enterprise AI Platform)
Lead Senior Security Engineer (Enterprise AI Platform)

Talent Space, Inc. • Palo Alto (CA)

Hybrid
USD 150,000 - 180,000
Principal AI Security Engineer
Principal AI Security Engineer

Capitolis • Atlanta (GA)

Hybrid
USD 120,000 - 150,000
Senior Lead AI Security Engineer
Senior Lead AI Security Engineer

JPMorganChase • Columbus (OH)

On-site
USD 125,000 - 160,000
Senior Lead AI Security Engineer
Senior Lead AI Security Engineer

JPMorgan Chase & Co. • Columbus (OH)

On-site
USD 140,000 - 190,000
Senior Lead Security Engineer, AI
Senior Lead Security Engineer, AI

JPMorgan Chase & Co. • Columbus (OH)

On-site
USD 180,000 - 230,000
Senior Privacy Counsel
Senior Privacy Counsel

Abnormal • United States

On-site
USD 180,000 - 240,000
Senior Director AI Security
Senior Director AI Security

Ryder System, Inc. • Columbia (SC)

On-site
USD 210,000 - 270,000