AI Governance Lead
About this role
OUR MISSION
Reflection’s mission is to build open superintelligence and make it accessible to all.
We’re developing open weight models for individuals, agents, enterprises, and even nation states. Our team of AI researchers and company builders come from DeepMind, OpenAI, Google Brain, Meta, Character.AI, Anthropic and beyond.
ROLE OVERVIEW
We are seeking an AI Governance Lead to translate Reflection AI’s Compliance and AI Governance Roadmap into an operational, auditable compliance capability. You will work at the frontier of AI governance, turning regulatory and control requirements into repeatable practices that hold up to internal scrutiny, external audits, regulator expectations, and customer diligence.
You will serve as the hands-on compliance leader embedded in the model development lifecycle. You will partner closely with engineering, research, product, security, legal, and safety teams to ensure compliance is built into the way models are designed, tested, reviewed, released, and monitored. This role will be helping the organization scale safe, compliant model development now, instead of retrofitting controls later.
You will operationalize requirements across EU AI Act readiness, AI specific framework obligations, SOC 2 / ISO / NIST-aligned controls, and “compliance-as-code” workflows. The right candidate is deeply execution-oriented, comfortable with technical systems and evidence, and able to convert evolving regulatory expectations into clear controls, approvals, attestations, and audit-grade outputs.
KEY RESPONSIBILITIES
- Run hands-on compliance assessments, evidence capture, and remediation tracking that convert roadmap requirements into audit-ready outputs.
- Own pre-deployment compliance reviews and attestations, verifying that required documentation, approvals, and controls are complete before production release.
- Conduct structured lifecycle risk assessments across privacy, security, safety and model behavior, and regulatory non-compliance, and maintain the AI governance risk register.
- Validate model behavior against documented claims through technical testing and probing, and deliver production-grade reporting.
- Implement and operationalize compliance-as-code, including automated release gates, attestations, and evidence pipelines that run in parallel with research and engineering workflows.
- Operationalize control mappings to SOC 2/TSC, ISO, and NIST frameworks, including the intent of the NIST AI RMF where relevant.
- Execute EU AI Act and GDPR readiness activities so regulatory conformity can be demonstrated to auditors, customers, and other external stakeholders.
- Partner cross-functionally with engineering, research, product, legal, safety, and security teams to embed controls into the model development lifecycle.
- Drive remediation tracking and follow-through on identified control gaps, risk issues, and documentation deficiencies.
- Prepare governance artifacts, reports, and evidence packages that support internal review, audits, and customer diligence.
REQUIRED QUALIFICATIONS
- 6-8+ years of experience in compliance, AI governance, privacy, risk, security assurance, technical audit, or a related field.
- Demonstrated experience translating regulatory or framework requirements into operational controls, workflows, evidence, and remediation programs.
- Strong familiarity with GDPR, privacy requirements, and control frameworks such as SOC 2, ISO 27001, NIST CSF, or similar.
- Familiarity with the EU AI Act and emerging AI governance expectations.
- Experience conducting structured risk assessments and maintaining risk registers in technical or regulated environments.
- Comfort working directly with engineering and research teams, including reviewing technical documentation, testing outputs, and release processes.
- Experience producing clear, defensible documentation such as compliance reviews, evidence-based assessments, and audit-support materials.
- Ability to operate independently in a fast-moving environment and build practical governance systems from the ground up.
- Strong judgment, project ownership, and follow-through in cross-functional settings.
- Privacy and AI governance certifications, like CIPP/US, CIPP/EU, or AIGP, are preferred.
WHAT WE OFFER:
We believe that to build superintelligence that is truly open, you need to start at the foundation. Joining Reflection means building from the ground up as part of a small talent-dense team. You will help define our future as a company, and help define the frontier of open foundational models.
We want you to do the most impactful work of your career with the confidence that you and the people you care about most are supported.
- Top-tier compensation: Salary and equity structured to recognize and retain the best talent globally.
- Health & wellness: Comprehensive medical, dental, vision, life, and disability insurance.
- Life & family: Fully paid parental leave for all new parents, including adoptive and surrogate journeys. Financial support for family planning.
- Benefits & balance: paid time off when you need it, relocation support, and more perks that optimize your time.
- Opportunities to connect with teammates: lunch and dinner are provided daily. We have regular off-sites and team celebrations.