AI Hiring Index

Snorkel AI · Operations · Senior · Posted 2026-08-21

Senior Technical Compliance Analyst

Snorkel AI · New York City, NY (Hybrid); San Francisco, CA (Hybrid) · $150k–220k base

This range's midpoint is above 51% of posted operations ranges at AI companies right now. See the salary index.

Apply on Snorkel AI's site Watch Snorkel AI for new roles

About Snorkel

Snorkel AI is the frontier AI data lab, helping teams build the data and environments behind high-performing frontier and agentic AI. We combine technology with research-driven AI data development to create datasets, benchmarks, evals, and custom solutions for real-world AI systems. Founded out of the Stanford AI Lab in 2019, Snorkel works with leading AI labs and enterprises to move from better data to better outcomes. 

Excited to help us redefine how AI is built? Apply to be the newest Snorkeler!

Job Description

We are seeking a hands-on, builder-minded Senior Technical Compliance Analyst to serve as the operational engine behind our Trust & Security program.

You will maintain our SOC 2 Type II posture, drive our second entity from Type I to Type II, and act as the bridge between compliance requirements and engineering & delivery execution. You will also lay the technical groundwork to evolve us toward **CMMC 2.0**, ensuring we are ready for federal contracts without slowing down our product velocity.

**This is not a "compliance cop" role.** We practice **"Yes, if..."** security—you will influence architecture, automate policy enforcement, and unblock enterprise sales by ensuring the Security team has pristine, verifiable evidence at their fingertips.

What You will Do

Powering Customer Trust & Revenue Enablement

The Engine Behind Revenue: Help drafting accurate, technically precise responses to RFPs, security questionnaires (CAIQ, SIG, custom risk assessments), and customer portals.

Repository Stewardship: Own and continuously update the "Library of Truth"—a pristine repository of pre-vetted security evidence, technical configurations, and policy documents. By keeping this repository audit-ready, you enable the Security team to respond to enterprise prospects in hours, not days.

Technical Depth on Demand: When a customer asks about AWS KMS encryption, logging pipelines, or IAM privilege escalation paths, you retrieve the granular evidence and draft the written narrative the Security and Legal Team needs to confidently close the deal.

Building Compliance into the DNA

Compliance Partner: Partner with IT, Security, Product, Engineering, and Delivery early in the development lifecycle. Review new features, infrastructure changes, and vendor integrations to influence architectural decisions that bake in compliance by design—without creating friction or slowing sprints.

Policy as Guardrails: Write, update, and operationalize security policies that accelerate delivery. Translate abstract SOC 2 and NIST controls into clear, developer-friendly tasks (e.g., IAM hardening, log retention, Zero Trust implementation).

Compliance-as-Code: Where possible, automate policy enforcement in CI/CD pipelines so that security checks are invisible, automated, and frictionless for engineering teams.

Enablement, Not Enforcement: Conduct lightweight compliance enablement sessions with engineering teams—showing them how to self-serve evidence collection and interpret compliance requirements—so security becomes everyone's responsibility, not just yours.

Operational GRC & Audit Excellence

Audit Lifecycle Management: Drive and coordinate the end-to-end SOC 2 Type I and Type II audit cycles across our business entities. Manage audit schedules, coordinate with external auditors, and drive remediation of findings to keep us perpetually audit-ready.

GRC Automation: Be the power-user of our modern GRC stack (Vanta, Drata). Automate evidence collection, continuously monitor technical controls, and eliminate manual spreadsheet tracking.

Operational Cadences: Manage the compliance ticketing queue in Jira. Execute routine mandates including quarterly User Access Reviews (UAR), security awareness training, phishing simulations, and managing the Risk Acceptance/Exception process.

Metrics & Reporting: Build and maintain compliance dashboards (KPIs/KRIs) for the Security Lead and executive team. Track audit read …

New operations roles at AI companies, every Monday. The week's openings in this function across 286 companies, plus the weekly index. Free.

More operations roles at Snorkel AI

See also: Legal & Compliance jobs · AI jobs in San Francisco Bay Area · Snorkel AI salaries · Terraform jobs · AWS jobs · GCP jobs.

This listing is reproduced from Snorkel AI's public careers feed and links to the original. AI Hiring Index is not the employer and does not accept applications. All Snorkel AI roles · AI salaries.