Назад
Company hidden
обновлено 9 дней назад

Security Technical Program Manager

138 000 - 156 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Technical Program Manager (Vulnerability Management/Security Operations): Leading vulnerability management and security operations programs across security, infrastructure, R&D, GRC, and risk with an accent on centralized scorecards, detection coverage, secure SDLC controls, and AI-enabled workflows. Focus on coordinating multi-quarter roadmaps, automating evidence collection and security-health metrics, and delivering remediation, audit, and regulatory commitments across complex stakeholder groups.

Location: Hybrid role based in Denver, Colorado, or the San Francisco Bay Area; office attendance is expected approximately 2–3 days per week or more depending on the role.

Cash compensation: $138,000–$156,000 annually in Denver or $168,000–$189,000 annually in the San Francisco Bay Area. Stock equity is additional.

Company

hirify.global provides payroll, health insurance, 401(k), and HR products for more than 500,000 small businesses.

What you will do

  • Define the strategy, roadmap, prioritization, and delivery model for vulnerability management and security operations.
  • Lead centralized vulnerability management across code, cloud, data, and edge, including CSPM/DSPM, container scanning, dependency and secrets detection, and owner-based remediation.
  • Expand security operations coverage through high-risk detection and alerting, SIEM integration, privileged-access and impersonation logging, insider-risk telemetry, and agentic-activity logging.
  • Build security-health and vulnerability-management dashboards, monthly reporting, and leadership metrics.
  • Deliver AI-enabled workflows for coverage checks, evidence collection, control updates, and program artifacts.
  • Manage scope, dependencies, milestones, risks, budgets, vendors, stakeholder communications, and audit or regulatory commitments.

Requirements

  • 5–8+ years leading cross-functional technical program management or delivery work.
  • Professional experience in security, infrastructure, or platform engineering.
  • Experience taking ambiguous programs from definition through delivery in regulated environments.
  • Strong knowledge of vulnerability management and security operations, including scanning coverage, remediation SLAs, detection engineering, SIEM or monitoring, identity, and privileged access.
  • Ability to collaborate across security engineering, infrastructure, GRC, R&D, and risk teams.
  • Experience using AI plugins in everyday program delivery and helping others adopt similar workflows.

Nice to have

  • Familiarity with Wiz, Axonius, dependency and secret scanning, Panther, Opal, or similar security tooling.
  • Hands-on experience with AI clients and MCP plugins.
  • Knowledge of SOC 1/2, ISO 27001, and secure SDLC practices.
  • PM certification such as PMP, CAPM, Scrum, or Prosci.
  • Experience in high-growth fintech or another regulated, fast-paced industry.

Culture & Benefits

  • Full-time employees receive base pay, benefits, and RSU equity.
  • AI tools are a fundamental part of how work is performed across the company.
  • Hybrid office work is supported from hirify.global offices in Denver, San Francisco, and New York City.
  • A secure, reliable, and consistent internet connection is required when working outside a hirify.global office.
  • hirify.global supports an inclusive workplace and provides reasonable accommodations during the hiring process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →