Senior Analyst, BISO AI

I. Job Summary

The Senior Analyst, BISO AI is responsible for the day-to-day management of the company's enterprise AI governance and oversight framework as part of the Cybersecurity Business Information Security Office (BISO). This role ensures that all artificial intelligence, automation, and low-code/no-code solutions are identified, assessed, and operated in alignment with cybersecurity, privacy, and ethical standards. This person will connect the world of network security with agentic AI systems, keeping the enterprise safe, but innovative. The senior analyst will manage and maintain the organization's AI governance platforms, which centralizes intake, documentation, and risk evaluation of new and existing AI use cases. They will also operate monitoring and visibility tools that detect policy violations, data exposure, and unauthorized automations across enterprise systems. In addition, they will leverage cloud security and workload protection platforms to identify and track vulnerabilities within AI-enabled services. This role acts as the connective point between cybersecurity, legal, privacy, data, and business teams to ensure AI innovation proceeds responsibly. The senior analyst will establish and refine processes for reviewing new AI use cases, documenting risk decisions, and coordinating remediation where necessary. They will also develop reports and dashboards that provide leadership with visibility into the organization's AI inventory, risk posture, and compliance status. The position requires building skills in both technical acumen and strong governance capability; balancing innovation with risk management and ensuring that enterprise AI initiatives remain transparent, secure, and compliant.

II. Essential Duties and Responsibilities

  • Lead the administration and ongoing enhancement of the OneTrust AI Governance module, including intake workflows, AI inventory, use-case review, and control mapping
  • Drive the processing and triage of new AI use cases and requests, coordinating with Legal, Privacy, and Business stakeholders to ensure alignment with enterprise policy and risk appetite
  • Lead continuous cataloging of generative AI systems, large language models (LLMs), low-code/no-code automations, and AI agents in the environment
  • Research and evaluate advancements in AI and related threats to inform and shape governance and security decisions across the enterprise
  • Author risk decisions, mitigation plans, and approvals for AI initiatives, ensuring defensible documentation and executive-ready rationale
  • Operate, integrate, and optimize the enterprise AI security tooling portfolio — including Onyx (Secure LCNC), Reco, Dux, Upwind, Magnitude, Doppel, and future tools added to the portfolio — to connect AI development, visibility, enforcement, and reporting across Power Platform, Copilot Studio, Salesforce, AWS Bedrock, Snowflake Cortex, and other enterprise automations
  • Lead the design of integrated workflows that link AI development (intake and build), visibility (discovery and inventory), enforcement (policy and guardrails), and reporting (risk and compliance dashboards) across the BISO AI tool stack
  • Direct the review and analysis of findings from cloud and AI security platforms (e.g., Upwind, Reco, Dux) related to AI workloads, containers, agents, and data services, and prioritize response actions
  • Deliver strategic insights to leadership regarding AI-driven recommendations, usage patterns, threat exposure, and risk indicators
  • Own remediation tracking with development and engineering teams and verify closure of AI-related vulnerabilities through to resolution
  • Design, develop, and maintain dashboards summarizing AI risk trends, inventory status, enforcement actions, and compliance posture — sourced from across the AI security tool portfolio
  • Create and evolve AI policies, standards, and procedures in partnership with cross-functional stakeholders
  • Partner with Privacy, Legal, and Information Security to establish responsible AI usage practices aligned with regulatory and ethical expectations
  • Lead AI-related audit and assessment activities, serving as the subject matter expert for BISO AI governance and tooling
  • Evaluate, pilot, and onboard new AI security and governance tools as the portfolio expands, ensuring seamless integration with existing development, visibility, enforcement, and reporting workflows
  • Mentor and develop junior analysts and emerging talent on the BISO team, providing coaching, knowledge transfer, and growth opportunities in AI governance, cybersecurity, and risk management practices


III. Qualifications

A. Required Qualifications

  • Bachelor's Degree (accredited) in Computer Science, MIS, or similar area of study or in lieu of degree
  • High School Diploma and 6 years of related experience
  • 4 years of experience in related field or position in addition to the education requirements


B. Preferred Qualifications


IV. Physical Requirements

Listed below are key points regarding physical demands, physical and occupational risks, and the work environment of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the job.

Office: This job primarily operates in a professional office environment and routinely requires the use of standard office equipment such as computers, phones, copy machines, etc.


V. Benefits
At WM, each eligible employee receives a competitive total compensation package that includes medical, dental, vision, life insurance, and short-term disability. In addition, we offer a stock purchase plan, company matching on a 401(k), and more. Employees also receive paid vacation, holidays, and personal days. Please note that benefits may vary by site.

If this sounds like the opportunity that you have been looking for, please click Apply.