Compliance Enablement Technical Program Manager
Core
Technical Program Manager serving as the subject-matter expert for the Trust and Assurance team, leading compliance automation, control monitoring, and embedding compliance into engineering workflows.
Role type
Senior IC Technical Program Manager (Compliance & GRC)
Builds
Automated compliance controls, evidence collection workflows, and integrations connecting the GRC platform to cloud platforms and internal systems.
Domain
Cybersecurity / Governance, Risk, and Compliance (GRC)
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
GRC and compliance frameworks (NIST 800-53, ISO 27001, SOC 2, FedRAMP), program management, cloud infrastructure reasoning (AWS/Azure/GCP), API interpretation, GRC platform experience (LogicGate, ServiceNow, Drata), AI tool usage in compliance
Preferred skills
Python scripting, AI/ML application development, CI/CD pipelines, cloud security engineering, security monitoring tools (Tenable, Splunk), infrastructure automation (Terraform, Puppet, Jenkins), highly regulated environment experience (SaaS, GovCloud, FinTech), professional certifications (CISSP, CISM, CISA, CCSP, CCSK, ISO 27001 Lead Auditor)
Responsibilities
Act as the technical SME and primary point of contact for the Trust and Assurance team; oversee control mapping, evidence collection, and monitoring workflows; translate technical controls into automated, continuous checks; ensure every control has an accountable owner and maintain an audit-ready state; partner with engineering teams to embed compliance requirements into workflows from the start; manage initiatives through to completion and communicate program progress to stakeholders.
Seniority
Senior, hands-on IC