CareerPlanSign in

HCM - Senior Security Program Manager

Los Altos, CA, Ho Chi Minh City, Viet Nam💼 Full-time🗓 2026-09-20 → 2026-09-25

Core

Own the operational backbone of security and compliance programs including audits, vulnerability SLAs, policy lifecycle, vendor risk, and customer security reviews to enable enterprise deals.

Role type

Senior IC Security Program Manager

Builds

Compliance artifacts, vulnerability dashboards, policy frameworks, vendor risk inventories, and customer security response materials.

Domain

B2B SaaS, Enterprise Security, GRC

Deliverable

production ML models | product features | dashboards & analysis | client delivery | infrastructure

Required skills

ISO 27001 audit management, SOC 2 audit management, Vanta platform expertise, vulnerability management program ownership, policy lifecycle management, vendor risk assessment, customer security questionnaire response, risk register maintenance, incident runbook management

Preferred skills

AI/ML security experience, browser-based product security, additional framework certification (HIPAA, FedRAMP, ISO 27017/27018, C5), pen-test coordination, bug bounty program management

Technologies

Vanta, Drata, Tugboat

Responsibilities

Maintain ISO 27001 and prepare for SOC 2 Type 1/2 certifications, manage auditor relationships and evidence collection, oversee vulnerability SLAs and breach escalation, manage policy reviews and training rollout, handle vendor risk inventory and assessments, represent security posture to enterprise customers, update Terms of Service and Privacy Policy, maintain risk register and run tabletop exercises

Seniority

Senior, hands-on IC

Sourced via dover · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.