AI Risk and Compliance Analyst (Hybrid - NYC/Charlotte, NC)
AI Risk and Compliance Analyst (Hybrid - NYC/Charlotte, NC)
Our Client - Media & Entertainment company
- New York, NY
- Charlotte, NC
Job description
Our Customer is a leading global, diversified information, services and media company with more than 360 businesses. Its major interests include various financial services, medical information and services businesses, and lastly, ownership in cable television networks; 33 television stations; 24 daily and 52 weekly newspapers; digital services businesses; and nearly 250 magazines around the world.
Our Customer is seeking an AI Risk and Compliance Analyst on a contract basis to support the intake, assessment, documentation, and ongoing governance of their AI use cases. This role is hybrid in NYC or Charlotte, NC.
This role is intended for a hands-on practitioner who has direct experience with AI governance, AI risk assessment, responsible AI controls, regulatory alignment, and cross-functional review processes. The contractor will be expected to make an immediate impact by improving AI use case intake, strengthening risk review workflows, maintaining clear documentation, and helping align AI activities with evolving legal, regulatory, privacy, security, and compliance expectations.
Responsibilities:
- Operate and improve the AI use case intake process, including triage, risk categorization, stakeholder routing, approval tracking, and follow-up.
- Conduct AI risk and compliance reviews for proposed and existing AI use cases.
- Evaluate data use, privacy, security, third-party risk, regulatory exposure, business impact, and control requirements.
- Review AI-enabled tools, platforms, vendors, and processes for risks related to confidential data, sensitive data, automated decision-making, transparency, human oversight, intellectual property, bias, accuracy, and regulatory obligations.
- Maintain and improve the AI use case inventory, including owners, vendors, data types, risk ratings, approval status, required controls, exceptions, and review cadence.
- Translate AI regulatory, privacy, security, and compliance expectations into intake questions, risk assessment criteria, control requirements, and decision records.
- Support alignment with AI governance standards, regulatory expectations, and sector-specific guidance.
- Partner with Legal, Privacy, Security, Procurement, Technology, and business teams to document approvals, mitigations, exceptions, remediation actions, and ongoing monitoring requirements.
- Support third-party AI risk reviews, including evaluation of vendor AI capabilities, data processing practices, contractual considerations, and governance commitments.
- Develop and improve AI governance artifacts, including intake forms, review checklists, risk rating criteria, process documentation, decision templates, and reporting metrics.
- Support reporting on AI governance activities, including intake volume, review cycle time, risk themes, open issues, remediation status, exceptions, and regulatory alignment.
Skills and Qualifications:
- 5+ years of experience in governance, risk, compliance, privacy, information security, technology risk, third-party risk, model risk, audit, or a related field.
- 2+ years of direct experience in AI governance, responsible AI, AI risk assessment, AI compliance, model risk management, machine learning governance, or emerging technology risk.
- Experience reviewing AI use cases involving generative AI tools, SaaS platforms, machine learning models, automated workflows, analytics, or vendor-provided AI capabilities.
- Experience evaluating AI risks, including data leakage, confidential data exposure, privacy impact, intellectual property concerns, hallucination or accuracy risk, bias, automated decision-making, transparency, vendor dependency, and human oversight.
- Working knowledge of AI governance frameworks, standards, or regulatory guidance such as NIST AI RMF, ISO/IEC 42001, EU AI Act concepts, OECD AI principles, privacy regulations, or sector-specific AI guidance.
- Strong understanding of GRC fundamentals, including risk assessment, control evaluation, issue tracking, remediation management, policy exceptions, audit-ready documentation, and stakeholder approvals.
- Familiarity with security and compliance frameworks such as NIST CSF, NIST 800-53, ISO 27001, COBIT, SOC 2, PCI, HIPAA, or SOX.
- Experience creating or improving intake forms, risk assessment templates, control mappings, decision records, process documentation, or governance workflows.
- Ability to work independently, manage multiple concurrent reviews, and produce high-quality documentation with limited supervision.
- Strong written and verbal communication skills with the ability to explain AI risk and compliance concepts to non-specialist stakeholders.
Preferred Qualifications:
- Experience in standing up or improving an AI governance intake and review process.
- Experience maintaining an AI system, AI use case, model, or automated decisioning inventory.
- Experience supporting AI governance in a federated, matrixed, or multi-business enterprise.
- Experience with third-party AI risk management, GRC platforms, workflow tools, risk registers, Jira, SharePoint, OneTrust, MetricStream, Archer, or similar tools.
- Experience developing AI governance metrics, dashboards, executive reporting, or operational KPIs.
- Relevant certifications such as AIGP, CISA, CRISC, CISM, CISSP, CDPSE, ISO 27001, ISO 42001, or similar credentials.
We offer a competitive salary range for this position. Most candidates who join our team are hired at the median of this range, ensuring fair and equitable compensation based on experience and qualifications.
Contractor Benefits are available through our 3rd Party Employer of Record (Available upon completion of waiting period for eligible engagements)
Benefits: Medical, Dental, and 401k (no match)
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
All applicants applying for U.S. job openings must be legally authorized to work in the United States and are required to have U.S. residency at the time of application.
If you are a person with a disability needing assistance with the application, or at any point in the hiring process, please contact us at support@themomproject.com.