12 часов назад
Sr. Technical Program Manager, Cybersecurity Remediation
145 900 - 234 200$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Technical Program Manager, Cybersecurity Remediation (Cybersecurity): Leading end-to-end remediation programs across security, engineering, and business teams with an accent on vulnerability management, risk-based prioritization, and executive reporting. Focus on consolidating findings, managing exceptions and risk acceptance, and driving measurable improvements across complex remediation workstreams.
Location: Cambridge, Massachusetts, United States; 70% in-office work model. Only U.S. persons are eligible due to U.S. export control requirements.
Salary: $145,900–$234,200 annually, with potential bonus, incentive compensation, or equity award.
Company
develops mRNA technology and medicines to transform how treatments are created and delivered.
What you will do
- Lead intake, prioritization, execution, and closure of multiple cybersecurity remediation workstreams.
- Build and manage a centralized remediation operating model with governance, SLAs, escalation paths, and execution tracking.
- Translate vulnerability scans, penetration tests, audits, incidents, investigations, and assessments into actionable remediation plans.
- Maintain the authoritative registry of vulnerabilities, risks, audit findings, and post-incident actions.
- Manage verification, closure, exceptions, and risk acceptance with appropriate approvals.
- Report remediation posture, metrics, risks, and systemic trends to executive and board-level audiences.
Requirements
- Must be eligible as a U.S. person—a U.S. citizen, permanent resident, asylee, or refugee—to access export-controlled information.
- 8+ years of experience in technical program management, cybersecurity program management, or similar roles.
- Experience leading complex, cross-functional remediation programs in cybersecurity, infrastructure, or enterprise IT.
- Strong understanding of vulnerability management, incident response, identity, cloud security, and application security.
- Experience working with audit findings, risk assessments, penetration tests, and security incidents.
- Strong stakeholder influence, metrics management, problem-solving, and executive communication skills.
Nice to have
- Experience with GxP environments, regulatory requirements, vulnerability management platforms, GRC tools, or security reporting systems.
- Experience with root cause analysis, CAPA management, post-incident reviews, and lessons-learned programs.
- Background in infrastructure, cloud, or security engineering.
- Knowledge of NIST, ISO 27001, or CIS security frameworks.
- Experience scaling remediation or risk management programs and improving processes, tooling, and governance.
Culture & Benefits
- 70/30 in-office working model focused on collaboration, innovation, teamwork, and mentorship.
- Healthcare and voluntary benefits, plus fitness, mindfulness, and mental health resources.
- Family planning support, including fertility, adoption, and surrogacy benefits.
- Paid time off including vacation, volunteer days, sabbatical, global recharge days, and year-end shutdown.
- Savings and investment programs, along with location-specific benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 часа назад
Sr. Manager, Threat Engineering (Cybersecurity)
165 000 - 200 000$
19 часов назад
IT Security Manager - Customer Trust & Assurance (Cybersecurity)
118 300 - 207 400$
7 дней назад
Risk Cyber Internal Audit Manager (Cybersecurity)
138 000 - 172 500$
7 дней назад
Cyber Strategy & Management Manager (Cybersecurity)
161 920 - 202 400$
4 дня назад
Sr. Security Engineer (Cybersecurity)
155 000 - 187 000$
5 дней назад
Principal Cybersecurity Engineer (US Federal)
184 800 - 277 200$