Назад
Company hidden
5 дней назад

Sr. Technical Program Manager, Cybersecurity Remediation

145 900 - 234 200$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Technical Program Manager, Cybersecurity Remediation (Cybersecurity): Leading end-to-end remediation programs for vulnerabilities, audit findings, incidents, and security assessments with an accent on risk-based prioritization, governance, and cross-functional delivery. Focus on consolidating security findings, driving verification and closure, reporting remediation posture to executives and the board, and improving enterprise cybersecurity practices.

Location: Cambridge, Massachusetts, United States; 70% in-office work model. Only U.S. persons eligible due to export control requirements.

Salary: $145,900–$234,200 per year, with potential bonus, incentive compensation, or equity.

Company

hirify.global develops mRNA technology, medicines, and supporting infrastructure.

What you will do

  • Lead intake, prioritization, execution, validation, and closure of multiple cybersecurity remediation workstreams.
  • Establish a centralized remediation operating model with governance, prioritization frameworks, SLAs, escalation paths, and execution tracking.
  • Translate vulnerability scans, penetration tests, audits, incidents, investigations, and risk assessments into actionable remediation plans.
  • Manage the consolidated findings registry, exceptions, risk acceptance, metrics, risks, and trends.
  • Prepare executive- and board-level reporting that translates technical risk into business-relevant language.
  • Partner with security, engineering, and business teams to remove blockers and improve secure engineering practices.

Requirements

  • 8+ years of experience in technical program management, cybersecurity program management, or similar roles.
  • Experience leading complex, cross-functional remediation programs in cybersecurity, infrastructure, or enterprise IT.
  • Strong knowledge of vulnerability management, incident response, identity, cloud security, and application security.
  • Experience with audit findings, risk assessments, penetration tests, and security incidents.
  • Strong stakeholder management, influencing, written communication, verbal communication, and executive communication skills.
  • Must qualify as a U.S. person; non-U.S. persons are not eligible for this role and visa sponsorship is unavailable.

Nice to have

  • Experience with GxP environments and regulatory requirements.
  • Familiarity with vulnerability management platforms, GRC tools, and security tracking systems.
  • Experience with root cause analysis, CAPA management, post-incident reviews, and lessons-learned programs.
  • Knowledge of NIST, ISO 27001, or CIS security frameworks.
  • Background in infrastructure, cloud, or security engineering.

Culture & Benefits

  • 70/30 in-office working model focused on collaboration, mentorship, and direct interaction.
  • Healthcare and voluntary benefit programs.
  • Fitness, mindfulness, mental health, family planning, fertility, adoption, and surrogacy support.
  • Paid vacation, volunteer days, sabbatical, global recharge days, and year-end shutdown.
  • Savings and investment programs, plus location-specific benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →