Назад
Company hidden
12 часов назад

Sr. Technical Program Manager, Cybersecurity Remediation

145 900 - 234 200$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Technical Program Manager, Cybersecurity Remediation (Cybersecurity): Leading end-to-end remediation programs across security, engineering, and business teams with an accent on vulnerability management, risk-based prioritization, and executive reporting. Focus on consolidating findings, managing exceptions and risk acceptance, and driving measurable improvements across complex remediation workstreams.

Location: Cambridge, Massachusetts, United States; 70% in-office work model. Only U.S. persons are eligible due to U.S. export control requirements.

Salary: $145,900–$234,200 annually, with potential bonus, incentive compensation, or equity award.

Company

hirify.global develops mRNA technology and medicines to transform how treatments are created and delivered.

What you will do

  • Lead intake, prioritization, execution, and closure of multiple cybersecurity remediation workstreams.
  • Build and manage a centralized remediation operating model with governance, SLAs, escalation paths, and execution tracking.
  • Translate vulnerability scans, penetration tests, audits, incidents, investigations, and assessments into actionable remediation plans.
  • Maintain the authoritative registry of vulnerabilities, risks, audit findings, and post-incident actions.
  • Manage verification, closure, exceptions, and risk acceptance with appropriate approvals.
  • Report remediation posture, metrics, risks, and systemic trends to executive and board-level audiences.

Requirements

  • Must be eligible as a U.S. person—a U.S. citizen, permanent resident, asylee, or refugee—to access export-controlled information.
  • 8+ years of experience in technical program management, cybersecurity program management, or similar roles.
  • Experience leading complex, cross-functional remediation programs in cybersecurity, infrastructure, or enterprise IT.
  • Strong understanding of vulnerability management, incident response, identity, cloud security, and application security.
  • Experience working with audit findings, risk assessments, penetration tests, and security incidents.
  • Strong stakeholder influence, metrics management, problem-solving, and executive communication skills.

Nice to have

  • Experience with GxP environments, regulatory requirements, vulnerability management platforms, GRC tools, or security reporting systems.
  • Experience with root cause analysis, CAPA management, post-incident reviews, and lessons-learned programs.
  • Background in infrastructure, cloud, or security engineering.
  • Knowledge of NIST, ISO 27001, or CIS security frameworks.
  • Experience scaling remediation or risk management programs and improving processes, tooling, and governance.

Culture & Benefits

  • 70/30 in-office working model focused on collaboration, innovation, teamwork, and mentorship.
  • Healthcare and voluntary benefits, plus fitness, mindfulness, and mental health resources.
  • Family planning support, including fertility, adoption, and surrogacy benefits.
  • Paid time off including vacation, volunteer days, sabbatical, global recharge days, and year-end shutdown.
  • Savings and investment programs, along with location-specific benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →