Senior Technical Program Manager, Product Security

Not Interested
Bookmark
Report This Job

profile Job Location:

Redwood City, CA - USA

profile Monthly Salary: $ 190000 - 261800
Posted on: Yesterday
Vacancies: 1 Vacancy

Job Summary

The Chan Zuckerberg Initiative was founded in 2015 by Priscilla Chan and Mark Zuckerberg to help solve some of societys toughest challenges from curing or preventing disease to improving education and addressing the needs of our local communities. We provide the operational support across our areas of work.

The Team

Across our work in Science Education and within our communities we pair technology with grantmaking impact investing and collaboration to help accelerate the pace of progress toward our mission. Our Operations organization provides the support needed to push this work forward.

Operations consists of our Brand & Communications Central Tech Finance People Real Estate/Workplace/Events/Facilities/Security (REWFS) Strategy & Operations and Ventures teams. These teams provide the essential operations services and strategies needed to support CZIs progress toward achieving its mission to build a better future for everyone.

The Opportunity

We are seeking a Technical Program Manager with expertise in Application Security specifically in identifying vulnerabilities and then scoping and implementing novel solutions to eliminate those weaknesses at scale. We dont just identify and fix security vulnerabilities - we go beyond by creating paved roads and secure frameworks to avoid security vulnerabilities in the first place. You will be expected to operate using in-depth subject-matter knowledge at a technical level with developers and engineers across large organizations. Your security and development experience will be relied upon to provide secure foundations to the application and infrastructure teams that underpin the CZI Enterprise.

The role will help shape the product and application security that protects scientific and educational innovation at the Chan Zuckerberg Initiative Biohub and Learning Commons. Youll work alongside a dynamic team of engineers Product Managers and Security Professionals building shared tools and platforms that support a diverse group of Research Scientists Data Scientists AI Researchers and Engineers tackling some of the worlds most complex problems. As part of the Information Security team your work will directly impact all of CZIs initiatives by ensuring the security and scalability of the technology solutions that drive our mission forward.

What Youll Do

  • Conceive design develop and improve industry-leading security tooling automation architecture and/or frameworks that enable enterprise teams at scale to deliver applications and services with appropriate security controls to meet evolving requirements for security and privacy
  • Identify and eliminate classes of security problems by shifting detection and prevention left into the development workflow
  • Provide just-in-time actionable technical security guidance to enterprise application and service teams
  • Ensure prioritization resourcing and timely delivery of work within a changing business environment
  • Collaborate with cross-functional teams to ensure security work is being prioritized and addressed
  • Drive end-to-end execution of technical security projects including requirements gathering scoping status updates and delivery milestones.
  • Establish and report metrics to track compliance program health and ongoing risk posture.
  • Coordinate with third-party vendors and auditors to augment internal security capabilities
  • Serve as a subject matter expert on infrastructure architecture and application security offering guidance to technical and non-technical stakeholders.
  • Support security reviews threat modeling and incident response efforts for applications and production infrastructure.

What Youll Bring

  • 5 years of technical program management or equivalent experience with a specific focus on security or application security.
  • Demonstrated proficiency with secure SDLC processes and best practices for integrating security throughout the software development lifecycle.
  • Hands-on experience designing and managing security controls within CI/CD pipelines using automation frameworks to enable secure code delivery and rapid remediation.
  • Familiarity with threat modeling static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.
  • Deep understanding of DevSecOps principles security automation and infrastructure-as-code security.
  • Experience driving the adoption of vulnerability management architectural best practices and incident response for cloud-native and distributed applications.
  • Knowledge of container security (Docker Kubernetes) microservices architectures and cloud platform security (AWS Azure GCP).
  • Experience leading end-to-end security architecture design and governance across complex cloud-native and hybrid enterprise environments aligning security capabilities to business and risk objectives.
  • Proven ability to define and maintain reference architectures security patterns and control standards spanning network identity data protection and application security domains.
  • Skilled in conducting architecture risk assessments and design reviews ensuring new and existing solutions meet zero trust defense-in-depth and compliance requirements in regulated industries.

Compensation

The Redwood City CA base pay range for a new hire in this role is $190000.00 - $261800.00. New hires are typically hired into the lower portion of the range enabling employee growth in the range over time. Actual placement in range is based on job-related skills and experience as evaluated throughout the interview process.

Better Together

As we grow were excited to strengthen in-person connections and cultivate a collaborative team-oriented environment. This role is a hybrid position requiring you to be onsite for at least 60% of the working month approximately 3 days a week with specific in-office days determined by the teams manager. The exact schedule will be at the hiring managers discretion and communicated during the interview process.

Benefits for the Whole You

Were thankful to have an incredible team behind our work. To honor their commitment we offer a wide range of benefits to support the people who make all we do possible.

  • Provides a generous employer match on employee 401(k) contributions to support planning for the future.
  • Paid time off to volunteer at an organization of your choice.
  • Funding for select family-forming benefits.
  • Relocation support for employees who need assistance moving

If youre interested in a role but your previous experience doesnt perfectly align with each qualification in the job description we still encourage you to apply as you may be the perfect fit for this or another role.

#LI-Hybrid


Required Experience:

Manager

The Chan Zuckerberg Initiative was founded in 2015 by Priscilla Chan and Mark Zuckerberg to help solve some of societys toughest challenges from curing or preventing disease to improving education and addressing the needs of our local communities. We provide the operational support across our areas...
View more view more

Key Skills

  • Project Management Methodology
  • Project / Program Management
  • Program Management
  • Management Experience
  • Microsoft Powerpoint
  • Project Management
  • Microsoft Project
  • Budgeting
  • DoD Experience
  • Leadership Experience
  • Supervising Experience
  • Contracts

About Company

Company Logo

The Chan Zuckerberg Initiative (CZI) is a new kind of philanthropy that’s on a mission to help build a more inclusive, just and healthy future for everyone.

View Profile View Profile