Aurora

Senior Technical Program Manager - Enterprise Security

Job Description

Posted on: 
April 15, 2023

This role sits within the Security Strategy and Programs team. Aurora’s Security Strategy and Programs team’s mission is to develop security strategy and drive security initiatives across all of Aurora. We are searching for a seasoned security professional with expertise in driving company wide technical programs to join us on this mission.

This role specifically is responsible for driving enterprise IT infrastructure security initiatives and programs. This role will function as the bridge between Security, IT Engineering, IT Operations, Developer Operations, Aurora Trucking Operations (Service Delivery) teams to drive adoption and implementation of security controls as needed for different product release milestones.

This role moves effortlessly from high level strategy into tangible action plan adjusted for different stakeholders so that they can execute towards a complex and cross-functional goal. This role will bring in the right set of people as needed to bring specificity and clarity for timely execution of large scale cross-team initiatives. The role will thrive in a dynamic work environment, and is able to prioritize multiple parallel efforts. The role will proactively make efforts to break through communication barriers and develop strong relationships with stakeholders at all levels of the organization.

Responsibilities

  • Establish Security Initiatives and Programs
  • Function as internal product manager for enterprise security capabilities.
  • Identify security gaps, design security controls and develop security programs for Aurora’s enterprise IT infrastructure and operations.
  • Partner closely with Aurora’s IT Engineering, IT Operations, Developer Operations, Aurora Trucking Operations, Communications, Legal and Supply Chain teams to develop execution plans for security initiatives.
  • Build a security support interface between Security and the rest of the company.
  • Drive Security Program Execution and Risks Resolution
  • Drive company wide planning, roadmapping, resourcing of enterprise security and compliance initiatives.
  • Interface with engineering managers and engineers to estimate work efforts, define milestones and manage resources.
  • Track progress, roadblocks and potential risks of enterprise security initiatives and programs.
  • Proactively ask questions to drive clarity in execution dependencies and priorities to push the team to be highly effective.
  • Identify procedural, operational, and communication gaps, manage issue escalations and provide support to teams balancing competing priorities.
  • Proactively remove obstacles to drive momentum and progress.
  • Willingness and ability to dive into problems and document, drive alignment, drive plans and assist with execution.
  • Manage Stakeholders and Communications
  • Establish communication interfaces to keep various levels of stakeholders informed.
  • Publish regular reports on programs KPIs and risks
  • Engage the right stakeholders as needed to enable timely strategic and tactical decision making.

Job Requirements

  • Minimum 7+ years of experience in the capacity of a Technical Program Manager, Product Manager, Engineering Manager or Security Engineer in domains of Security, Compliance or IT.
  • BS in Computer Science, Information Technology or a technical field or equivalent experience
  • Hands-on experience in driving security programs such as identity & access management, detection & response, threat intel, vulnerability management, endpoint/device security, network security or 3rd party risk management.
  • Experience with driving implementation of security standards such ISO 27001, SOC2, NIST 800-171, NIST 800-53 or NIST 800-37.
  • Ability to influence and motivate people across a broad variety of job functions through your relationships.
  • Experience with planning and driving organization wide multi-year engineering initiatives.
  • Experience with driving and managing company wide disruptive changes.
  • Excellent written and verbal communication skills.
  • Experience with creating detailed reporting and dashboards
  • Strong technical, analytical and quantitative skills with the ability to use data and metrics to back up assumptions, recommendations and drive decisions.

Apply now

More job openings