Komodo Consulting logo

AI Security & Governance Trainer (Freelance)

Hiring from
Portugal
Work type
Remote
Posted
Is this job info correct?

538,537 remote jobs, straight from company career pages

100% free · New jobs every hour

Show job description

About Us

Komodo Consulting is a technology and strategy firm specializing in Digital Transformation. Operating in Portugal and Poland, we provide IT Consulting & Nearshore services. We support both public and private sector organizations through two main areas:

- Consulting — with a focus on strategy, investment analysis, and digital process improvement;

- IT Team Augmentation — helping clients scale and strengthen their tech teams.



The Project

We are seeking an AI Security & Governance professional to design and deliver training sessions as part of our training offer in AI and Cybersecurity. This is a freelance, session-based collaboration, compatible with other professional commitments, working alongside our GRC trainers, with the opportunity to evolve into AI assessment and consulting projects.



You will have the following responsibilities:

  • Design and deliver AI-focused training sessions and workshops, ranging from awareness to technical levels;

  • Cover topics such as Shadow AI, safe use of Generative AI in the workplace, AI governance in enterprise environments, and AI security;

  • Explain AI risks to business audiences, including data exposure, hallucinations, third-party tool risks, and intellectual property concerns;

  • Guide participants on building AI governance frameworks, including ownership structures, use-case inventories, risk classification, approval processes, and acceptable use policies;

  • Deliver technical sessions on AI application security, covering prompt injection, data leakage, integrations, guardrails, and monitoring;

  • Facilitate threat modelling exercises for AI use cases and promote secure-by-design practices across the AI lifecycle;

  • Develop training materials including checklists, decision guides, inventory templates, threat modelling templates, and practical scenarios;

  • Co-deliver sessions alongside GRC and cybersecurity trainers, ensuring technical accuracy of all AI-related content;

  • Keep training content current with the evolving AI threat landscape, emerging tools, and applicable regulations.



You need to have the following skills/experience:

  • Solid background in cybersecurity, with at least 2 years of hands-on experience in AI/GenAI security, adoption, or governance;

  • Practical experience with enterprise adoption of Generative AI tools and LLM-based applications;

  • Strong knowledge of AI-specific risk frameworks, including OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF;

  • Experience with AI governance practices, including use-case inventory, risk classification, approval workflows, and acceptable use policies;

  • Knowledge of the EU AI Act and its relationship with GDPR and data protection requirements;

  • Hands-on understanding of AI application architecture, including RAG, agents, integrations, identity management, secrets handling, and logging;

  • Experience with threat modelling methodologies and secure-by-design practices;

  • Proven experience as a trainer, speaker, or facilitator, with the ability to adapt content for both non-technical and technical audiences;

  • Fluency in Portuguese and English;

  • Certifications such as ISO 42001 Lead Implementer/Auditor, IAPP AIGP, CISSP, or a trainer certification (e.g. CCP) are a plus.



Location

Remote in Portugal, with occasional in-person sessions in Portugal. Flexible, session-based schedule.

Similar jobs

Apply for this job