Talent.com
Security Risk Analyst
Security Risk AnalystAnthropic • San Francisco, CA, United States
Security Risk Analyst

Security Risk Analyst

Anthropic • San Francisco, CA, United States
1 day ago
Job type
  • Full-time
Job description

Remote-Friendly (Travel-Required) | San Francisco, CA | Seattle, WA | New York City, NY

About Anthropic

Anthropic’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems.

About the role

As part of Anthropic's Compliance Team, you'll help build and scale our risk management function. This unique role requires taking well established risk frameworks and adapting them to manage security and compliance risks in the rapidly evolving AI landscape.You’ll be a key contributor in shaping how the organization evaluates and mitigates risks that evolve from industry leading research, products, and public policy. As our Risk Analyst reporting to the Head of Compliance, you'll be responsible for bringing clarity to complex risk scenarios, developing innovative assessment methodologies, and ensuring our risk management approach scales with our ambitious mission to ensure transformative AI helps people and society flourish.

Responsibilities :

  • Triage and evaluate submitted risks through comprehensive assessment of inherent and residual risk scores, aligning with company policies, objectives, and our current control environment
  • Drive collaborative engagement with stakeholders across the organization to develop effective risk treatment plans and establish robust mitigating controls
  • Contribute to and maintain our Controls Portfolio by documenting mitigating controls and ensuring accurate mapping to relevant compliance frameworks
  • Partner with the Risk Management Lead to analyze and report on key risk metrics and trends, providing actionable insights for executive decision-making and strategic planning
  • Shape the evolution of our risk management program, helping build and refine processes that scale with our growing organization
  • Ensure the effectiveness of risk management controls through rigorous monitoring and documentation support for both internal and external audits

You may be a good fit if you :

  • Have 5-10 years of experience in governance, risk, and / or compliance roles, with a track record of adapting frameworks to evolving business needs
  • Have navigated compliance challenges within high-growth organizations, particularly in heavily regulated environments
  • Possess deep understanding of information security risks, controls, and threat models, with the ability to apply this knowledge to emerging technology challenges
  • Bring hands-on experience with security frameworks such as SOC2, ISO 27001, FedRAMP, and HIPAA
  • Excel at quantitative risk analysis and can adapt frameworks to novel use cases
  • Can effectively translate complex security risks for diverse stakeholders, bridging technical details with business context to foster a risk-aware culture
  • Strong candidates may also have experience with :

  • Hands-on experience with GRC platforms, project management tools, and service management systems, with a focus on scaling and automating risk processes
  • Bring experience building or significantly improving risk management programs within high-growth technology organizations, particularly those dealing with emerging technologies
  • Hold relevant certifications such as CRISC, ISC2 Risk Management, ISO 31000, or other information security risk credentials that demonstrate commitment to the craft
  • Deadline to apply : None. Applications will be reviewed on a rolling basis.

    The expected salary range for this position is :

    $255,000 - $345,000 USD

    Logistics

    Education requirements : We require at least a Bachelor's degree in a related field or equivalent experience.

    Location-based hybrid policy : Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.

    Visa sponsorship : We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.

    We encourage you to apply even if you do not believe you meet every single qualification. Not all strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on our team.

    How we're different

    We believe that the highest-impact AI research will be big science. At Anthropic we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills.

    The easiest way to understand our research directions is to read our recent research. This research continues many of the directions our team worked on prior to Anthropic, including : GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences.

    Come work with us!

    Anthropic is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues.

    Apply for this job

    indicates a required field

    First Name

    Last Name

    Email

    Phone

    Resume / CV

    Enter manually

    Accepted file types : pdf, doc, docx, txt, rtf

    (Optional) Personal Preferences

    How do you pronounce your name?

    Website

    Publications (e.g. Google Scholar) URL

    Are you open to working in-person in one of our offices 25% of the time?

  • Select...
  • When is the earliest you would want to start working with us?

    Do you have any deadlines or timeline considerations we should be aware of?

    AI Policy for Application

  • Select...
  • While we encourage people to use AI systems during their role to help them work faster and more effectively, please do not use AI assistants during the application process. We want to understand your personal interest in Anthropic without mediation through an AI system, and we also want to evaluate your non-AI-assisted communication skills. Please indicate 'Yes' if you have read and agree.

    Why Anthropic?

    Why do you want to work at Anthropic? (We value this response highly - great answers are often 200-400 words.)

    Will you now or will you in the future require employment visa sponsorship to work in the country in which the job you're applying for is located?

  • Select...
  • Do you require visa sponsorship?

  • Select...
  • Additional Information

    Add a cover letter or anything else you want to share.

    Profile

    Please ensure to provide either your profile or Resume, we require at least one of the two.

    Are you open to relocation for this role?

  • Select...
  • What is the address from which you plan on working? If you would need to relocate, please type "relocating".

    Have you ever interviewed at Anthropic before?

  • Select...
  • Have you worked in a high technology company for at least 5 years? Select...

    Have you been responsible for designing mitigating controls for risks so that the controls are aligned to one of the following : NIST 800-53, SOC2, ISO 27001, C5, IRAP, ISMAP, PCI DSS, HIPAA or similar security framework?

  • Select...
  • Have you led at least 3 security risk assessments for cloud-hosted product solutions?

  • Select...
  • Do you hold a credential demonstrating your cloud security knowledge?

  • Select...
  • If so, which certification?

    Have you been responsible for performing risk analysis using quantitative or semi-quantitative methods?

  • Select...
  • Voluntary Self-Identification

    For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.

    As set forth in Anthropic’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

    If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows :

    A "disabled veteran" is one of the following : a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

    A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

    An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

    An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

    Select...

    Voluntary Self-Identification of Disability

    Form CC-305

    Page 1 of 1

    OMB Control Number 1250-0005

    Expires 04 / 30 / 2026

    Voluntary Self-Identification of Disability

    Form CC-305 Page 1 of 1 OMB Control Number 1250-0005 Expires 04 / 30 / 2026

    Why are you being asked to complete this form?

    We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

    Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov / ofccp .

    How do you know if you have a disability?

    A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to :

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV / AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and / or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit / hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
  • Disability Status Select...

    PUBLIC BURDEN STATEMENT : According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.

    #J-18808-Ljbffr

    Create a job alert for this search

    Risk Analyst • San Francisco, CA, United States

    Related jobs
    Security Analyst

    Security Analyst

    EY • San Francisco, CA, United States
    Full-time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Risk Analyst

    Information Security Risk Analyst

    Varite • San Francisco, CA, United States
    Full-time
    The ideal candidate for this role will have the ability to blend and apply their technical, organizational, business, and cyber security abilities, to : . Support 12th District risk strategies, identi...Show more
    Last updated: 18 days ago • Promoted
    Security Compliance Senior Analyst

    Security Compliance Senior Analyst

    Coinbase • Oakland, CA, United States
    Full-time
    Ready to be pushed beyond what you think you're capable of?.At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, ...Show more
    Last updated: 18 days ago • Promoted
    Senior Vendor Risk Analyst

    Senior Vendor Risk Analyst

    Direct Staffing Inc • San Francisco, CA, United States
    Full-time
    Coordinate with stakeholders to initiate, scope and plan controls assessments of new and existing vendor engagements.Perform assessments on-site at vendor locations or remotely via conference calls...Show more
    Last updated: 30+ days ago • Promoted
    Protective Intelligence & Threat Analyst

    Protective Intelligence & Threat Analyst

    OpenAI • San Francisco, CA, United States
    Full-time
    The Corporate Security team ensures the physical safety and security of the organization's assets, operations, and personnel. We are committed to maintaining a secure environment that enables our te...Show more
    Last updated: 18 days ago • Promoted
    Security Researcher & Analyst - Application Security

    Security Researcher & Analyst - Application Security

    Cloudflare Inc • San Francisco, CA, United States
    Full-time
    At Cloudflare, we are on a mission to help build a better Internet.Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for cust...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Risk Analyst

    Information Security Risk Analyst

    Stefanini Group • San Francisco, California, USA
    Full-time
    Information Security Risk Analyst for.San Francisco CA / Salt Lake City UT / Los Angeles CA (Onsite Role).For quick Apply please reach out to Akash Gupta : / . The ideal candidate for this role will have ...Show more
    Last updated: 23 days ago • Promoted
    GRC Analyst : FedRAMP & Security Compliance

    GRC Analyst : FedRAMP & Security Compliance

    Medium • San Francisco, CA, United States
    Full-time
    A digital health technology leader is seeking a mid-level GRC Analyst to join their Information Security team.This role focuses on supporting security and compliance programs with a strong emphasis...Show more
    Last updated: 3 days ago • Promoted
    Security GRC Analyst

    Security GRC Analyst

    Nava Software Solutions • San Francisco, CA, United States
    Full-time
    NAVA Software solutions is looking for a Security GRC Analyst.Location : San Francisco , CA - Hybrid.Analyst with 2+ years' experience and with good understanding of security controls and compliance...Show more
    Last updated: 16 days ago • Promoted
    Hybrid GRC Security Analyst — Cyber Risk & Compliance

    Hybrid GRC Security Analyst — Cyber Risk & Compliance

    San Francisco • San Francisco, CA, United States
    Full-time
    A major city government in San Francisco is seeking a Business Analyst for the cybersecurity team.This full-time position involves performing risk assessments, vendor evaluations, and developing re...Show more
    Last updated: 6 days ago • Promoted
    Senior Security Analyst

    Senior Security Analyst

    Carta • San Francisco, CA, United States
    Full-time
    Carta connects founders, investors, and limited partners through world-class software, purpose-built for everyone in venture capital, private equity and private credit. Trusted by 65,000+ companies ...Show more
    Last updated: 14 days ago • Promoted
    Security Analyst

    Security Analyst

    eTeam Inc. • San Francisco, CA, United States
    Full-time
    Location : Near San Francisco Office to be able to come onsite (1-2 times a week).We seek a diligent and organized Contract Security Analyst in the IAM space to join our BT team and support day-to-d...Show more
    Last updated: 30+ days ago • Promoted
    Risk Analyst

    Risk Analyst

    Mynrma • San Francisco, CA, United States
    Temporary
    We’re one of Australia’s most trusted brands.Being Member-owned, every decision we make has people and our community at its heart. From our legendary Roadside assistance to electric vehicle charging...Show more
    Last updated: 10 days ago • Promoted
    TDAC Analyst

    TDAC Analyst

    Ambient.ai • Redwood City, California, USA
    Part-time
    Build a safer world with us one incident at a time.AI-powered physical security platform helping the worlds leading enterprises reduce risk improve operational efficiency and gain critical insights...Show more
    Last updated: 23 days ago • Promoted
    Senior Product Security Analyst

    Senior Product Security Analyst

    iRhythm Technologies, Inc. • San Francisco, CA, United States
    Full-time
    At iRhythm, you'll have the opportunity to grow your skills and your career while impacting the lives of people around the world. Rhythm is shaping a future where everyone, everywhere can access the...Show more
    Last updated: 30+ days ago • Promoted
    Security Risk and Compliance Analyst

    Security Risk and Compliance Analyst

    Asana • San Francisco, CA, United States
    Full-time
    At Asana, security is foundational to our mission of helping teams work together effortlessly.Our security team protects Asana's employees, users, and customers by proactively addressing threats, e...Show more
    Last updated: 15 days ago • Promoted
    Technical Security Analyst

    Technical Security Analyst

    Tekfortune Inc • San Francisco, CA, United States
    Full-time
    Job Title : Technical Security Analyst.Location : California (Major cities) Oakland, San Francisco, Sacramento, Pleasanton, San Jose, Pasadena, San Diego CA. Demonstrate ability to identify, contain, ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Product Security Analyst

    Senior Product Security Analyst

    iRhythm Technologies • San Francisco, CA, United States
    Full-time
    At iRhythm, you'll have the opportunity to grow your skills and your career while impacting the lives of people around the world. Rhythm is shaping a future where everyone, everywhere can access the...Show more
    Last updated: 18 days ago • Promoted