Senior Associate - Audit, Compliance and Operational Risk
Voleon is a technology company that applies state-of-the-art AI and machine learning techniques to real-world problems in finance. For nearly two decades, we have led our industry and worked at the frontier of applying AI/ML to investment management. We have become a multibillion-dollar asset manager, and we have ambitious goals for the future.
Your colleagues will include internationally recognized experts in artificial intelligence and machine learning research as well as highly experienced finance and technology professionals. The people who shape our company come from other backgrounds, including concert music performances, humanitarian aid, opera singing, sports writing, and BMX racing. You will be part of a team that loves to succeed together.
In addition to our enriching and collegial working environment, we offer highly competitive compensation and benefits packages, technology talks by our experts, a beautiful modern office, daily catered lunches, and more.
As a Senior Associate – Audit, Compliance & Operational Risk, you will own and operationalize governance, risk, and compliance within the Legal and Compliance organization, reporting directly to the Operational Risk and Audit Manager. This is a hybrid role - distinct from the firm's Information and Technology GRC function - focused on assisting in the building and maintenance of the audit, risk and compliance program to assess key controls, drive practical improvements, and lay foundational frameworks for future areas.
This role sits at the intersection of operational risk, compliance, audit and investor relations - requiring both the technical depth to engage credibly with business, compliance and operational teams and the communication skills to translate governance, risk and controls into business language for leadership, auditors, and investors.
This is not a checkbox compliance role. You will need genuine audit, risk or compliance expertise to assist in writing accurate policies grounded in how systems actually work, conducting meaningful risk assessments, and partnering with operational and compliance stakeholders on process and control design and gap remediation.
You will serve as the primary interface between Compliance (second line) and the firm's Operational Risk, Internal Audit, Legal, and Compliance functions (second/third line) — assisting with maturing the three-lines-of-defense relationship on behalf of the Legal and Compliance organization.
As part of the Compliance department, you will have broad exposure to the firm's trading, operations, and research groups, handle issues related to the firm's investment products in a fast-paced, constantly evolving regulatory environment, and help develop firm policies and procedures to manage and mitigate regulatory requirements.
This role is hybrid, with an expectation of working in our Berkeley office at least three days per week.
Responsibilities
Risk
- Contribute to the risk universe, program and plan;
- Contribute to foundation of governance, risk and controls by completing risk reviews, documenting process, and key controls for selected areas;
- Assisting with raising and tracking of gaps and enhancements, identifying owners, developing actions plans, tracking remediation and closure.
- Document risk processes, procedures, and operational workflows — build the institutional knowledge base
Audit
- Contribute to the internal audit charter, audit universe, and multi-year risk-based plan;
- Plan and execute scoped audits with oversight: scoping, walkthroughs, control design assessment, testing, reporting, and remediation follow-up.
- Assisting with raising and tracking of gaps and enhancements, identifying owners, developing actions plans, tracking remediation and closure.
- Independently managing the SOC project including: coordination with audit teams, document requests facilitation, review and preparation of audit materials to support SOC efforts, own the SOC check-ins and updates
- Document audit processes, procedures, and operational workflows — build the institutional knowledge base
Compliance
- Assisting with developing compliance policy lifecycle: creation, review, updates, and enforcement across the organization
- Assist with compliance tasks and ad hoc projects as needed such as day-to-day adminstration of the Compliance Program, compliance training, ad hoc compliance requests and reviews
- Assist with compliance follow up remediation efforts and tracking
- Document compliance processes, procedures, and operational workflows — build the institutional knowledge base
Requirements
- 2-5+ years of experience in audit, risk, or compliance with meaningful GRC depth — not pure audit/compliance
- Demonstrated ability to write policies grounded in technical reality — you understand how process, risk and controls work, not just what controls should exist on paper
- Experience working with or maturing a governance, risk and compliance program: risk registers, risk assessments, control mapping, remediation tracking
- Familiarity with risk assessment methodologies (COSO, or equivalent)
- Experience interfacing with operational risk, internal audit, legal, and compliance functions — comfortable navigating multi-stakeholder governance relationships
- Strong understanding of compliance and operational processes and controls
- Experience creating investor-facing or board-level security materials is a plus —
- Excellent written and verbal communication — policies, risk narratives, and executive summaries are primary deliverables
- Experience with vendor risk management and third-party due diligence questionnaires
- Self-directed and autonomous — this is a individual contributor role to start; you will prioritize and execute without a team
Preferred Qualifications
- Experience with compliance frameworks (SOC 1, COSO and/or Rule 206 (4) - 7 or equivalent) and the practical work of achieving or maintaining compliance
- Background in financial services, hedge funds, or regulated environments with investor due diligence requirements
- Familiarity with automated compliance platforms
- Experience with operational risk
- Experience working in a quasi-academic, engineering-heavy culture where credibility is earned through demonstrated expertise, not authority
“Friends of Voleon” Candidate Referral Program
If you have a great candidate in mind for this role and would like to have the potential to earn $7,500 if your referred candidate is successfully hired and employed by The Voleon Group, please use this form to submit your referral. For more details regarding eligibility, terms and conditions please make sure to review the Voleon Referral Bonus Program.
Equal Opportunity Employer
The Voleon Group is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.
Compensation: $130K – $150K • Offers Bonus

