Manager, Security Engineering Program Manager, Risk & Vulnerability Management, Apple Services Engineering
Seattle, OR - USA
Job Summary
As a Security Engineering Program Management leader in ASE you are both a people leader and a functional expert in security risk and vulnerability management at scale. While working directly with ASEs Risk u0026 Vulnerability Management team security engineering and service owners across Apple you and your team will turn risk and vulnerability data into prioritized well-run programs that measurably reduce risk. This will include scaling the Vulnerability Management program driving remediation efforts across the organization managing the delivery of security controls guardrails and frameworks that help protect our customers data in Apples infrastructure and giving leadership clear visibility into our risk posture. This is a hands-on leadership role: you will stay close to the details of your programs while growing a team of program managers and shaping how security risk work gets done across ASE. You and your team will be responsible for identifying planning and delivering program security outcomes by engaging a broad set of internal and external stakeholders.
Build and lead a team of Security Engineering Program Managers through hiring coaching and career development helping both early-career and experienced team members do their best an inclusive team culture of accountability and continuous learning where different perspectives are sought out and valued with clear priorities expectations and regular actionable and operationalize risk and vulnerability management programs owning end-to-end delivery of multiple concurrent programs including scope requirements timelines and with the Risk u0026 Vulnerability Management team and engineering leaders to build roadmaps and turn priorities into executable cross-functional dependencies risks and changes effectively by optimizing scope schedule and resources data to identify recurring themes surface high-impact opportunities to reduce security risk and drive and report on program health success metrics and active progress including remediation progress and risk reduction over and own communication plans to proactively share program status issues and risk posture with stakeholders at all levels including senior consensus while navigating ambiguity influencing peers and stakeholders without direct how security programs are planned and run across ASE by iterating on processes frameworks and metrics that scale.
8 years of experience in technical program management including 4 years managing projects or programs in the field of security OR a combination of 4 years of program management and 4 years in a related field such as security engineering vulnerability management risk management or engineering leadership.n3 years of experience managing people such as a team of program managers engineers or other technical Leadership: Experience hiring coaching and developing team members at different stages of their Management: Proficiency in managing complex projects including defining scopes setting timelines and coordinating cross-functional teams to ensure timely and successful Management Skills: Ability to use data to identify assess and prioritize security risks and to communicate appropriate mitigation strategies to protect organizational Proficiency: A solid understanding of software development systems engineering or related technical fields to effectively oversee vulnerability management and remediation : BS in Computer Science Computer Engineering or other technical field or equivalent industry experience n
Build Trust and Influence: Experience fostering collaboration and influencing stakeholders without direct authority to achieve program Skills: Ability to convey complex technical information to both technical and non technical audiences including executive and senior leadership with clarity confidence and What Matters: Able to focus and simplify balancing the details with goals priorities and trade-offs in building or scaling a vulnerability management or security risk management with vulnerability prioritization and risk assessment practices such as CVSS or similar scoring with cloud using data visualization tools such as Tableau to report on program health and risk with applying AI tools to program management or security in talent development succession planning or organizational certifications in security or risk management (e.g. CISSP CISM CRISC) or equivalent experience.
Required Experience:
IC
About Company
Ask Siri to name the most successful company in the world and it might respond: Apple. And it's not just out of familial pride. Apple consistently ranks highly in profit, revenue, market capitalization, and consumer cachet. In 2018, the company became the first reach a trillion dollar ... View more