8am - It's a new day for professionals
8am (Formerly AffiniPay) Logo

8am (Formerly AffiniPay)

AI Security Analyst

Posted 11 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Czech Republic
Mid level
Remote
Hiring Remotely in Czech Republic
Mid level
Identify and mitigate AI-specific security threats across internal and customer-facing systems. Assess AI use cases, vendors, models, and agentic systems; support governance reviews and monitoring; perform SOC-style alert triage and investigations; improve AI activity detection and logging; document controls for SOC 2, PCI DSS, and AI frameworks; and assist with AI incident response.
The summary above was generated by AI

It's a new day with a new opportunity at 8am! 

About the role:

The AI Security Analyst is a hybrid role combining security operations monitoring with AI-specific risk management and governance support. The role focuses on identifying, assessing, and mitigating risks associated with AI use, particularly generative AI, LLMs, and agentic systems, across internal tools and customer-facing platforms, while contributing to traditional security monitoring. The role does not involve building or training AI models; it secures how AI is deployed, governed, monitored, and used.

Location: Czech Republic (Remote). Working hours for this role are aligned to U.S. Central Time (Austin) core business hours to ensure real-time collaboration with the U.S.-based security leadership and compliance team.

This role is hired through an Employer of Record (EOR) partner in the Czech Republic.

About us:

8am builds software that helps professionals run stronger businesses. Our platform powers payments, client experience, and operational workflows for legal, accounting, and other service-based businesses. U.S. based professionals count on our purpose-built solutions to simplify operations, ensure compliance, and fuel profitable growth, so they can focus on their clients and do more of the work that matters.

More than 250,000 professionals across the U.S. rely on our products every day. As we continue to grow, we’re investing in the next generation of our platform and are looking for experienced engineers who want to help shape its future.

What you'll do:

  • AI security and risk management: Identify and mitigate AI-specific threats: prompt injection, jailbreaking and adversarial inputs, sensitive information disclosure, insecure output handling and excessive agency, model misuse and overreliance, and supply chain vulnerabilities in third-party AI services and models.
  • AI use-case review: Triage and risk-assess proposed AI use cases with Engineering, Product, Legal, and Privacy before production deployment; recommend controls and document decisions.
  • Agentic governance support: Support the operation of the company's agentic-work governance model: autonomy classification reviews, agent activity monitoring, and evidence collection for governance reviews.
  • Vendor and model review: Evaluate third-party AI vendors, model providers, and AI-enabled features for security posture and data handling; maintain the approved-provider view.
  • Security operations and monitoring: Perform SOC-style monitoring, alert triage, and investigation across cloud, application, and AI-enabled systems, including AI API usage and data flows; enhance detection rules and logging for AI-specific activity.
  • Compliance and governance support: Support audit readiness for SOC 2 and PCI DSS and alignment with emerging AI frameworks (NIST AI RMF, OWASP LLM Top 10, ISO/IEC 42001 as the program matures); document AI security controls and risk assessments.
  • Incident support: Support AI-related incident response, investigation, and post-incident analysis.

About you:

  • 3+ years in security operations, security analysis, or GRC with hands-on technical exposure.
  • Working understanding of LLM-specific threat classes (OWASP LLM Top 10) and AI risk frameworks (NIST AI RMF).
  • Ability to read logs, write basic queries and scripts, and investigate independently.
  • Strong written English and documentation discipline; comfortable in a distributed team.
  • Demonstrated experience leveraging AI tools and technologies to improve workflows, enhance decision-making, or drive innovation.
  • This position is preferably based in Brno, Czech Republic

Bonus points:

  • Experience monitoring or governing agentic AI systems, MCP integrations, or AI developer tooling.
  • Fintech, legal-tech, or other regulated-industry background.

Additional Information

The monthly gross salary range for this position is CZK 75,000 to CZK 140,000. 8am is committed to fair, objective, and non-discriminatory compensation, and actual pay may vary based on job-related knowledge, skills, experience, and education.

Why join our new 8am Brno hub?

  • Founding Team Impact: Be a founding engineer of our new Brno R&D hub. After a brief 1-6 month integration with U.S. based teams, you will help form fully autonomous, locally-led squads with clear paths to Staff and leadership roles
  • Drive our "AI-First" Transformation: We are building a secure, massive-scale "Unified AI Platform". Depending on your squad, you will either help architect this core infrastructure (LLM routing, RAG, agent orchestration) or build directly on top of it.
  • Build the Next Generation of Our Platform: Help shape the systems powering products used by more than 250,000 professionals. You’ll work on complex platform capabilities across payments, workflow automation, and AI-powered features as we expand into new professional service markets.

Benefits and Perks

We offer a competitive, locally relevant benefits package designed to support your life in the Czech Republic while giving you access to global opportunities:

  • Performance bonus opportunities and employee referral rewards
  • Flexible Time Off (FTO) and 13 paid public holidays aligned with the Czech calendar
  • Paid sick leave with additional support through the Czech social security system
  • Maternity, paternity, and parental leave in line with Czech regulations, plus additional paid paternity leave from 8am
  • Full statutory benefits, including public health insurance, social security, pension, and work accident coverage

Grow Your Career

  • Access to Coursera (including Gen AI Academy) and ongoing professional development
  • Clear growth paths, regular feedback, and opportunities for advancement

What Makes 8am Different:

  • International company environment with collaboration across Europe and the U.S.
  • Opportunities to travel for company events (including potential U.S. visits)
  • Engaging team culture with local events, outings, and community initiatives
  • High-quality company swag and programs focused on wellness, learning, and connection

Diversity, equity & inclusion at 8am:

At 8am, we recognize that innovation occurs with a strong team of people who are diverse in background, personality, talent and ideas. Experience comes in many forms and ensuring a diverse and inclusive workplace where we continue to learn from each other is an integral part of our culture. We are committed to creating a welcoming and transparent environment for all that embraces those differences through education, equal access to opportunities and information, inclusionary programs, and community outreach. 

Security advisory:

Our hiring teams at 8am are dedicated to recruiting top talent that share our passion for serving the professional services industry through innovative financial technology.  As such, our Talent Acquisition Team only follows legitimate hiring practices.  We will always communicate with our candidates using emails with the 8am domain and will never ask for sensitive/personal data during the application process.  All interviews take place over phone call, Zoom/Google Meet or in person.  All offers are communicated verbally by our Talent Acquisition Specialists with a written offer letter as a follow up. 

Applicant Data Privacy Notice:

Your personal data will be collected and retained by Controller as long as Controller determines it is necessary to evaluate your application for employment. Under the GDPR, you have the right to request access to your personal data, to request that your personal data be rectified or erased, and to request that processing of your personal data be restricted. You also have the right to data portability. In addition, you may lodge a complaint with an EU supervisory authority.  Full policy linked here. 

Similar Jobs at 8am (Formerly AffiniPay)

4 Days Ago
Remote
Senior level
Senior level
Software
The Senior Data Analyst will support FP&A, Partnerships, and Product through ad hoc analysis, automated reporting, data transformations, visualization, and actionable insights. Responsibilities include managing the data lifecycle, identifying trends and opportunities, partnering with Data Engineering, and presenting findings to technical and business stakeholders. The role requires advanced SQL, Excel, Python, BI tools, modern data stack experience, finance technology and B2B SaaS expertise, and the ability to solve ambiguous problems independently.
Top Skills: ChatgptClaudeExcelGenaiPythonRedshiftSigmaSnowflakeSQLTableau
11 Days Ago
Remote
Senior level
Senior level
Software
Design and scale the data platform powering analytics, product insights, and machine learning. Lead data architecture, modeling, ETL, reliability, observability, quality, and query optimization initiatives. Integrate product data sources, support reporting and BI access, improve engineering practices, mentor teammates, and provide technical guidance on platform evolution. Collaborate with product, engineering, and analytics teams to prioritize work, assess impacts, and resolve ecosystem issues.
Top Skills: Ai Tools And TechnologiesAirflowAmazon RedshiftAWSCi/CdCloudFormationDagsterData PipelinesData WarehousesETLGoogle BigqueryInfrastructure As CodeKafkaNosql DatabasesPrefectPysparkPythonRelational DatabasesSnowflakeSparkSQLTerraform
11 Days Ago
Remote
Mid level
Mid level
Software
Operate and improve cloud security, detection, and incident response capabilities. Manage AWS security posture, SIEM and EDR detections, vulnerability remediation, forensic investigations, WAF monitoring, IaC security reviews, and security awareness programs. Support privacy and compliance controls, product security consultations, and security documentation. The role requires independent work across distributed teams and collaboration with engineering, compliance, and U.S.-based security leadership.
Top Skills: AWSDlpEdrGuarddutyIamInfrastructure As CodeKnowbe4Pci DssPythonSecurity HubSIEMSoc 2TerraformVantaWaf

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account