GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsWashington, DCSecurity Assurance Lead

Security Assurance Lead

Scale AI
GovernanceTop SecretOn-siteFull-timeWashington, DC

Scale AI is hiring for the role of Security Assurance Lead, Washington, DC (On-site). This is a Governance role in the governance, risk, and compliance field. Review the full details below and apply directly with Scale AI.

Organization: Scale AILocation: Washington, DCWorkplace: On-siteFocus: GovernancePosted: Aug 11, 2026
Scale AI is hiring for this Governance role in Washington, one of the metros GRC Careers tracks for governance, risk, and compliance hiring. See other GRC roles in Washington →

Scale is powering the generative AI wave by providing the data and infrastructure for companies to build large-scale foundation models. AI is rapidly changing the world, and Scale is growing to meet that rapid demand across global markets, including accelerating public sector and commercial business.

Scale seeks a Technical Assurance Lead to drive assurance programs across Scale s public sector and commercial business. Reporting to the Head of Global Assurance, this is a hands-on individual contributor role with significant autonomy. Scale is looking for an experienced security and compliance professional to support Security Risk Management Assessment and Authorization (A and A) audit activities for Scale’s products. You will be part of the global GRC team and work across Public Sector, Enterprise, Security, Engineering, Product, and Legal to deliver region-specific authorizations, certifications, and customer assurance outcomes, with a focus on the US markets. We are looking for relentlessly curious, deliberately open-minded, and action-oriented generalists who can advise on internal policies, and operational processes while employing an empathetic interpersonal style. If you enjoy solving novel and challenging problems and building strong relationships while doing it, we’d love to hear from you!

You Will

Lead public sector compliance programs (e.g., FedRAMP HIGH, DoD SRG IL4/IL5/IL6, NIST 800-53/800-171, CMMC, and RMF), owning controls mapping, gap analysis, evidence collection, ATO packages, and certification timelines, including coordination with 3PAOs and external assessors.
Oversee Security Risk Management A and A processes, including cloud system risk assessments, POAM development and tracking, vulnerability management, STIG implementation, and security configuration oversight.
Drive cross-functional control implementation by partnering with product, engineering, security, operations, legal, and people ops to deploy technical, administrative, and operational controls.
Set priorities and cadences for intake, evidence collection, remediation tracking, and deadline management, and reporting program health and risks to the Head of Global Assurance.
Manage external relationships with auditors, assessors, certification bodies, and regulatory counterparts to achieve and sustain compliance outcomes.
Maintain system security documentation and GRC tooling, including continuous updates to security documentation and uploading control evidence to eMASS or Xacta throughout the monitoring phase.
Lead compliance reviews for new products and features, and proactively advise the business on emerging certification programs, regulatory changes, and evolving requirements.
Maintain and expand Scale s certification portfolio, including SOC 2, ISO 27001, ISO 42001, and ISO 9001, working with the global GRC team on renewals and new certifications.
Support customer and stakeholder assurance activities, including security questionnaires, due diligence responses, compliance input to bids, and customer-facing assurance discussions.

You’ll Have

An active US Top Secret security clearance with minimum IAT Level 2 certification (Security +, CASP, or similar).

Ideally, You’d Have

7+ years of experience in security compliance, technology audit, GRC, cloud security, or related roles, with meaningful exposure to the public sector markets.
Experience implementing and maintaining some of the following frameworks and standards: FedRAMP, DoD Cloud Computing SRG, NIST 800-171, NIST 800-53, CMMC, NIST 800-53.
Deep familiarity with one or more of: STIG/RMF policy knowledge and implementation, including validating compliance via ACAS and other relevant tests, ISO 27001, ISO 9001, ISO 42001, SOC 2, or equivalent frameworks.
Experience in project management and taking projects from conception to launch.
An ability to translate between business and technical risk and communicate clearly to leadership.
Experience managing controls mapping, evidence collection, remediation tracking, and audit coordination across distributed engineering and infrastructure teams.
Experience with cloud environments (one or more of: AWS, Azure, GCP) and the ability to assess cloud architecture against compliance requirements.
Strong communication skills, sound judgment on escalation, and the ability to operate autonomously while maintaining alignment with a global program.

Nice to Have

Bachelor’s degree in accounting, information systems, computer science, or a related field.
Relevant certifications such as CISSP, CISM, CISA, ISO 27001 Lead Auditor, ISO 42001 Internal Auditor, or CCSP.
Experience at a high-growth technology company.

strong PLEASE NOTE: Our policy requires a 90-day waiting period before reconsidering candidates for the same role. This allows us to ensure a fair and thorough evaluation of all applicants.

About Us:

At Scale, our mission is to develop reliable AI systems for the world s most important decisions. Our products provide the high-quality data and full-stack technologies that power the world s leading models, and help enterprises and governments build, deploy, and oversee AI applications that deliver real impact. We work closely with industry leaders like Meta, Ernst em em and Young, Mayo Clinic, Time Inc., the Government of Qatar, and U.S. government agencies including the Army and Air Force. We are expanding our team to accelerate the development of AI applications.

We believe that everyone should be able to bring their whole selves to work, which is why we are proud to be an inclusive and equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability status, gender identity or Veteran status.

We are committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. If you need assistance and/or a reasonable accommodation in the application or recruiting process due to a disability, please contact us at accommodations@scale.com. Please see the United States Department of Labor s a Know Your Rights poster em for additional information.

We comply with the United States Department of Labor s Pay Transparency provision em.

em PLEASE NOTE: We collect, retain and use personal data for our professional business purposes, including notifying you of job opportunities that may be of interest and sharing with our affiliates. We limit the personal data we collect to that which we believe is appropriate and necessary to manage applicants’ needs, provide our services, and comply with applicable laws. Any information we collect in connection with your application will be treated in accordance with our internal policies and programs designed to protect personal data. Please see our a privacy policy for additional information.

Location and market context

This role is based in Washington on-site. Local candidates benefit from being close to Scale AI's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About governance roles

Governance roles design the structures, policies, and oversight that keep complex programs accountable, coordinating across legal, risk, compliance, and technology. Roles like this one are typically evaluated against frameworks such as governance frameworks, policy standards, and oversight and reporting practices.

How to position yourself for this governance role

Strong candidates emphasize policy and standard-setting, committee and stakeholder coordination, oversight reporting, and translating strategy into durable operating structures. In your resume and outreach, tie your experience to how Scale AI would apply governance frameworks, policy standards, and oversight and reporting practices, and lead with concrete outcomes rather than duties.

Similar GRC roles

Want to be next in a role like this?

Roles like Security Assurance Lead in Washington, DC open regularly. Be first to know — privately. No current employer ever sees you looking.

New Governance roles, the moment they post. Tell us where to send them.

Unsubscribe anytime, one click.

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.