We connect people and build communities to create economic opportunity for all.
Security TPM
Location
Texas
Posted
3 days ago
Salary
$111.2K - $190.1K / year
Seniority
Senior
Job Description
Security TPM
eBay
• help drive information security onboarding across acquired companies’ applications, infrastructure, and vendor ecosystems. • ensure alignment with corporate information security standards, policies, and industry best practices. • act as a liaison between the security organization, cross-functional partners, and acquired company engineering, IT, compliance, and business teams. • coordinate and collect metrics on key initiatives such as vendor security reviews, IAM/SSO onboarding, infrastructure hardening, PCI compliance, vulnerability management, and security design reviews for critical applications and product launches. • maintain accurate and up-to-date reporting on security integration activities for acquired companies, including status of key initiatives, risks, and remediation efforts. • track and report progress against M&A security roadmaps, milestones, and integration timelines. • produce regular security status reports and dashboards for leadership. • partner with engineering, IT, compliance, and legal teams to support the integration of security requirements into product and infrastructure lifecycles. • communicate security requirements, program timelines, and deliverables to both technical and non-technical stakeholders.
Job Requirements
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience.
- 3+ years of experience managing or supporting security-focused technical projects or programs.
- Experience supporting security initiatives related to cloud security, vulnerability management, infrastructure security, and IAM/SSO.
- Ability to work effectively with cross-functional teams to coordinate tasks, manage multiple priorities, and track project timelines.
- Strong written and verbal communication skills, with the ability to clearly document and communicate security-related information to both technical and non-technical audiences.
- Familiarity with cloud environments such as AWS, GCP, or Azure (preferred).
- Exposure to information security program implementation or compliance management activities (preferred).
- Interest in or pursuit of relevant certifications (e.g., CISSP, CISM, CISA, PMP, or cloud security certifications such as CCSK or CCSP) (preferred).
- Strong problem-solving skills.
Benefits
- full range of medical, financial, and/or other benefits (including 401(k) eligibility and various paid time off benefits, such as PTO and parental leave)
- target bonus
- restricted stock units (as applicable)
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Define the roadmap and drive execution for the bot management solutions to ensure alignment with customer needs and the evolving market landscape. • Lead cross-functional collaboration with engineering, sales, and marketing teams to innovate and bring breakthrough cybersecurity solutions to market. • Engage with global customers to gather feedback, identify market opportunities, analyze competition, and anticipate emerging trends. • Design an intuitive reporting and configuration experience that simplifies complex security operations with actionable, data-driven insights. • Work closely with engineering teams to translate customer requirements into product architecture changes that support complex product initiatives. • Drive architectural decisions that balance detection accuracy, performance, scalability, and customer usability across the platform. • Own and execute the long-term platform strategy for bot management capabilities, ensuring unified efficacy and experience across multiple products and customer environments. • Coordinate priorities and dependencies across platform, detection, and infrastructure teams to successfully deliver complex, large-scale initiatives. • Understand the competitive landscape and monitor industry technology advancements and trends.
• Accountable for the go-to-market product roadmap, strategy, and execution of product launches for our security portfolio. • Lead the development and execution of GTM strategies pre and post launch for product features and updates for retention, acquisition, upsell and cross sell opportunities that drive engagement and adoption. • Partner with our Audience and Vertical Marketing Manager to develop persona-based value proposition and messaging frameworks that will be leveraged both internally and externally for our security response portfolio to drive articulation positioning aligned to GTT’s KPIs. • Work closely with Product Leaders to identify needs and sharpen product offerings based on competitive landscape and feedback from customers. • Partner with our Storyteller to create new and manage existing marketing and sales enablement materials (sales documentation, product videos, website copy, blog posts, data sheets and whitepapers). • Conduct product marketing data analysis by gathering and interpreting data and presenting it in a clear and actionable manner. • Identify GTM success metrics and measure the results of your strategies and initiatives and continue to iterate to maximize results. • Establish clear understanding of our client’s needs, product offerings, and competitive landscape in order to ensure product strategies align with market demand.
• Lead FedRAMP Moderate and CMMC readiness assessments, including system boundary validation and control gap analysis • Design and implement cloud security architectures aligned to NIST 800-53 and NIST 800-171 requirements • Develop and own System Security Plans (SSPs), control narratives, and compliance documentation • Partner closely with client engineering, security, and compliance teams to remediate gaps and implement controls • Drive implementation of technical security measures such as encryption, IAM, logging, continuous monitoring, vulnerability management, and incident response • Advise clients on federal and DoD security mandates, including cryptographic requirements and vulnerability remediation timelines • Update and align security policies and procedures to support FedRAMP and CMMC compliance • Conduct preliminary control testing to validate effectiveness prior to formal assessments • Coordinate with Third-Party Assessment Organizations (3PAOs) and C3PAOs during independent assessments • Support assessment execution, evidence collection, remediation cycles, and authorization package submission • Mentor and review work from other consultants, raising the bar on technical quality and delivery • Conduct interviews with prospective team members, assessing candidate suitability while serving as a brand ambassador for the CSA practice and Riveron • Stay current on emerging risks and evolving control practices • Build and maintain strong industry relationships to support long-term business development
Staff Security Engineer
SmarterDxImproving clinical and financial outcomes with physician-validated AI for documentation and coding.
• Own our approach to AI and agentic security: guardrails for agentic access to cloud and data, and the security of the AI and ML workloads in our product. • Publish the org's AI-security standard and drive its adoption by other engineering teams. • Own our detection platform (Panther): detection strategy and coverage across cloud, container, and SaaS log sources, and the standards that keep detections high-signal as we grow. • Own incident-response readiness: the plan, the playbooks, and tested tabletops tied to the HIPAA breach-notification timeline, and help lead response when a real incident happens. • Lead complex security work across teams from start to finish, resolving ambiguity and coordinating with Platform, Engineering, and Compliance. • Act as the senior security resource across cloud security and security reviews, and the security expert other engineering teams seek out for guidance on high-stakes decisions. • Mentor teammates who are growing their security depth, set team standards for detection authoring and code review, and help raise our interview and hiring bar. • Build and grow security automation that gives a small team more reach, and contribute to the tooling the team runs on. • Take part in architecture reviews and threat modeling on our highest-risk designs, and communicate the resulting security architecture so the whole team can understand it and build on it.




