Cyber & AI Risk Analyst
Alpaca provides developer APIs for stock, options, and crypto trading, enabling businesses and developers to build trading applications and automate investment strategies.
Maintainer signals as of 8/10/2026
Funding history
Projects
About Alpaca
Alpaca helps developers and businesses access financial markets through API-first infrastructure for stock, options, and cryptocurrency trading. Users can build algorithmic trading strategies, create investing applications, and integrate brokerage services into their platforms.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will help identify, assess, document, and track cybersecurity and AI-related risks across infrastructure, products, trading systems, and internal operations. You will conduct risk and vendor assessments, test controls, maintain risk registers and reporting, prepare audit evidence, monitor regulatory developments, and support AI governance, evaluation, and monitoring practices.
Requirements
- 1+ years of experience in cybersecurity, risk management, IT audit, GRC, or a related field
- Foundational understanding of network security, cloud security, IAM, application security, and vulnerability management
- Familiarity with NIST CSF, ISO 27001, SOC 2, or similar frameworks
- Understanding of AI and ML concepts and associated risks
- Written communication and documentation skills
- Ability to assess technical risks and communicate them to non-technical stakeholders
- Experience working cross-functionally with engineering and product teams
- Comfort using AI tools daily
Responsibilities
- Support the cybersecurity risk management program
- Conduct cyber risk assessments across cloud infrastructure, APIs, trading systems, and internal platforms
- Identify, document, and evaluate AI-related risks
- Develop and maintain AI governance controls
- Perform third-party and vendor security and AI risk assessments
- Test controls against cybersecurity and AI governance frameworks
- Track remediation efforts and maintain risk registers and reporting dashboards
- Prepare documentation and evidence for audits
- Monitor cybersecurity, financial-services, and AI-governance regulations
- Maintain cyber and AI policies, standards, and procedures
- Develop a repeatable AI tool and model evaluation process
- Maintain AI usage, logging, and monitoring standards
- Test the effectiveness of AI-related controls
Benefits
- Stock options
- Health benefits
- One-time USD $500 new-hire home-office setup
- USD $150 monthly stipend via a Brex Card
