With Primary Care. For Primary Care.
Senior Technical Program Manager, Security
Location
District Of Columbia
Posted
3 days ago
Salary
0
Seniority
Senior
Job Description
Senior Technical Program Manager, Security
Aledade, Inc.
• Diagnose, prioritize, and drive security program maturity • Assess the current state with clear eyes: identify what’s working, what’s underdeveloped, and what needs to be rebuilt • Build a prioritized, multi-quarter roadmap that sequences risk reduction against business reality — without waiting to be handed a problem statement • Establish governance, ownership, and metrics that make the portfolio legible and actionable across security leadership, engineering leadership, and executives • Hold the line on outcomes — not activity or artifacts. • Translate security requirements into engineering practice • Make security by design the operating standard: shift-left practices, threat modeling, architecture review, and controls embedded into how teams plan and ship • Own the intersection of what security requires and what engineering can build — and move both sides toward it, fluently • Remove the blockers that sit between security intent and engineering execution • Build the habits and structures that outlast any individual program or initiative • Own the compliance surface without losing sight of real risk • Translate HIPAA, financial controls, and governance requirements into resilient programs that reduce actual exposure and scale — not just satisfy milestone audits • Sequence compliance investments against where the company is going, not just where it’s been • Build the evidence frameworks, metrics, and operational readiness that hold up under real scrutiny at scale • Shape the AI security framework before it becomes a crisis • Synthesize Aledade posture about AI risk, guardrails, and governance as AI becomes embedded in how we work and what we build • Build the scaffolding — principles, review processes, accountability structures — that gives others a framework to execute against • Operate with conviction in a space where the industry is still writing the rules • Drive alignment across a complex, high-stakes intersection • Operate at the seam between security, engineering, compliance, legal, and finance — without owning any of the headcount • Eliminate toil that crushes effectiveness of the subject matter experts around you by clearing the path, not walking it for them • Surface what’s being normalized that shouldn’t be — the risks deferred, the gaps unnamed, the programs that exist only on paper • Drive evidence-based decisions that stick — from architecture, through build, to the risk level with executives • Full-stack program leadership: equally at home in an architecture review, a compliance audit, a risk conversation with the CTO, and a sprint planning session with an engineering team
Job Requirements
- 10+ years in technical program management at Staff-level scope — cross-org, ambiguous, high-stakes security programs
- Deep security domain fluency: frameworks, controls, HIPAA and financial-specific obligations, risk management — and how all of it maps to real engineering decisions
- Technical judgment strong enough to question the status quo, challenge architectural decisions, and identify real risk versus inherited noise
- Proven track record of transforming security programs — advancing maturity, closing gaps, and positioning programs for where the business is going
- Influence without authority across senior security, engineering, compliance, and executive stakeholders
- Outcomes orientation: risk reduction and program maturity
Benefits
- Flexible work schedules and the ability to work remotely are available for many roles
- Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
- Robust time-off plan (21 days of PTO in your first year)
- Two paid volunteer days and 11 paid holidays
- 12 weeks paid parental leave for all new parents
- Six weeks paid sabbatical after six years of service
- Educational Assistant Program and Clinical Employee Reimbursement Program
- 401(k) with up to 4% match
- Stock options
- And much more!
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Lead BetterHelp’s security engineering strategy, with offensive security as the foundation • Operate with a red team / attacker mindset, identifying vulnerabilities across applications, infrastructure, and internal systems • Direct and evolve the company’s red team capabilities, including penetration testing, code review, and vulnerability discovery • Provide oversight and guidance across: • Partner closely with Engineering to embed security into the software development lifecycle (SDLC) • Strengthen processes around vulnerability management, detection, and response • Build and improve offensive security tooling and capabilities, complementing external programs like Bugcrowd • Help reduce technical debt and improve system resilience through proactive security practices • Identify and address emerging threats, including AI security risks • Mentor and guide a strong team, setting a high bar for technical rigor and impact
• Konzeption und Implementierung individueller Microsoft Security-Lösungen • Begleitung komplexer IT-Security-Projekte von der Analyse bis Nachbetreuung • Entwicklung und Etablierung von Best Practices im Microsoft Security-Umfeld • Enge Zusammenarbeit mit Microsoft zur Bewertung neuer Security-Technologien • Mitgestaltung des Cybersecurity-Portfolios mit Fokus auf Innovation und Kundennutzen • Förderung von Wissenstransfer und fachlicher Weiterentwicklung durch Coachings
• Lead technical security conversations with customer-side security teams, including security officers, CISOs, and IT stakeholders, to address concerns and validate Wrike’s security capabilities • Support Sales teams by proactively identifying and resolving security-related objections that may impact deal progression • Help drive business growth by promoting Wrike’s premium security features, such as Wrike Lock and data residency offerings, and demonstrating how they align with customer needs • Contribute to larger deal sizes by positioning security as a strategic part of the customer’s buying decision • Complete security questionnaires, RFPs, and customer security portal assessments with speed and accuracy • Use internal AI tools and knowledge bases to deliver high-quality, consistent responses to technical security inquiries • Quickly learn and follow internal security workflows and processes to ensure a smooth experience for internal stakeholders and customers • Partner closely with the core Security team to stay aligned on product updates, vulnerabilities, and roadmap developments • Collaborate with Sales and Customer Success teams through regular follow-ups and ongoing support before and after the sale • Share customer feedback and recurring security needs with Product and Security teams to help shape future security improvements • Contribute to process improvements that enhance how Wrike manages security inquiries and customer interactions
Senior Security Researcher II
CrowdStrikeCrowdStrike has redefined security with the world’s most advanced cloud-native platform that protects and enables the people, processes and technologies that drive modern enterprise. Tested and proven, the world's largest organizations trust CrowdStrike to stop breaches with unparalleled protection against the most sophisticated cyberattacks. The CrowdStrike culture has been built upon our Core Values since the day we began. We are Fanatical About the Customer, Relentlessly Focused on Innovation and believe that our Limitless Passion drives Unlimited Potential for every CrowdStriker. As a purpose-built remote-first company, we believe cultivating a connected culture for every employee, no matter where they are in the world, is a key ingredient in building a high-performing, diverse team. We don’t have a mission statement. We’re on a mission—to stop breaches. Ready to join a mission that matters?
• Develop automated solutions for collecting, processing and analyzing data at scale, e.g. Vendor patch processing and analysis • Identification of exploits in large file collections • Identification of browser exploits • Identification of malicious infrastructure • Perform vulnerability research on a wide variety of targets, e.g. Analyze vendor patches to identify vulnerabilities and develop proof-of-concept exploits • Review evidence of malicious activities (e.g. log files, payloads) to confirm exploitation of 0-day and n-day vulnerabilities, identify root causes and reproduce exploits • Identify new vulnerabilities in applications or products • Collaborate across other teams at CrowdStrike Intelligence and beyond to reproduce emerging vulnerabilities and provide actionable technical information • Inform on information security topics • Satisfy unique technical collection requirements • Publish research results on the CrowdStrike blog or at conferences




