For recruiters and hiring managers hiring a AI Governance & Risk Analyst (NIST AI RMF, EU AI Act, ISO 42001).
Role fit, with proof you can run
AI Governance & Risk Analyst (NIST AI RMF, EU AI Act, ISO 42001)
Mid-level and senior IC roles. W2 full-time or contract-to-hire, remote US (Arizona).
I map AI controls to NIST AI RMF, EU AI Act and ISO/IEC 42001 requirements, read the evidence behind each control and track its status. The same public proofs back the engineer lane.

framework requirementcontrolevidencestatusreceipt
Requirements and proof
| Requirement | Proof |
|---|---|
| Map a framework requirement (NIST AI RMF, ISO/IEC 42001, EU AI Act) to a control and the artifact that shows it | Governance-mapping case study |
| Read build-generated evidence and report whether each control passes | Governance-mapping case study - Release-gate case study |
| Show one control against more than one framework mapping | Governance-mapping case study |
| Rank evidence by the real risk it reduces, not by what satisfies a checklist | Deterministic gate battery case study |
| Hand a reviewer evidence they can re-run and get the same verdict | Artifact-lineage case study |
What could go wrong hiring me
Most proof here is self-built, not a control tracked inside a regulated organization.
Counter: Release-gate case study
These framework mappings were written by the person who built the system, not an outside assessor.
No formal third-party certification has been issued for this work.
Verify in 60 seconds
- Open the governance-mapping case study and check one control against its stated artifact, /cases/ai-governance-mapping
- Open the release-gate case study and read what one failing assertion does to a merge, /cases/eval-release-gate