Optum is seeking a Senior Business Information Security Officer to lead the security strategy and risk governance for their Enterprise AI/ML division, focusing on securing Generative AI and enterprise LLM platforms while balancing risk, innovation, and compliance across global operations.
Requirements
- 5+ years in emerging tech (AI/ML, data platforms, analytics systems)
- Experience managing risks tied to data integrity, model drift, shadow AI deployments, and third-party AI services
- Solid command of cloud-native architecture, zero trust security models, and federated learning environments
- Proven track record securing AI platforms and LLM ecosystems (e.g., Open AI, Azure AI, Vertex AI, AWS Bedrock)
- CISSP / CCSP / CRISC / CIPP or equivalent
- ISO/IEC 27001, ISO 42001 (AI Management) experience
- Microsoft, AWS, or Google AI/ML security training
Responsibilities
- Define and implement LLM threat modeling, prompt injection detection, adversarial testing, and alignment protocols
- Securing AI/ML development pipelines (MLOps), integrating DevSecOps principles, access controls, and provenance tracking
- Guide model lifecycle security including fine-tuning risks, output sanitization, hallucination detection, and bias remediation
- Establish data governance guardrails for training, inference, storage, and synthetic data creation
- Map evolving AI/ML risks against global frameworks: EU AI Act, NIST AI RMF, ISO 42001, DPDP Act, and internal GRC mandates
- Lead enterprise-wide AI/ML risk assessments, internal audits, and red teaming exercises targeting GenAI systems
- Support regulatory responses, incident management, and executive briefings tied to AI/ML program controls
Other
- 18-20 years of demonstrable success in enterprise security leadership
- Deep expertise in AI/ML security, indirect team leadership, and cross-border regulatory experience in large multinational environments.
- Act as Security Advisor to the CIO, bridging technical realities with strategic risk perspectives
- Champion secure enablement, helping business units adopt AI/ML responsibly and confidently
- Lead virtual cross-functional teams including data science, product, legal, and security engineering stakeholders