Role: Technical Program Manager (TPM)
Location: US (remote) – PST timezone
Domain: Security, Cloud, Networking
Job Summary
We are seeking a Technical Program Manager (TPM) to drive strategic security initiatives within the Security Office. This role involves managing and structuring programs, sub-projects, execution roadmaps, and dashboards for monitoring critical security initiatives. The TPM will play a key role in security program governance, risk management, executive reporting, and cross-functional coordination across teams.
Key Responsibilities
Executive Readout Preparation & Delivery
Develop and deliver state of device security reports to executive stakeholders.
Lead Quarterly Quality Readout (QQR) preparation, ensuring insights on security performance and risks.
Program Quarterly Planning & Roadmap Execution
Oversee ongoing roadmap execution, scoring the state of all security objectives.
Report monthly risks for all teams within the Device Security Office (DSO).
Normalize themes in the risk register and incorporate service maturity risks.
Define top-level Key Results (KRs) and align them with Business Unit (BU) CISOs.
Share Objectives & Key Results (OKRs) with key stakeholders.
Maintain a comprehensive service catalog covering services from all functional teams.
Secure Development Lifecycle (SDL) Program Management
Oversee cloud-managed device security tracks and risk management.
Drive Secure by Design integration into PDM commits.
Manage SDL security insights tracking for product security improvements.
Oversee Threat Modeling solution integration into New Product Introduction (NPI) review processes.
Hardware Bug Bounty Program Management
Define and maintain program structure and governance.
Lead cross-functional coordination, ensuring effective communication between:
Security researchers
Internal hardware/security teams
Manage the triage and prioritization process for reported vulnerabilities.
Oversee researcher engagement to foster productive collaborations.
Implement risk management processes by registering confirmed risks in collaboration with security engineers and software engineers.
Required Qualifications