lambda
lambda5mo ago
New

Security GRC Analyst

Second Stfull-timemid
OtherSecurity Grc Analyst
0 views0 saves0 applied

Quick Summary

Overview

Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers.

Requirements Summary

Experience in the AI infrastructure, machine learning and/or computer hardware industry Experience with Security by Design and/or Privacy by Design principles Experience with standard cyber controls frameworks, including CIS Controls v8, NIST Cyber…

Technical Tools
awsazuregcpcybersecuritymachine-learning

Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers. Lambda's mission is to make compute as ubiquitous as electricity and give everyone the power of superintelligence. One person, one GPU.

If you'd like to build the world's best AI cloud, join us.

*Note: This position requires presence in our San Francisco office location 4 days per week; Lambda’s designated work from home day is currently Tuesday.

Responsibilities

~1 min read
  • Validate and verify Lambda’s security controls and practices meet the requirements of ISO 27001, 27701, 27017, PCI, SOC 2, GDPR/CCPA and other relevant regulatory requirements to ensure alignment to business objectives

  • Assist in the update and maintenance of Lambda’s IT Risk Register across the full risk lifecycle: identification, assessment, treatment, tracking, and periodic review

  • Assist with and drive remediation of control deficiencies and gaps

  • Provide guidance to Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.)

  • Communicate with technical and non-technical stakeholders and leaders on cybersecurity risk and controls management topics and program-specific reporting

  • Assist with the third-party risk management assessment process, ensuring consistent enforcement of information security requirements

  • Assist control owners with root cause analysis and track risk management action plan progress

  • Create risk metrics for management regarding information security control maturity, compliance status, risks, performance and findings

  • Have a minimum of 5 years of experience supporting cybersecurity risk or controls management programs with in-depth knowledge and experience of cybersecurity frameworks including ISO 27001 and 27701, PCI-DSS, SOC, NIST CSF and other regulatory requirements

  • Have a working proficiency with at least one enterprise GRC or TPRM platform: AuditBoard, Vanta, OneTrust, Whistic or equivalent

  • Have familiarity with cloud security controls and compliance in AWS, GCP or Azure environments

  • Have experience collaborating closely with engineers, business teams, and security partners, including incident response, red teams, and architects to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations

  • Demonstrate the ability to take ownership of assigned program workstreams, execute against defined milestones, and proactively identify improvements to existing processes and controls

  • Hold a Bachelor’s degrees in Information Security, Computer Science or a related field; equivalent professional experience taken into consideration

Nice to Have

~1 min read
  • Experience in the AI infrastructure, machine learning and/or computer hardware industry

  • Experience with Security by Design and/or Privacy by Design principles

  • Experience with standard cyber controls frameworks, including CIS Controls v8, NIST Cyber Security Framework (CSF), NIST 800-53, NIST 800-171, Cybersecurity Maturity Model Certification (CMMC), ISO 27001 and 27701, and SOX ITGC control frameworks.

  • Broad knowledge of IT infrastructure and architecture of computer systems as well as exposure to a variety of platforms such as operating systems, networks and databases

  • Certified Information Systems Auditor (CISA)

  • Certified Information Security Manager (CISM)

  • Certified Information Systems Security Professional (CISSP)

  • Certified in Risk and Information Systems Control (CRISC)

The annual salary range for this position has been set based on market data and other factors. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description.

  • Founded in 2012, with 500+ employees, and growing fast

  • Our investors notably include TWG Global, US Innovative Technology Fund (USIT), Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, Gradient Ventures, Mercato Partners, SVB, 1517, and Crescent Cove

  • We have research papers accepted at top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG

  • Our values are publicly available: https://lambda.ai/careers

  • We offer generous cash & equity compensation

  • Health, dental, and vision coverage for you and your dependents

  • Wellness and commuter stipends for select roles

  • 401k Plan with 2% company match (USA employees)

  • Flexible paid time off plan that we all actually use

You do not need to match all of the listed expectations to apply for this position. We are committed to building a team with a variety of backgrounds, experiences, and skills.

Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.

Location & Eligibility

Where is the job
Second St
Hybrid — some on-site time required
Who can apply
Same as job location

Listing Details

Posted
November 10, 2025
First seen
May 7, 2026
Last seen
May 8, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
16%
Scored at
May 7, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

lambdaSecurity GRC Analyst