Назад
Company hidden
21 час назад

Technical Program Manager (Security)

158 284 - 197 855$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Technical Program Manager (Security) (Cloud and Application Security): Leading vulnerability management, code scanning, dependency management, and image hardening programs across a multi-cloud engineering environment with an accent on security automation, risk assessment, and cross-functional delivery. Focus on building proactive security roadmaps with AI, integrating shift-left security practices, and driving remediation of code and infrastructure vulnerabilities.

Location: Hybrid, based out of the Denver or Oakland office in the United States

Salary: $158,284–$197,855 USD annually for the Oakland location

Company

hirify.global builds automated data pipelines that move data across systems, clouds, engines, and tools to support analytics, AI, and data-driven decision-making.

What you will do

  • Lead the engineering security vulnerability management program across infrastructure, code, and dependencies.
  • Coordinate with Security and Engineering teams to identify, prioritize, patch, and remediate vulnerabilities.
  • Evaluate security tools, improve processes, and drive automation for faster vulnerability resolution.
  • Run dependency management, image hardening, and code scanning programs across infrastructure, engineering, and security teams.
  • Use AI for risk assessment, proactive security roadmaps, and remediation of code and infrastructure vulnerabilities.
  • Assess business systems for vulnerabilities and compliance gaps, and establish scanning plans, access policies, and shift-left security practices.

Requirements

  • More than 5 years of technical program management experience focused on security engineering, vulnerability management, cloud security, and application security.
  • Experience delivering complex security initiatives using program management methodologies and best practices.
  • Strong understanding of application and infrastructure security, data privacy, threat modeling, vulnerability management, and secure SDLC practices.
  • Knowledge of network security, encryption, authentication, authorization, OWASP principles, OWASP Top 10, and ASVS.
  • Hands-on experience with SAST/DAST tools, firewalls, IDS/IPS technologies, security orchestration automation, and scripting for security processes.
  • Ability to research and validate vulnerabilities, develop remediation strategies, and collaborate with product, SRE/QE, development, and security teams.

Culture & Benefits

  • Employer-paid medical insurance, with terms varying by country and worker type.
  • Paid time off, sick leave, inclusive parental leave, holidays, a year-end Global Week of Rest, and volunteer days.
  • RSU stock grants and professional development and training opportunities.
  • Monthly cell phone stipend and mental health support for covered employees and dependents.
  • Team-building activities, virtual events, and free food.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →