Charlie Zhang

Vice President, Information Security, Privacy, and Ai Governance @Arkose Labs

Berkeley, CA, US
EMAILS
c••••••@arkoselabs.com
MOBILE NUMBERS
+17•••••••38

Signup · Get unlimited contacts

WORK HISTORY

Jun 2020 — Present

Vice President, Information Security, Privacy, and Ai Governance @Arkose Labs

View department →

San Francisco, CA, US

Executive owner of information security, privacy, and AI governance programs; accountable for enterprise IT risk posture and strategy with executive leadership, board, and key customers• Built and led information security function from ground up in partnership with CIO/CSO; recruited, trained, and mentored five direct reports and established repeatable governance and assurance motions• Translated EU AI Act requirements, NIST AI RMF, and ISO/IEC 42001 into AI governance operating roadmap (owners, risk, control mapping, evidence, milestones). Implementation in progress• Led initial certification and ongoing assurance: SOC 1 Type II and SOC 2 Type II (no exceptions) and ISO/IEC 27001:2022 with privacy extensions (ISO/IEC 27018/27701); control set aligned to ISO/IEC 27002:2022• Owned GDPR and CCPA/CPRA governance and enabled EU-U.S, UK Extension, and Swiss-U.S. DPF certification• Designed and implemented scalable policies, standards, and frameworks across privacy/data protection, third-party risk, vulnerability management, secure SDLC, resiliency, and incident response, transforming ad-hoc practices into audit-ready programs• Scaled programs to support growth from 50 to 300 staff while sustaining enterprise customer requirements and increasing regulatory complexity• Established quarterly executive and board reporting (top risks, incidents, roadmap, OKRs, KPIs) to drive prioritization, accountability, and measurable risk reduction• Owned enterprise risk register and annual security planning process, tying roadmap to business priorities and customer commitments• Partnered with engineering, product, and legal to embed security/privacy into SDLC; drove infrastructure and architectural improvements; advised on contractual and regulatory data governance commitments• Enabled enterprise growth and revenue retention by strengthening assurance artifacts, improving externally visible trust signals, and leading customer security and privacy due diligence

EDUCATION

N/A

UC Berkeley School of Information

Master of Information and Cybersecurity

N/A

University of California, Berkeley, Haas School of Business

Master of Business Administration - MBA

2010 — 2014

University of Michigan - Stephen M. Ross School of Business

Bachelor of Business Administration

SKILLS

Information SecurityCybersecurityPci DssPciIso 27001Iso 27002IT Security AssessmentsIT Risk AssessmentsIT Risk ManagementThird Party Risk ManagementMarketingMicrosoft ExcelSpssData AnalysisMarket ResearchSocial MediaRBusiness DevelopmentMinitabLeadershipSqlPublic SpeakingPythonFinancial AnalysisMicrosoft AccessBusinessobjectsInformation TechnologyVbaCoremetricsMarketing AnalyticsRisk AnalysisInvestor Relations

ABOUT CHARLIE ZHANG

Information Security, Privacy, and AI Governance executive with 10+ years building scalable, business-aligned programs that strengthen trust, reduce risk, and enable enterprise growth.VP at Arkose Labs. Built security and privacy governance from the ground up, scaled programs from early stage through hyper-growth from 50 to 300 staff, and delivered SOC 1 Type II and SOC 2 Type II plus ISO/IEC 27001:2022 with privacy extensions (27018/27701).Currently translating EU AI Act requirements, NIST AI RMF, and ISO/IEC 42001 into an AI governance operating model and 2026 roadmap (owners, intake, control mapping, evidence), targeting operational readiness by Aug 2026.Previously: governance and risk within Meta Global Security; cyber and privacy advisory at PwC and KPMG.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.