Lead the design and enforcement of AI-specific security and compliance frameworks, aligned with Kolomolo’s GenAI infrastructure.
Conduct AI risk assessments and security reviews focused on model integrity, data protection, and adversarial threats (e.g., model poisoning, data leakage, prompt injection).
Ensure full compliance with GDPR, CCPA, ISO 27001, SOC 2, NIST AI RMF, and emerging AI Act regulations.
Collaborate with AI researchers, engineers, and compliance officers to embed Responsible AI principles into product design and deployment.
Develop and maintain AI security policies, access control systems, and audit documentation.
Drive continuous monitoring, testing, and threat modeling across AI systems.
Stay ahead of global developments in AI governance, cybersecurity policy, and regulatory frameworks.
Requirements
Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Assurance, or a related discipline.
5+ years of experience in security, data protection, or compliance roles with a focus on AI or data-driven systems.
Proven expertise in AI security risks (LLM vulnerabilities, data confidentiality, model manipulation, and API threats).
Demonstrated experience in implementing security compliance frameworks for AI and cloud-based infrastructures.
Strong working knowledge of governance standards and security certifications (GDPR, SOC 2, ISO 42001, NIST AI RMF).
Excellent understanding of risk management, data lifecycle security, and ethical AI principles.
Exceptional communication skills and ability to translate complex technical controls into compliance-ready documentation.
Tech Stack
Cloud
Cyber Security
Benefits
Competitive salary and benefits.
Career development opportunities in a growing tech company.
Continuous learning culture: mentorship, internal training, and certifications.
Flexible, agile work environment (remote, hybrid, or on-site in Kraków).
Office perks: great coffee, tea, fresh fruit, snacks, and a fun atmosphere.
Flat management structure, where your voice matters.
Regular team events and a social, supportive work culture.
B2B contract or Contract of Mandate (Umowa Zlecenie).