Senior Analyst Security Risk and Compliance (AI Risk Governance)
- Hiring from
- United States
- Work type
- Hybrid
- Posted
- Sep 29, 2026
Overview
Our Culture and Impact
Cvent is a leading meetings, events, and hospitality technology provider with more than 6,000+ employees and 34,000+ customers worldwide, including 60% of the Fortune 500. Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event venues and destinations to help them grow their group/MICE and corporate travel business. Our technology brings millions of people together at events around the world. In short, we’re transforming the meetings and events industry through innovative technology that powers the human connection.
Cvent's strength lies in its people, fostering a culture where everyone is encouraged to think like entrepreneurs, taking risks and making decisions confidently. We value diverse perspectives and celebrate differences, working together with colleagues and clients to build strong connections.
AI at Cvent: Leading the Future
Are you ready to shape the future of work at the intersection of human expertise and AI innovation? At Cvent, we’re committed to continuous learning and adaptation—AI isn’t just a tool for us, it’s part of our DNA. We’re looking for candidates who are eager to evolve alongside technology. If you love to experiment boldly, share your discoveries, and help define best practices for AI-augmented work, you’ll thrive here. Our team values professionals who thoughtfully integrate AI into their daily work, delivering exceptional results while relying on the human judgment and creativity that drive real innovation.
Throughout our interview process, you’ll have the chance to demonstrate how you use AI to learn, iterate, and amplify your impact. If you’re excited to be part of a team that’s leading the way in AI-powered collaboration, we’d love to meet you.
Cvent is actively scaling its AI portfolio — from internal productivity tooling to customer-facing features — and the regulatory landscape around AI is evolving just as quickly. The AI Governance & Compliance Analyst will be the operational backbone of Cvent’s AI governance program, working within the Information Security (InfoSec) Risk & Compliance team and collaborating closely with Legal, Product Management, Engineering, and Corporate teams to ensure every AI initiative — whether a new SaaS vendor, an internal LLM integration, or a customer-facing AI feature — is reviewed, approved, monitored, and continuously compliant. The role is highly cross-functional and requires both a governance mindset and the ability to translate policy into practical, day-to-day execution alongside technical and non-technical teams alike.
In This Role, You Will:
EU AI Act & Regulatory Compliance
- Monitor, interpret, and operationalize EU AI Act obligations relevant to Cvent’s AI systems — including drafting policies and designing supporting processes for AI inventory management, AI risk assessments, and risk classification.
- Track the evolving AI regulatory landscape (EU AI Act implementation timelines, national enforcement, ISO 42001, and related GDPR/data intersections) and proactively flag compliance requirements to be embedded in AI deliverables.
- Collaborate with Legal to ensure AI-related contractual obligations with customers are identified and addressed in Cvent’s AI deliverables.
AI Policy Adoption & Governance Execution
- Drive adoption of Cvent’s AI policy and underlying procedures across technical and non-technical teams, including Engineering, Product, Marketing, Finance, HR, Sales, Legal, and Customer Success.
- Serve as the day-to-day point of contact for teams seeking guidance on AI governance requirements and deliverables.
- Support internal AI governance forums as a security governance resource — preparing materials, tracking action items, and ensuring decisions are documented and acted upon.
- Identify gaps in current processes and propose improvements to keep pace with Cvent’s rapidly growing AI initiative pipeline.
- Monitor new AI initiatives and process changes to ensure alignment with AI policy and governance, and report on instances of non-compliance.
AI Portfolio Risk Monitoring
- Own, maintain, and improve the AI Governance KPIs and dashboards across Cvent’s entire AI portfolio, for all levels of reporting.
- Participate in recurring AI Portfolio Reviews across business units to assess compliance status, surface blockers, and escalate risks to appropriate stakeholders.
- Monitor execution status of approved AI projects against their PRA commitments, and flag deviations or scope changes that require re-assessment.
ISO 42001 Certification
- Support the ISO 42001 audit process end-to-end, coordinating with the external assessor and internal stakeholders.
- Maintain and continuously improve the AI Management System (AIMS) artefacts required for ISO 42001 certification and ongoing surveillance audits.
- Work closely with the InfoSec team to align technical AI security controls with governance requirements.
Here's What You Need:
Required Experience & Skills
- 4–6 years of experience in a risk, compliance, governance, or information security role, ideally at a SaaS or technology company.
- Knowledge of AI security concepts and baseline controls — specifically risk tiering, conformity assessments, transparency obligations, and prohibited practices.
- Hands-on experience running or supporting formal certification audits (ISO 27001, ISO 42001, SOC 2, or equivalent).
- Proven ability to translate regulatory and policy requirements into practical, actionable guidance for product and engineering teams.
- Experience actively monitoring and managing operational security processes and compliance activities.
- Strong written and verbal communication skills: comfortable running cross-functional meetings, producing executive briefings, and writing clear procedural guidance.
- Data-driven mindset — able to build and maintain dashboards and KPIs using tools such as Excel, Sigma, or similar.
Nice to Have
- ISO 27001 Lead Implementer or Auditor certification.
- Prior experience with AI/ML governance.
- Familiarity with AI security threat modelling and the InfoSec angle on AI risks (model inversion, prompt injection, data poisoning, etc.).
- Experience working with external legal counsel on AI-specific contractual amendments or DPAs.
- Exposure to event technology, SaaS platform environments, or a fast-growth software company.
This job posting is intended to comply with all applicable laws. If we learn during the course of our recruitment process that, due to an applicant’s location, further information about the position is required, including certain salary information, this information in this posting will be supplemented accordingly.
Hybrid: 2 days in office
We are not able to offer sponsorship for this position
Physical Demands