AI Security & Governance Trainer (Freelance)
- Hiring from
- Portugal
- Work type
- Remote
- Posted
538,537 remote jobs, straight from company career pages
100% free · New jobs every hour
Show job descriptionHide job description
About Us
Komodo Consulting is a technology and strategy firm specializing in Digital Transformation. Operating in Portugal and Poland, we provide IT Consulting & Nearshore services. We support both public and private sector organizations through two main areas:
- Consulting — with a focus on strategy, investment analysis, and digital process improvement;
- IT Team Augmentation — helping clients scale and strengthen their tech teams.
The Project
We are seeking an AI Security & Governance professional to design and deliver training sessions as part of our training offer in AI and Cybersecurity. This is a freelance, session-based collaboration, compatible with other professional commitments, working alongside our GRC trainers, with the opportunity to evolve into AI assessment and consulting projects.
You will have the following responsibilities:
Design and deliver AI-focused training sessions and workshops, ranging from awareness to technical levels;
Cover topics such as Shadow AI, safe use of Generative AI in the workplace, AI governance in enterprise environments, and AI security;
Explain AI risks to business audiences, including data exposure, hallucinations, third-party tool risks, and intellectual property concerns;
Guide participants on building AI governance frameworks, including ownership structures, use-case inventories, risk classification, approval processes, and acceptable use policies;
Deliver technical sessions on AI application security, covering prompt injection, data leakage, integrations, guardrails, and monitoring;
Facilitate threat modelling exercises for AI use cases and promote secure-by-design practices across the AI lifecycle;
Develop training materials including checklists, decision guides, inventory templates, threat modelling templates, and practical scenarios;
Co-deliver sessions alongside GRC and cybersecurity trainers, ensuring technical accuracy of all AI-related content;
Keep training content current with the evolving AI threat landscape, emerging tools, and applicable regulations.
You need to have the following skills/experience:
Solid background in cybersecurity, with at least 2 years of hands-on experience in AI/GenAI security, adoption, or governance;
Practical experience with enterprise adoption of Generative AI tools and LLM-based applications;
Strong knowledge of AI-specific risk frameworks, including OWASP Top 10 for LLM Applications, MITRE ATLAS, and NIST AI RMF;
Experience with AI governance practices, including use-case inventory, risk classification, approval workflows, and acceptable use policies;
Knowledge of the EU AI Act and its relationship with GDPR and data protection requirements;
Hands-on understanding of AI application architecture, including RAG, agents, integrations, identity management, secrets handling, and logging;
Experience with threat modelling methodologies and secure-by-design practices;
Proven experience as a trainer, speaker, or facilitator, with the ability to adapt content for both non-technical and technical audiences;
Fluency in Portuguese and English;
Certifications such as ISO 42001 Lead Implementer/Auditor, IAPP AIGP, CISSP, or a trainer certification (e.g. CCP) are a plus.
Location
Remote in Portugal, with occasional in-person sessions in Portugal. Flexible, session-based schedule.