
The Goldman Sachs Group, Inc
Risk, Operational Risk (Artificial Intelligence Coverage), Vice President, Dallas or Salt Lake City at Goldman Sachs
About the role
Organization:
Risk Division, Operational Risk
Team / Role:
Lead for AI Architecture – Artificial Intelligence Coverage / Operational Risk
Level/Location:
Vice President, Dallas/ Salt Lake City
The Operational Risk Department at Goldman Sachs is an independent risk management function responsible for developing and implementing a standardized framework to identify, measure, and monitor operational risk across the firm. The AI Lead for AI Architecture is a specialized role within this framework, dedicated to strengthening the firm's oversight of AI-related risks arising from model development, deployment infrastructure, technical standards, and the internal AI technology stack. This professional will be responsible for continuously identifying, monitoring, measuring, and assessing operational risks associated with the firm's AI architecture decisions, including secure-by-design principles, model governance within the tech stack, infrastructure resilience, explainability, data quality and drift, prompt injection defenses, and the alignment of technical architecture with the firm's AI risk appetite. The role ensures that the firm's AI systems are architected, deployed, and operated in a manner that is secure, resilient, explainable, and compliant with regulatory obligations.
Responsibilities:
- Identify, monitor, and analyze operational risks arising from the design, development, and deployment of AI systems, with a focus on risks such as inadequate system alignment, lack of explainability, data quality and drift, prompt injection, hallucination and inaccurate outputs, non-deterministic behavior, bias and discrimination, model overreach/expanded use, reputational risk from AI failures, agent action authorization bypass, tool chain manipulation and injection, agent state persistence poisoning, and multi-agent trust boundary violations. Develop evidence-based challenges focused on improving architectural risk posture.
- Monitor the firm's AI architecture control inventory for sufficiency and completeness, challenging the absence of controls and the implementation of controls within engineering standards. This includes oversight of mitigations such as AI Firewall Implementation and Management, User/App/Model Firewalling/Filtering, AI System Observability, System Acceptance Testing, Data Quality and Classification/Sensitivity, Human Feedback Loop for AI Systems, LLM-as-a-Judge automated evaluation, Providing Citations and Source Traceability, AI Model Version Pinning, Agent Authority Least Privilege Framework, Tool Chain Validation and Sanitization, Agent Decision Audit and Explainability, Multi-Agent Isolation and Segmentation, Data Filtering From External Knowledge Bases, Preserving Source Data Access Controls in AI Systems, Role-Based Access Control for AI Data, Encryption of AI Data at Rest, and Quality of Service and DDoS Prevention for AI Systems.
- Champion secure-by-design principles across the AI technology stack, ensuring that security, privacy, and risk controls are embedded into AI system architecture from inception rather than retrofitted.
- Conduct data analysis to identify trends and patterns in AI system performance, model behavior, observability telemetry, and security events, augmenting such analysis with qualitative observations to monitor risk-taking trends through bespoke metrics at firmwide and divisional/sub-divisional levels. Escalate concerns to senior management when warranted.
- Contribute to divisional and functional risk profile assessments by highlighting AI architecture risk issues and trends to senior divisional managers and the senior Operational Risk management team.
- Conduct evidence-based scenario analysis by working with stakeholders to develop plausible tail risk scenarios around AI architecture failures, including prompt injection attacks leading to data exfiltration, hallucination-driven erroneous financial advice, cascading failures in multi-agent systems, agent authorization bypass leading to unauthorized transactions, data drift causing model degradation, and infrastructure resilience failures. These scenarios are used in quantifying specific business exposure to potential risk.
- Oversee model governance within the tech stack, ensuring that AI models are subject to version pinning, system acceptance testing, observability, human feedback loops, and automated evaluation before and during production deployment.
- Ensure alignment of technical architecture with the firm's AI risk appetite, reviewing architectural decisions for consistency with risk tolerance levels, regulatory requirements, and internal policies.
- Oversee infrastructure resilience for AI systems, including monitoring for availability risks, Denial of Wallet attacks, VRAM exhaustion, and GPU infrastructure dependencies. Ensure Quality of Service and DDoS prevention controls are implemented and effective.
- Facilitate operational risk event and data collection related to AI architecture incidents; perform detailed reviews of trends to identify significant risks and ensure monitoring and remediation.
- Review New Activities and ensure operational risks arising from new AI model deployments, new architectural patterns, agentic system rollouts, and infrastructure migrations are properly considered.
- Contribute to review and challenge of AI architecture control assessments to ensure the risk and control self-assessment outcomes are consistent, credible, and underpinned by appropriate evidence.
- Remain current on business drivers, regulatory and industry changes impacting the firm's AI architecture activities and obligations, including the EU AI Act, NIST AI 600-1, NIST Cybersecurity Framework, FFIEC IT Booklets, and ISO 27001.
- Identify and drive initiatives that improve AI architecture risk management activities at the firm.
Qualifications
- Strong understanding of AI/ML architecture concepts, including foundation models, LLMs, RAG systems, agentic AI frameworks, MCP servers, vector databases, embedding pipelines, and model deployment infrastructure.
- Experience with secure-by-design principles, AI firewalling, prompt injection defenses, model observability, and explainability frameworks.
- Knowledge of internal control frameworks such as NIST 800-53, NIST AI 600-1, ISO 27001, COBIT, Cloud Security Alliance Cloud Controls Matrix, and the EU AI Act.
- Strong business acumen with general awareness of technology-related processes, risks, and business flows in financial services.
- 7+ years of relevant experience, which could include working in operational risk, a financial institution's technology division, a technology company that builds or maintains enterprise AI/ML systems, cloud services, offensive or defensive cybersecurity, or IT/Information Security auditors.
- Strong verbal and written communication skills with the ability to present with impact and influence.
- Ability to work in a fast-paced environment with a strong delivery focus.
- Strong organizational skills; project management experience a plus.
- Proficiency in Word, Excel, PowerPoint, Share Point/One Drive; SQL, graph databases, and Tableau would be a plus.
- Relevant certifications like CISA, CISM, or related AI/ML and cybersecurity certifications.
- Familiarity with enterprise risk management best practices and controls.
- Bachelor's Degree in Computer Science, Cybersecurity, Business and Technology Management, Finance, Data Science, or related disciplines.
ABOUT GOLDMAN SACHS:
At Goldman Sachs, we commit our people, capital and ideas to help our clients, shareholders and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities and investment management firm. Headquartered in New York, we maintain offices around the world.
We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our own workplace and beyond by ensuring every individual within our firm has a number of opportunities to grow professionally and personally, from our training and development opportunities and firmwide networks to benefits, wellness and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at GS.com/careers.
We’re committed to finding reasonable accommodations for candidates with special needs or disabilities during our recruiting process. Learn more: https://www.goldmansachs.com/careers/footer/disability-statement.html
© The Goldman Sachs Group, Inc., 2023. All rights reserved.
Goldman Sachs is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, national origin, age, veterans status, disability, or any other characteristic protected by applicable law.
Required skills
Operational risk
AI governance
Risk assessment
Model risk awareness
Security controls
Regulatory compliance
Total Views
0
Total Apply Clicks
0
Total Mock Apply
0
Total Bookmarks
0
More open roles at Goldman Sachs

Regulatory Engineering - Global Banking and Markets -Warsaw-Vice President
Goldman Sachs · Warsaw, Mazowieckie, Poland

Engineering Division - Engineering COO Office - Associate - Bengaluru
Goldman Sachs · Bengaluru, Karnataka, India

Asset & Wealth Management Operations - Onboarding - Alts - Shared - Analyst - Bengaluru
Goldman Sachs · Bengaluru, Karnataka, India

Global Banking & Markets, Structured Products Trading, Associate / Vice President, Hong Kong
Goldman Sachs · Hong Kong, Hong Kong

Asset & Wealth Management - Fixed Income, Institutional Solutions Investment Specialist - Analyst - Bengaluru
Goldman Sachs · Bengaluru, Karnataka, India
Similar jobs

Staff Tech, Security, T4
Collins Aerospace (RTX) · US-AZ-TUCSON-M05 ~ 1151 E Hermans Rd ~ BLDG M05 (External Site)

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Senior Principal Systems Security Engineer (Cyber) - P5 (Onsite)
Collins Aerospace (RTX) · US-MA-MARLBOROUGH-MA2 ~ 1001 Boston Post Rd ~ BLDG 2

Principal Systems Security Engineer (Cyber) - P4 (Onsite)
Collins Aerospace (RTX) · US-AL-HUNTSVILLE-401 ~ 401 Jan Davis Dr NW ~ JAN DAVIS 401

Network/Security Analyst- Onsite
Collins Aerospace (RTX) · US-MT-GREAT FALLS-6932-CUST ~ 6932 Goddard Dr ~ GODDARD (External Site)
About Goldman Sachs

Goldman Sachs
PublicThe Goldman Sachs Group, Inc. is an American multinational investment bank and financial services company. Founded in 1869, Goldman Sachs is headquartered in the Battery Park City neighborhood of Manhattan in New York City, with regional offices in many international financial centers.
45,000+
Employees
Lower Manhattan
Headquarters
$80B
Valuation
Reviews
2 reviews
2.9
2 reviews
Work-life balance
2.5
Compensation
3.0
Culture
2.0
Career
4.0
Management
2.5
45%
Recommend to a friend
Pros
Amazing career growth opportunities
Chill management at some locations
Work-life balance valued in certain roles
Cons
Toxic workplace culture
Codependent atmosphere
Confusing interview process
Salary Ranges
20,304 data points
Junior/L3
Mid/L4
Senior/L5
Junior/L3 · Analyst
6,923 reports
$112,993
total per year
Base
$97,759
Stock
-
Bonus
$15,234
$77,583
$166,892
Interview experience
4 interviews
Difficulty
3.5
/ 5
Duration
21-35 weeks
Experience
Positive 0%
Neutral 75%
Negative 25%
Interview process
1
Application Review
2
HR Screen/HireVue
3
Recruiter Screen
4
Superday/Panel Interview
5
Final Decision
Common questions
Behavioral/STAR
Technical Knowledge
Culture Fit
Past Experience
Case Study
Latest updates
Aidoc Raises $150 Million Series E Led by Goldman Sachs to Scale Clinical AI for Earlier, Safer Diagnoses - Yahoo Finance UK
Yahoo Finance UK
News
·
1w ago
Goldman Sachs and Bain Lead Investment in AI Marketing Startup - WSJ
WSJ
News
·
1w ago
Goldman Staff in Hong Kong Lose Access to Anthropic’s Claude - Bloomberg.com
Bloomberg.com
News
·
1w ago
Goldman cuts access to Anthropic's Claude for Hong Kong bankers, source says - Yahoo Finance
Yahoo Finance
News
·
1w ago