Head of Security & AI Enablement
@ AnrokHead of Security & AI Enablement
This job is still taking applications, but it's been up a while.
About the job
Anrok simplifies global tax compliance for digital businesses, enabling growth through automation. The role focuses on security, IT, and AI infrastructure to support rapid scaling and protect data. Work alongside top tech companies and grow with a funded startup.
Requirements
- 10+ years in IT/security roles
- 3+ years leadership experience
- Hands-on AI/LLM automation
- Application security expertise
- Compliance management experience
Qualifications
- Proven SOC 2 Type II ownership
- Familiarity with GDPR and data privacy
- Strong communication skills
- Self-starter in ambiguous environments
- Curious about AI implementations
Full job description
Anrok is the leading tax automation platform enabling businesses to expand globally without compliance complexity.
As the digital economy has grown 6x over the last decade, software businesses have gone from not worrying about sales tax to needing to monitor exposure, calculate rates, and file returns across 20+ US states and many countries worldwide. This creates a critical bottleneck for companies that should be able to transact with customers everywhere.
Anrok eliminates this complexity by connecting with billing and payment systems to automate tax monitoring, calculations, and filing end-to-end. Our unified platform handles the ever-changing maze of tax laws at municipal, state, and federal levels—so companies can focus on growth, not compliance.
Our customers include:
40% of Forbes Top 50 AI companies
20% of Forbes Top 100 Cloud companies
Top companies like Notion, Anthropic, and Cursor
We’re making compliant digital commerce a reality for companies big and small, backed by over $100M from leading investors including Spark Capital, Sequoia, Index, and Khosla Ventures.
We’re looking for an experienced technology leader to own and evolve Anrok's Security, IT, and AI operating system as we scale. As our first Head of Security & AI Enablement, you'll be the single owner of identity, corporate IT, compliance and information security, application security, and AI-automation capabilities—building the systems that let a rapidly growing team operate securely and efficiently, without unacceptable risk or operational complexity. This is a high-impact role reporting to our COO, with direct influence over how Anrok runs as a company.
In this role, you will
Partner with Engineering to establish best-in-class application security through threat modeling for critical systems, secure design reviews, vulnerability intake and prioritization, dependency and software supply chain risk, penetration testing, security testing in CI/CD, remediation SLAs and risk acceptance, product security incident response, customer facing security-assurance.
Own all compliance obligations end-to-end, including SOC 2 Type II, ISO 27001, and GDPR—serving as the DRI for audits, renewals, and cross-functional readiness. Develop and enforce security policies, access controls, and governance frameworks that grow with the business.
Own corporate IT infrastructure and operations—including endpoint management, SaaS stack administration, and IT support—managing and developing our IT team.
Establish strong AI governance in order to safely increase the organization's velocity. This will include: model approval and vendor management, data classification and model-use restrictions, agent identities and IAM, framework for human approvals, prompt-injection and data-exfiltration protections, logging and monitoring of agent actions, AI incident response, cost, quality, and business impact measurement.
Build the infrastructure to support teams building AI-powered internal tools and infrastructure, deploying LLM-based automations, internal copilots, and agentic workflows to improve how Anrok operates at scale
Partner with Legal and Finance on data privacy obligations, vendor risk management, and third-party security assessments
Evaluate, procure, and manage the internal technology stack, ensuring we’re using the right tools as we scale
Report on security and compliance posture to executive leadership as needed
What excites us
10+ years in IT, security, or a related technical role, with 3+ years in a leadership position at a scaling tech company
Hands-on experience building or deploying AI/LLM-powered internal tools or automations—you default to AI-first solutions for operational problems
Strong application security fundamentals—you can review AppSec findings, work with engineers on remediations, and evaluate risk without needing to write the code yourself
Genuine familiarity with GDPR and international data privacy obligations, relevant to a fintech handling customer financial data across jurisdictions
Track record of building lightweight but durable compliance and governance programs—practical, not checkbox theater
Proven ownership of SOC 2 Type II renewals end-to-end—you’ve been the DRI, not just a contributor
Technically credible with strong business fluency: you can present to a board, negotiate a vendor contract, and review a penetration test in the same week
Self-starter who thrives in ambiguity, builds scalable systems, and knows when to automate vs. hire
You’re curious and motivated to learn new tools — you've experimented with AI in your work or on your own, you're excited about what's possible, and you've built something with it (an application, a workflow, a creative solution to a real problem) that you can walk us through.
What we offer
The equity upside of an early-stage startup with the product-market fit of a later-stage company.
Daily lunch and snacks for those working out of our office hubs.
Medical, dental, and vision insurance covered 100%.
One Medical membership covered, flexible sick benefits, and more.
Annual learning and development stipend for books, online courses, and conferences, as well as a curious team to share your learnings with.
Home internet reimbursement stipend.
Wellness reimbursement program.
Annual team off-sites and in-person opportunities around our growing Anrok hubs.
Home office setup stipend to ensure you have the equipment you need to thrive at work.
At Anrok, we embrace a dynamic and flexible hybrid work environment based out of our growing office hubs - San Francisco, New York City, Salt Lake City, and Dublin where we collaborate in-person 3 days per week.
Please be aware, job-seekers may be at risk of targeting by malicious actors looking for personal data. Anrok recruiters will only reach out via LinkedIn or email with an anrok.com domain. Any outreach claiming to be from Anrok via other sources should be ignored.
Similar jobs in San Francisco, California
- C
Software Engineer, AI Enablement
Chime Financial, Inc · San Francisco, California, United States
Posted 4 weeks ago - C
Senior Program Manager, AI Enablement
Chime Financial, Inc · San Francisco, California, United States
Posted 6 days ago - R
AI Agent Security Architect
Replit · Foster City, CA
Posted today - A
Head of Vulnerability Disclosure & Security Community
Anthropic · San Francisco, California, United States
Posted 1 week ago - W
Applied AI Security Engineer
Waabi · San Francisco, CA
Posted 4 days ago - S
Head of Product Marketing & Enablement, Strategy, Planning & Business Operations
Snowflake · US-CA-Menlo Park
Posted 1 week ago