What the role owns
The AI inventory, intake reviews for new models and vendors, and the risk assessments that go with them.
Who it reports to
An AI governance manager or the head of privacy.
A day in the job
Reviewing a new model or vendor against the policy, writing the risk assessment, chasing the owner for the documentation that should already exist, and keeping the AI inventory honest. Most weeks are reading and writing, not tooling.
What employers test for
Reading a model card and spotting what is missing. Writing clearly enough that a lawyer and an engineer both accept it. Knowing the NIST AI RMF and ISO/IEC 42001 well enough to cite the control, not the chapter.
How people get in
Privacy analysts and internal auditors move in fastest, because the job is evidence and judgment before it is technology. Engineers often find the writing harder than they expect.
What it gets confused with
Not a data scientist. The analyst asks what the model is for, who it affects and what evidence exists, and does not build it.
AI Governance Analyst: tools, skills and workflows
What does an ai governance analyst do all day?
Reviewing a new model or vendor against the policy, writing the risk assessment, chasing the owner for the documentation that should already exist, and keeping the AI inventory honest. Most weeks are reading and writing, not tooling.
What skills do employers test for?
Reading a model card and spotting what is missing. Writing clearly enough that a lawyer and an engineer both accept it. Knowing the NIST AI RMF and ISO/IEC 42001 well enough to cite the control, not the chapter.
How do people get into this role?
Privacy analysts and internal auditors move in fastest, because the job is evidence and judgment before it is technology. Engineers often find the writing harder than they expect.
What is it often confused with?
Not a data scientist. The analyst asks what the model is for, who it affects and what evidence exists, and does not build it.