Director, AI Security
International Rescue Committee
- Location:
- New York, NY, USA
- Category:
- Executive
- Remote:
- Yes
Posted Jun 25, 2026Apply by Jul 10, 2026 (13d left)
The Director, AI Security is a senior leadership role responsible for building, leading, and maturing the IRC’s AI security function. This role sets organizational direction for securing AI systems from design through deployment, governance, and team development, advising the CISO and partnering across security and technology teams.
Responsibilities
- Define, own, and continuously mature the IRC's AI security strategy and program roadmap
- Establish and maintain the organization-wide AI agent registry
- Develop and publish secure-by-default standards, frameworks, and reference architectures for AI agent development
- Create and enforce AI security policies covering agent development, deployment, monitoring, and decommissioning
- Report AI security risk posture and program progress to the CISO and senior leadership
- Coordinate and perform GIS security reviews within AI governance framework
- Partner with AI Governance, Privacy, Legal, and Technology stakeholders to support AI intake and assessment
- Perform security risk assessments and classify AI platforms and use cases
- Conduct structured controls assessments validating security baseline requirements
- Issue formal approval decisions for reviewed use cases with documented rationale
- Manage SLA timelines for all security reviews
- Conduct periodic reassessments of active agents and trigger out-of-cycle reviews as needed
- Monitor evolving AI threat landscape and initiate remediation
- Lead post-incident reassessments and update approval status
- Evaluate third-party AI tools for security risk prior to adoption
- Maintain a risk register specific to AI systems
- Report aggregate review metrics to the CISO
- Define technical security requirements for AI agents
- Build and lead a team of AI security engineers
- Own and resource red team and adversarial testing programs
- Drive adoption of secure coding practices and security tooling
- Establish governance frameworks with IAM team for AI agent identities and credentials
- Set data security standards with ML/Data Security Analyst
- Define data classification requirements for AI systems
- Develop and maintain AI-specific incident response runbooks
- Serve as executive sponsor for AI-related security incidents
- Conduct post-incident reviews and drive lessons learned
- Serve as primary expert on AI-specific regulatory requirements
- Partner with GRC team to map AI security controls to compliance obligations
- Monitor evolving AI regulatory landscape and advise leadership
- Recruit, hire, onboard, and develop AI security team
- Set team goals, conduct performance reviews, and create development plans
- Foster a culture of continuous learning in AI security
- Lead vendor evaluation and selection for AI security tooling
- Develop a multi-year AI security roadmap aligned to IRC risk appetite
Requirements
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related technical field
- Advanced degree (Master's or equivalent) preferred but not required where experience is demonstrably strong
- 10+ years of experience in information security, with at least 4-5 years in a people management or senior security leadership role
- Demonstrated hands-on experience securing AI/ML systems, LLM-based applications, or agentic AI workflows
- Proven experience conducting threat modeling, security architecture reviews, and risk assessments for complex, distributed systems
- Experience building and leading security teams, including hiring, developing, and retaining talent in a fast-moving technical domain
- Track record of working cross-functionally with engineering, product, legal, and compliance teams
- Experience owning and managing a security budget including tooling, vendor, and headcount decisions
- Prior experience with incident response and managing security incidents involving automated or AI-driven systems is strongly preferred
- Demonstrated experience managing and developing a team of security professionals, including hiring, performance management, and career development
- Must be based in a country where IRC operates and have the right to work in that location
Skills
- Information Security
- Cybersecurity
- AI Security
- AI/ML Systems Security
- LLM Application Security
- Agentic AI Security
- Threat Modelling
- Security Architecture Review
- Risk Assessment
- Security Team Management
- Talent Development
- Cross-Functional Collaboration
- Security Budget Management
- Security Tooling Management
- Vendor Management
- Incident Response
- Security Incident Management
- Performance Management
- Career Development
Languages
English