We are seeking a highly skilled and motivated Technical Program Manager to join our Engineering Operations team. This role will focus on overseeing the end-to-end management of cybersecurity vulnerabilities within our organization. You will work closely with engineering teams, security teams, and leadership to manage remediation efforts, track vulnerabilities, and escalate risks to ensure that our cybersecurity posture remains strong and resilient. The ideal candidate will have a technical background in cybersecurity, strong program management skills, and experience working with cross-functional teams.
Key Responsibilities:
-
Manage Cybersecurity Vulnerabilities: Oversee and track the identification, classification, and remediation of cybersecurity vulnerabilities across systems and platforms, ensuring timely and effective resolution.
-
Program Management: Develop and manage a comprehensive program to address vulnerabilities, creating and maintaining a detailed Jira plan for all ongoing remediation efforts.
-
Stakeholder Coordination: Collaborate with Engineering, Security, and Operations teams to prioritize and track vulnerability remediation efforts. Ensure all stakeholders are aligned and informed on progress, timelines, and risks.
-
Risk Escalation: Identify and assess risks associated with ongoing vulnerabilities and escalation paths to senior Engineering and CISO leadership for critical issues that need immediate attention or resources.
-
Reporting and Documentation: Provide regular updates to leadership on vulnerability status, remediation progress, risk assessments, and any emerging trends or challenges.
-
Continuous Improvement: Drive improvements in vulnerability management processes, tools, and workflows to increase efficiency, reduce risk exposure, and enhance the overall security posture of the organization.
-
Cross-functional Collaboration: Work closely with teams across the organization, including Engineering, IT, and Security Operations, to ensure alignment on goals and effective execution of remediation plans.
-
Incident Response: Support the team with incident management as needed, assisting in prioritizing vulnerability remediations based on real-time threat intelligence and operational needs.
Required Qualifications:
-
Experience with security automation tools and vulnerability management platforms.
-
Familiarity with cloud security (AWS, Azure, GCP) and securing modern, distributed applications.
-
Knowledge of incident response and threat intelligence.
-
Bachelor's degree in Computer Science, Information Security, Engineering, or related field (or equivalent experience).
-
5+ years of experience in a technical program management role, preferably in cybersecurity or related domains.
-
Proven experience managing cybersecurity vulnerabilities, risk assessments, and remediation processes.
-
Strong technical understanding of cybersecurity frameworks, vulnerability management, and remediation techniques.
-
Proficiency with Jira, Confluence, or similar project management tools for planning and tracking remediation efforts.
-
Excellent communication skills with the ability to clearly articulate technical issues to non-technical stakeholders and escalate risks to senior leadership.
-
Experience working with cross-functional teams and managing complex technical projects.
-
Knowledge of industry standards and best practices for vulnerability management (e.g., NIST, CVSS, OWASP).
-
2-5 years of Program Management experience in a high-tech organization successfully delivering large, distributed enterprise Agile projects, including dependency mapping, project delivery sequencing, ability to understand both high level and low-level project delivery details. Experience delivering enterprise level customer programs/projects is a plus.
-
Exceptional track record of setting and achieving detailed program/project goals.
-
Strong analytical, problem-solving skills, and makes data-driven decisions.
-
High initiative and passion for helping teams continuously improve program/project delivery.
-
Development experience in Java based web applications and micro services is preferred.
-
Track record of managing executive level escalations and collaborating across the org to perform RCAs.
Benefits and Compensation listed vary based on the location of your employment and the nature of your employment with SailPoint.
As a part of the total compensation package, this role may be eligible for the SailPoint Corporate Bonus Plan or a role-specific commission, along with potential eligibility for equity participation. SailPoint maintains broad salary ranges for its roles to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect SailPoint’s differing products, industries, and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. We estimate the base salary, for US-based employees, will be in this range from (min-mid-max, USD):
$124,250 - $177,500 - $230,750
Base salaries for employees based in other locations are competitive for the employee’s home location.
Benefits Overview
1. Health and wellness coverage: Medical, dental, and vision insurance
2. Disability coverage: Short-term and long-term disability
3. Life protection: Life insurance and Accidental Death & Dismemberment (AD&D)
4. Additional life coverage options: Supplemental life insurance for employees, spouses, and children
5. Flexible spending accounts for health care, and dependent care; limited purpose flexible spending account
6. Financial security: 401(k) Savings and Investment Plan with company matching
7. Time off benefits: Flexible vacation policy
8. Holidays: 8 paid holidays annually
9. Sick leave
10. Parental support: Paid parental leave
11. Employee Assistance Program (EAP) and Care Counselors
12. Voluntary benefits: Legal Assistance, Critical Illness, Accident, Hospital Indemnity and Pet Insurance options
13. Health Savings Account (HSA) with employer contribution
SailPoint is an equal opportunity employer and we welcome everyone to our team. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.