Jobs › Colorado › Denver › Cybersecurity AI Risk and Governance Director
Cybersecurity AI Risk and Governance Director
Vantage Data Centers is hiring for the role of Cybersecurity AI Risk and Governance Director, Denver, CO · Remote. This is an AI Governance role in the governance, risk, and compliance field. Review the full details below and apply directly with Vantage Data Centers.
About Vantage Data Centers Vantage Data Centers powers, cools, protects and connects the technology of the world’s well-known hyperscalers, cloud providers and large enterprises. Developing and operating across North America, EMEA and Asia Pacific, Vantage has evolved data center design in innovative ways to deliver dramatic gains in reliability, efficiency and sustainability in flexible environments that can scale as quickly as the market demands. Cybersecurity Department The AI Cybersecurity Director is responsible for the technical security, risk management, and governance enforcement of artificial intelligence (AI), machine learning (ML), and large language model (LLM) systems deployed across Vantage Data Centers’ operational, OT, and enterprise environments. This role serves as the technical and security authority for AI security, ensuring AI systems are architected, deployed, and operated with appropriate controls for data protection, model integrity, access governance, monitoring, and human‑in‑the‑loop decision enforcement. The AI Cybersecurity Manager ensures AI technologies deliver business value without introducing unacceptable cyber, operational, safety, workforce, or regulatory risk, in alignment with the Global Policies and Standards. This role is based in Denver, CO or Ashburn, VA. In alignment with our flexible work policy (3 days on site required, 2 days flexible). Essential Functions Establish enterprise governance for detection, classification, and management of unauthorized (shadow) AI across business units, in coordination with centralized AI functions. Define and enforce security architecture standards for AI, ML, and LLM platforms across cloud, hybrid, on‑prem, and OT‑adjacent environments. Provide security design oversight and approval for AI systems, including data pipelines, model hosting, inference paths, APIs, and integrations. Define enterprise methodology for AI security assessment covering architecture, design, and implementation across applications, agents, and workflows. Ensure AI architectures enforce segmentation, least privilege, deterministic behavior, and fail‑safe operation, particularly where OT or critical infrastructure data is involved. Establish AI‑specific incident response playbooks and lead response to AI‑related security, safety, or governance incidents. Enforce controls preventing unauthorized model retraining, autonomous learning, or use of live production or OT data outside approved intent. Define security requirements for explainability, traceability, and output validation where AI influences operational, workforce, safety, or compliance outcomes. Drive alignment with ISO 42001 and related AI governance standards across applicable teams. AI Data Protection and Trust Boundaries Enforce protections against prompt injection, data leakage, hallucination risk, unauthorized context expansion, and external model training exposure. Ensure sensitive enterprise, operational, personnel, and contractual data is not exposed to or retained by external AI platforms without approved safeguards. Approve and oversee AI data ingestion pipelines, enforcing purpose limitation, data minimization, and classification requirements. Validate encryption, access logging, retention, and deletion controls for data used by AI systems. Define and enforce controls preventing cross‑domain data correlation that violates trust boundaries or governance constraints. AI Threat, Risk, and Monitoring Management Perform AI‑specific threat modeling, including risks such as data poisoning, model theft, inference abuse, output manipulation, and decision integrity compromise. Integrate AI threats into enterprise cybersecurity and OT risk models, including definition of compensating controls and escalation for systems exceeding risk tolerance. Own and maintain the AI risk register covering confidentiality, integrity, availability, explainability, data quality, model drift, adversarial attacks, and business impact. Ensure AI systems generate telemetry, logging, and audit trails sufficient to detect misuse, drift, or anomalous behavior. Integrate AI security monitoring into SOC, SIEM, and enterprise incident response workflows. OT and Critical Infrastructure Safeguards Enforce prohibitions on autonomous AI control of OT assets, including power, cooling, BMS, fire suppression, and physical access systems. Validate one‑way data flows, read‑only access models, and manual override requirements where AI consumes OT telemetry. Partner with OT and infrastructure teams to ensure AI enhances visibility and decision support without compromising safety, reliability, or uptime. Oversee security reviews of vendor‑provided and embedded AI capabilities, including model behavior, data handling, and contractual protections. Define and enforce minimum security and governance requirements for AI vendors, including audit rights and termination conditions. Required Qualifications Bachelor’s degree in Cybersecurity, Computer Science, Data Science, Engineering, or related field, or equivalent experience. Minimum 10+ years of experience in cybersecurity, security architecture, or risk engineering roles. Hands‑on experience securing data pipelines, APIs, cloud platforms, and analytics or ML‑enabled systems. Strong understanding of identity, access management, encryption, logging, and secure system design. Preferred Qualifications Direct experience securing AI/ML platforms, LLMs, or analytics pipelines. Experience with cloud security (Azure, AWS, GCP) and SaaS‑based AI platforms. Familiarity with OT, critical infrastructure, or safety‑critical environments. Security certifications such as CISSP, CCSP, CISM, or cloud security certifications. Key Skills & Competencies AI and machine learning security LLM and generative AI risk management Security architecture and threat modeling Data protection and access governance Incident response and forensic analysis Cross‑functional technical leadership Physical Demands
Location and market context
This is a remote AI governance role, so it draws from a national talent pool rather than a single metro. Remote governance and compliance roles reward candidates who can show they work effectively across time zones and distributed legal, security, and product teams. Confirm any residency, travel, or occasional-onsite expectations directly with Vantage Data Centers.
About AI governance roles
AI governance sits at the intersection of policy, risk, and engineering. Teams are standing up model inventories, use-case intake and review, risk classification, and control monitoring as regulation and board scrutiny of AI intensify. Roles like this one are typically evaluated against frameworks such as NIST AI RMF, ISO/IEC 42001, the EU AI Act, and internal model-risk and privacy practices.
How to position yourself for this AI governance role
Strong candidates emphasize experience translating policy into operational controls, working across legal, compliance, security, product, and data teams, documenting AI system risks, and supporting governance processes. In your resume and outreach, tie your experience to how Vantage Data Centers would apply NIST AI RMF, ISO/IEC 42001, the EU AI Act, and internal model-risk and privacy practices, and lead with concrete outcomes rather than duties.
Similar GRC roles
- Assistant Controller - ICFR & Audit · First Western · Denver, CO
- Compliance Communications Senior Specialist · Robinhood · Denver, CO
- Compliance Specialist · Rocky Mountain Communities · Denver, CO
- Lead Director, AI Governance Engineering · CVS Health · Denver, Colorado
- Head of Responsible AI & Governance · Vertex Inc. · Denver, Colorado
- Director, Privacy Compliance · Zillow · Denver, Colorado
Employer, or see something wrong with this posting? Report this posting and we will review it promptly.