Share
just about whatwe do—
Integrated Risk Managementwork. Instead, theyrequireTPMs who can support a broad range of cybersecurity initiatives across the enterprise—from risk management and compliance automation to security operations and technical delivery.
highly desirable.
Primary Responsibilities
Lead and manage cross-functional cybersecurity programs across OCISO, including but not limited to GRC, ServiceNow IRM, security operations, third-party risk, and compliance automation.
Collaborate with engineering, product, and business stakeholders to define, prioritize, and deliver technical solutions.
Present complex technical challenges and resolutions to leadership and stakeholders.
Drive enhancements and automation within platforms like ServiceNow IRM, while also contributing to broader cybersecurity initiatives.
Develop and track KPIs/KRIs using dashboards and data visualization tools.
Stay current on regulatory and industry standards (e.g., FedRAMP, GDPR, PCI-DSS, NIST 800-53, ISO 27001) to inform risk and control strategies.
Launch and manage cybersecurity risk assessments and remediation efforts.
Build strategies for issue and risk mitigation, contingency planning, and compliance adherence.
Demonstrate ownership and autonomy in managing programs and delivering high-quality results.
Knowledge, Skills, and Abilities
Experience working on an Information Security or Cybersecurity team.
Strong program and project management skills with a deep understanding of security and audit frameworks (e.g., NIST CSF, SOC 2, PCI, ISO).
Ability to bridge the gap between Product, Engineering, and Architecture tofacilitatesolutions.
Excellent communication, stakeholder engagement, and organizational skills.
Technical credibility to engage with engineers and understand infrastructure, cloud, and network security.
Experience with ServiceNow IRM or similar GRC platforms is a plus—but not the sole focus.
Ability to influence across teams and drive alignment in a complex, matrixed environment.
Comfortable navigating ambiguity and solving complex problems with a proactive mindset.
Qualifications
Bachelor’s degree in Computer Science, Information Technology, or a related field.
7+ years of experience in IT Risk Management, Cybersecurity, or related fields.
5+ years in a Technical Program Manager or similar role.
Preferred certifications: CISSP, CISM, CRISC, CISA, CGEIT, PMP.
Work Environment
Remote-friendly with occasional travel (~5–10%).
May require occasional on-call availability and work outside standard hours.
Duties performed in a typical office environment with standard computer and communication tools.
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
The annual base pay for this position is: $114,400.00 - $171,600.00These jobs might be a good fit