5 дней назад
Sr. Technical Program Manager, Cybersecurity Remediation
145 900 - 234 200$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Technical Program Manager, Cybersecurity Remediation (Cybersecurity): Leading end-to-end remediation programs for vulnerabilities, audit findings, incidents, and security assessments with an accent on risk-based prioritization, governance, and cross-functional delivery. Focus on consolidating security findings, driving verification and closure, reporting remediation posture to executives and the board, and improving enterprise cybersecurity practices.
Location: Cambridge, Massachusetts, United States; 70% in-office work model. Only U.S. persons eligible due to export control requirements.
Salary: $145,900–$234,200 per year, with potential bonus, incentive compensation, or equity.
Company
develops mRNA technology, medicines, and supporting infrastructure.
What you will do
- Lead intake, prioritization, execution, validation, and closure of multiple cybersecurity remediation workstreams.
- Establish a centralized remediation operating model with governance, prioritization frameworks, SLAs, escalation paths, and execution tracking.
- Translate vulnerability scans, penetration tests, audits, incidents, investigations, and risk assessments into actionable remediation plans.
- Manage the consolidated findings registry, exceptions, risk acceptance, metrics, risks, and trends.
- Prepare executive- and board-level reporting that translates technical risk into business-relevant language.
- Partner with security, engineering, and business teams to remove blockers and improve secure engineering practices.
Requirements
- 8+ years of experience in technical program management, cybersecurity program management, or similar roles.
- Experience leading complex, cross-functional remediation programs in cybersecurity, infrastructure, or enterprise IT.
- Strong knowledge of vulnerability management, incident response, identity, cloud security, and application security.
- Experience with audit findings, risk assessments, penetration tests, and security incidents.
- Strong stakeholder management, influencing, written communication, verbal communication, and executive communication skills.
- Must qualify as a U.S. person; non-U.S. persons are not eligible for this role and visa sponsorship is unavailable.
Nice to have
- Experience with GxP environments and regulatory requirements.
- Familiarity with vulnerability management platforms, GRC tools, and security tracking systems.
- Experience with root cause analysis, CAPA management, post-incident reviews, and lessons-learned programs.
- Knowledge of NIST, ISO 27001, or CIS security frameworks.
- Background in infrastructure, cloud, or security engineering.
Culture & Benefits
- 70/30 in-office working model focused on collaboration, mentorship, and direct interaction.
- Healthcare and voluntary benefit programs.
- Fitness, mindfulness, mental health, family planning, fertility, adoption, and surrogacy support.
- Paid vacation, volunteer days, sabbatical, global recharge days, and year-end shutdown.
- Savings and investment programs, plus location-specific benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Director, IT Operations and Cybersecurity
202 000 - 261 500$
8 дней назад
Analyst, GRC – Public Sector (Cybersecurity)
120 000 - 145 000$
9 дней назад
Sr Principal, Tech Program Manager - Cybersecurity Portfolio Lead (Cybersecurity)
137 400 - 240 400$
8 дней назад
Sr. Staff Technical Program Manager (Cybersecurity)
143 500 - 205 000$
5 дней назад
Senior Technical Program Manager (Security)
130 000 - 150 000$
11 дней назад
Manager, GRC Technology, Metrics, and Automation (Cybersecurity)
99 200 - 165 400$