Manager: AI Security and Risk
Listed on 2026-09-18
-
IT/Tech
Information Security & Data Protection, Cybersecurity
Overview
Mayer Brown is an international law firm positioned to represent the world’s major corporations, funds, and financial institutions in their most important and complex transactions and disputes. We are recognized by our clients as strategic partners with deep commercial instincts and a commitment to creatively anticipating their needs and delivering excellence in everything we do.
We are a collegial, collaborative firm where highly motivated individuals with an unwavering commitment to excellence receive the opportunity, support, and development they need to grow, thrive, and realize their greatest potential all while supporting the Firm’s client service principles of excellence, strategic partnership, commercial instinct, integrated strengths, innovation, and collaboration across our international firm.
If you thrive in a collaborative environment that values exceptional client service, initiative, professionalism, responsiveness, and adaptability, we invite you to consider joining our Information Technology department in our Chicago office as a Manager: AI Security and Risk.
The Manager: AI Security and Risk will be responsible for operationalizing Mayer Brown’s enterprise AI governance framework. Reporting to the Chief Information Security Officer, this role ensures that AI systems are assessed, approved, tracked, and monitored in line with internal policies, regulatory expectations, and client requirements.
The role directly supports the firm enabling scalable, day-to-day governance of our responsible AI use globally.
ResponsibilitiesEssential Functions:
- Operationalize and continuously improve the enterprise AI governance framework, translating AI policies and regulatory requirements into practical, repeatable governance processes
- Coordinate AI security and risk related governance activities across Information Technology, Information Security, Innovation, Legal Risk Management (including Data Privacy) and all other interested teams to ensure consistent application
- Manage the end‑to‑end AI Risk Assessment and AI Impact Assessment (AIIA) and AI Risk Assessments process for new and materially changed AI use cases, including facilitation, cross‑functional review, approval, and maintenance of the central AIIA/AI Risk Assessment repository
- Review use cases and triage, where appropriate, in accordance with Firm policies and applicable laws
- Client audits and related requirements in relation to AI requirements
- Ensure AI assessments address privacy, fairness/bias, explainability, security, and regulatory considerations
- Support maintenance of the AI register, monitor emerging AI regulations, and assist with updates to AI policies, standards, and templates and liaise with the Privacy Team
- Support AI‑specific third‑party due diligence, including coordination with Information Security, Procurement and Legal Risk Management and tracking of vendor AI systems
- Support the AI Governance Committee by preparing submissions and risk materials, and tracking decisions, conditions, and remediation actions
- Perform other duties as assigned or required to meet Firm goals and objectives
Education/Training/
Certifications:
- Bachelor’s degree in Information Technology or Computer Science
Professional
Experience:
- 5+ years’ experience in Information Security; IT engineer and AI experience required
- Close familiarity with laws and frameworks such as GDPR, EU AI Act, ISO 42001, ISO
27001, NIST AI RMF and emerging AI regulations - Strong understanding of risk-based governance and regulatory compliance concepts
- Experience working in complex, regulated, global organizations
- Ability to translate policy and regulatory requirements into operational processes
- Experience with AI, analytics, or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).