Technical Program Manager, Security Operations

Onebrief

2h ago 0 views 0 applications
Remote Remote
$180,000 - $220,000
Full-time
Security Operations

Job Description

Join Onebrief: Making Military Staffs Superhuman
Onebrief is revolutionizing how military staffs operate. Our collaboration and AI-powered workflow software boosts speed, intelligence, and efficiency, making the staff as a whole superhuman. We're a remote-first company backed by $123M+ from top-tier investors, including Battery Ventures, General Catalyst, and Insight Partners, and valued at $1.1B. If you're driven to make a real-world impact, especially where it matters most, let's talk.

Technical Program Manager - Engineering

Ready to spearhead critical security remediation efforts at a company scaling rapidly and transforming a vital sector? Onebrief is seeking a highly skilled Technical Program Manager (TPM) to lead the charge in fortifying our infrastructure and product security. You'll be at the forefront, translating compliance findings, vulnerability reports, and risk assessments into actionable engineering initiatives.

In this pivotal role, you'll partner closely with our TPM – Security Compliance, ensuring that remediation tasks are not only meticulously scoped and resourced but also prioritized effectively within our engineering roadmap. You'll play a crucial part in balancing security imperatives with the velocity of ongoing product development. If you thrive in a collaborative environment, possess a strong technical foundation, and excel at driving cross-functional teams toward achieving complex goals, this role is for you.

Your Mission:
Orchestrate Remediation Programs: Own and drive remediation programs stemming from compliance/security assessments, including FedRAMP, SOC 2, CMMC, and NIST RMF.
Translate & Prioritize: Convert vulnerabilities, audit gaps, and technical risks into concrete, actionable engineering projects, ensuring they're prioritized without compromising business objectives.
Cross-Functional Leadership: Collaborate seamlessly with infrastructure, DevOps, product engineering, IT, and cybersecurity teams to ensure timely and effective remediation.
Remove Roadblocks: Proactively track dependencies, eliminate blockers, and provide clear visibility on remediation status across multiple teams.
Executive Reporting: Maintain comprehensive remediation dashboards and reports for executive leadership and auditors.
Proactive Risk Management: Track progress on POA&Ms and escalate potential risks to leadership, ensuring timelines are met.
Process Improvement: Develop and implement workflows to integrate remediation into CI/CD pipelines, enhancing efficiency and security.
Champion Best Practices: Drive the adoption of engineering best practices, including secure coding, automated testing, and efficient patching workflows.
Continuous Improvement: Partner with the TPM – Security Compliance to continuously refine how risks are operationalized and tracked.

What You'll Bring:
Required:
8+ years of experience in engineering program management, technical project management, or related roles.
Proven experience coordinating across infrastructure, product engineering, and IT teams.
Demonstrated ability to translate technical/security requirements into effective engineering execution plans.
Experience managing large-scale remediation or migration programs.
Exceptional organizational, prioritization, and communication skills.

Bonus Points:
Familiarity with FedRAMP, NIST 800-53, SOC 2, or CMMC frameworks.
Hands-on background in software engineering, DevOps, or systems engineering.
Experience with program management tools like Linear, Jira, Confluence, or Asana, and proficiency in creating reporting dashboards.
Relevant certifications such as PMP, PgMP, SAFe, or Agile Program Management.