Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the role: Replit is building the security GRC function that will scale with an AI-native product. As the Risk & Compliance lead, you'll own our certification and audit program end to end: SOC 2, ISO 27001, and eventually ISO 42001 (AI management systems), while also owning the company's master security risk register and continuous compliance monitoring. You'll report to the Head of Security GRC, who retains overall accountability for the risk program, and work closely with Engineering to make sure controls hold up in practice, not just on paper. What You'll Do Own the end-to-end certification roadmap (SOC 2 Type II, ISO 27001, and future frameworks like ISO 42001) including scoping, gap assessments, remediation, and audit execution Manage relationships with external auditors and drive the annual audit calendar so certifications renew without last-minute scrambles Own and maintain the company's master security risk register including risk identification, scoring methodology, treatment plans, and residual risk reporting Build and maintain continuous compliance monitoring so control status reflects real-time state rather than point-in-time snapshots Own the core audit artifacts that back every certification including ISMS documentation, Statements of Applicability, risk assessments, and potentially FedRAMP System Security Plans (SSPs) Run regular audits and readiness assessments, and track remediation of findings and control gaps to closure Support GDPR and broader privacy compliance alongside the Legal/Privacy team, without owning the legal interpretation of requirements Partner with the GRC Engineer to define what evidence collection and control monitoring should be automated versus manually reviewed Track and
Jobs in United States
Lead Lead Security Technical Program Manager Manager Specialist in United States
15 active opportunities · Updated September 2026
Showing
15 jobs
Explore current lead lead security technical program manager manager specialist jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.
Hiring demand
52/100
steady · 106 related jobs
Hiring trend
-26.2%
Job postings compared with the previous 30 days
Remote options
22.6%
Share of matching jobs listed as remote
Typical salary
$163.6K – $163.6K/yr
Based on 35 salary observations
From $139K/yr
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role The Enablement & GTM AI function is part of the CRO organization. Enablement is instrumental in helping GitLab grow at a more accelerated pace and achieve our ambitious revenue targets. The enablement organization comprises enablement leads serving the CRO business functions, a centralized content group, AI tech resources, and an operations team. This role reports to the Vice President, Enablement & AI Strategy. What You’ll Do Support two VP organizations (New Business and Sales Development/SMB) with all their enablement needs from content build to training delivery to analytics. Deve
About the Team OpenAI’s Sourcing and Procurement organization helps the company acquire and scale the products, services, and partnerships needed to advance its mission. As the organization grows, we are looking for a strategic builder-operator to establish an AI-led contracting capability that improves speed, consistency, and execution across the company. In this role, you will partner with leaders and stakeholders across Procurement, Legal, Finance, Security, Engineering, and business teams to design and oversee the contracting process from intake through negotiation and lifecycle management. You will bring structure to ambiguity, align partners around shared priorities, and build repeatable operating mechanisms, responsible AI-assisted workflows, and a centralized contract lifecycle management (CLM) system of record that enable sourcing coordinators to execute agreements consistently and help the business scale. About the Role As a Contract Management Lead, you will build, lead, and continuously improve OpenAI’s AI-led contracting help desk—a new capability designed to scale contract drafting, review, negotiation, and lifecycle management without significantly increasing headcount. You will own the service strategy, operating model, delivery oversight, coordinator enablement, workflow design, and performance tracking. Sourcing coordinators will manage day-to-day negotiations and agreement execution; you will ensure they have the tools, playbooks, training, guidance, and escalation support required to deliver timely, consistent, and well-governed outcomes. This is a builder-operator and service-ownership role for someone who combines strong commercial contracting and legal-language fluency with a product-management mentality. You will be hands-on in building the systems, playbooks, AI-enabled workflows, and reporting that support the contracting desk—not in personally negotiating every agreement. You will use a contract lifecycle management (CLM) platform as the c
From $250K/yr
About Ema Ema is building the world’s leading Agentic AI platform to transform enterprise productivity. We enable organizations to delegate repetitive tasks to Ema, the Universal AI Employee, delivering 10x gains in workforce efficiency, across functions. Founded by former executives from Google, Coinbase, Flipkart, and Okta, our team includes engineers from premier tech companies and graduates of Stanford, MIT, UC Berkeley, CMU, and IITs. We are backed by industry leading investors including Accel, Naspers/Prosus, Section32, and angels like Sheryl Sandberg and Dustin Moskovitz. Headquartered in Silicon Valley and with offices in London, Bangalore and Vancouver, Ema is at the frontier of what Agentic AI can do in production — we ship real systems that run real business processes at scale. About the Role Ema sells through two motions that behave very differently, and today they share one pipeline, one CRM, and one forecast. Direct enterprise — field Account Executives landing Fortune 2000 logos at $250K+ initial contract value and expanding past $500K, into buying committees that include IT, security, data governance, and procurement. Partner-led — global systems integrators and ISVs, including Teleperformance, PwC, Wipro, NTT Data, Hitachi, KPMG, Atos, ADP, Microsoft, and Google, who deploy Ema's Frontier Apps to their own clients. In some cases the partner embeds Ema inside their own product and owns the end-client relationship entirely. Those two motions require different definitions, different attribution rules, and different quota treatment. Building that distinction — and the systems, reporting, and compensation logic that sit on top of it — is the core of this role. This is the first dedicated Revenue Operations hire supporting the US go-to-market organization. You will be building the function, not maintaining one. What You Will Own Forecasting and pipeline management Own the weekly forecast process and cadence across direct and partner motions, and report fo
About the Team OpenAI's mission is to ensure that general-purpose artificial intelligence benefits all of humanity. Our Communications team includes External Communications, Internal Communications, and other strategic communications functions. The team's role is to clearly and authentically explain our technology, values, and approach to safely building powerful AI. About the Role We are seeking an exceptional communications professional to lead communications support for OpenAI's partnerships with federal, state, and local governments and our broader public-sector enterprise work. This person will help tell the story of how governments are using AI, support major customer and partner moments, and communicate about government work happening across priority areas including cybersecurity, biodefense, national security, science. This role will partner closely with public-sector go-to-market and partnerships, Global Affairs, legal, product, research, safety, and security teams to develop clear external communications for the public, media, policymakers, and customers. The ideal candidate will bring strong strategic and tactical communications judgment, move quickly and collaboratively on complex issues, and have a passion for technology and storytelling. In this role, you will: Developing and executing communications plans that educate press, policymakers, customers, and the public about OpenAI's government partnerships and public-sector work Building proactive campaigns and customer stories that demonstrate how AI can improve public services, strengthen government workforces, and support critical missions Supporting communications across priority areas including cybersecurity, biodefense, national security, science, and science. Building deep relationships with national, state, local, technology, policy, and enterprise media and managing inbound requests Partnering cross-functionally with Global Affairs, public-sector go-to-market, legal, product, research, safety, se
About the team The Intelligence and Investigations team seeks to rapidly identify and mitigate abuse and strategic risks to ensure a safe online ecosystem in close collaboration with our internal and external partners. Our efforts contribute to OpenAI's overarching goal of developing AI that benefits humanity. This role focuses specifically on AI Safety: understanding and mitigating risks created or amplified by increasingly capable AI systems. It is not a cybersecurity, information security, or corporate security role. The Strategic Intelligence & Analysis (SIA) team provides safety intelligence for OpenAI’s products by monitoring, analyzing, and forecasting real-world abuse, geopolitical risks, and strategic threats. Our work informs AI safety mitigations, product decisions, and partnerships, ensuring OpenAI’s tools are deployed responsibly across critical sectors. About the role We are looking for a Frontier AI Risks Lead to help us understand potential harms and misuse of AI in a time of rapid, sustained change. We seek to understand how developments in AI could intersect with misuse and abuse, accelerating existing harm areas and creating novel risks. We seek to scan available signals and use strategic foresight methodologies to enable proactive detection and mitigation of frontier AI risks. This is an AI safety role focused on frontier and systemic risks, including model misalignment, recursive self-improvement (RSI), multi-agent interaction, loss of control, runaway agents, and related emerging failure modes. In this role, you will help provide a strategic-level perspective on a range of frontier AI safety areas, producing actionable understanding of issues relevant to OpenAI’s platforms, systems, and broader mission. Utilizing mixed quantitative and qualitative methodologies, you will spot early warning signs, pull threads on potentially concerning behavior, and turn weak signals into clear, prioritized risk calls. You will focus on upstream ecosystem sc
From $151K/yr
The Role MongoDB is seeking a Staff Product Manager to lead strategic initiatives across Identity and Security. In this role, you will serve as the senior product leader shaping the next generation of authentication, authorization, and access control across MongoDB Atlas, the core database engine, and emerging developer platforms. You will lead the strategy for non-human identity—spanning workload identity federation, zero-trust passwordless access, Model Context Protocol (MCP) integrations, and autonomous AI agentic identity. You will partner closely with engineering, UX, product marketing, and enterprise customers to build identity experiences that are enterprise-grade, seamless for developers, and secure by default. Responsibilities Set and champion a multi-year product strategy across interrelated identity areas, aligning dependencies and investments to MongoDB’s broader objectives Identify cross-cutting customer and market opportunities, build business cases for investment, and bring a clear point of view to senior stakeholders Lead workload identity federation and programmatic access initiatives across cloud and enterprise identity environments Define secure authorization approaches for AI agents and MCP clients, including delegation, identity lifecycle, policy, and administrative controls Drive developer-first access management, ensuring security controls enhance rather than obstruct developer velocity Partner with engineering, design, GTM, and cross-functional leadership to validate enterprise requirements, prioritize initiatives, and measure feature adoption Stay ahead of evolving cloud security paradigms, emerging standards (e.g., SPIFFE/SPIRE, O4AA), and AI access patterns to guide executive decision-making Represent MongoDB’s security and identity vision at industry events, customer advisory boards, and executive briefings Demonstrate creativity, an innovative spirit, and a bias towards action Requirements 8+ years (or equivalent experience) in Pro
From $151K/yr
MongoDB’s Security Product Management team is seeking a Staff Product Manager to own security, compliance, and public sector product strategy within Atlas for Government (A4G). In this role, you will be a key member of the security product management team, helping make data security a market differentiator that enables MongoDB to win in enterprise and regulated industries. You will lead product strategy and execution for capabilities and programs that support federal compliance requirements and broader regulated-industry needs. You will work across Engineering, Compliance, Legal, Security, and Go-to-Market teams to translate complex regulatory and customer requirements into clear product investments, roadmaps, and outcomes. This role is suited for a candidate who can orchestrate multiple interlinked product areas, own cross-team product and architectural trade-offs, and align senior stakeholders around multi-year bets. You will be expected to identify opportunities and dependencies that cut across team boundaries, bring clarity to ambiguous problem spaces, and establish reusable ways of working that help MongoDB deliver secure, compliant platform capabilities for public sector and other regulated markets. You will partner closely with senior engineering and business leaders to evaluate trade-offs, sequence investments, and bring clarity to decisions that balance customer impact, execution risk, and long-term business value. This role can be based out of of our offices or remotely in the United States. The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. Our FedRAMP program requires that anyone who is accessing customer data or metadata inside the Authorization Boundary be a US Person on US Soil. Responsibilities Security and Compliance Product Strategy Own the public sector compliance roadm
At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done. We are hiring a Senior Security Engineer, dedicated to Product Security Incident Response. In this role, you will lead and architect Snowflake's product-integrated Incident Response strategy, with a primary focus on AI and LLM security. You'll design, plan, and drive the implementation of incident response capabilities across Snowflake's AI product surface - including Cortex AI, Cortex Agents, Snowflake Intelligence, and the data pipelines that power them. AS A SENIOR SECURITY ENGINEER, INCIDENT RESPONSE AT SNOWFLAKE, YOU WILL: Lead incident response for product-level security events, with deep focus on AI-specific threat vectors including prompt injection, model abuse, agent hijacking, and data exfiltration through AI workloads. Integrate IR into AI product pipelines - work directly with teams shipping Cortex features, Snowflake Intelligence, and AI-powered developer experiences to embed security requirements from design through deployment. Develop and codify our AI abuse response strategy - defining detection, containment, and remediation playbooks for LLM misuse, adversarial inputs, and AI-assisted attacks targeting Snowflake customers. Address tech debt across the AI product stack, ensuring that new Cortex and agentic architectures meet IR readiness requirements from th
At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done. We are hiring a Senior Security Engineer, dedicated to Product Security Incident Response. In this role, you will lead and architect Snowflake's product-integrated Incident Response strategy, with a primary focus on AI and LLM security. You'll design, plan, and drive the implementation of incident response capabilities across Snowflake's AI product surface - including Cortex AI, Cortex Agents, Snowflake Intelligence, and the data pipelines that power them. AS A SENIOR SECURITY ENGINEER, INCIDENT RESPONSE AT SNOWFLAKE, YOU WILL: Lead incident response for product-level security events, with deep focus on AI-specific threat vectors including prompt injection, model abuse, agent hijacking, and data exfiltration through AI workloads. Integrate IR into AI product pipelines - work directly with teams shipping Cortex features, Snowflake Intelligence, and AI-powered developer experiences to embed security requirements from design through deployment. Develop and codify our AI abuse response strategy - defining detection, containment, and remediation playbooks for LLM misuse, adversarial inputs, and AI-assisted attacks targeting Snowflake customers. Address tech debt across the AI product stack, ensuring that new Cortex and agentic architectures meet IR readiness requirements from th
About the Team The Corporate Security team is responsible for safeguarding all OpenAI employees and executives. Our mission is to create a secure, resilient environment that allows our teams to focus on their work without risk or disruption. We manage physical security operations across offices, events, and global initiatives, partnering closely with internal teams and external agencies to stay ahead of emerging threats. About the Role As a Corporate Security Manager , based in our San Francisco office, you will lead day-to-day security operations while supporting the development of global physical security strategies, policies, and procedures. You will work cross-functionally to maintain a strong and adaptive security posture, manage vendor security teams, and serve as a key liaison with law enforcement and security partners. This position requires hands-on experience in corporate security operations. This role typically involves 4–5 days in the office each week . In this role, you will: Office Security: Develop, implement, and manage physical security measures, including policies, systems, and vendor relationships, to protect employees and visitors in the San Francisco offices. International Offices: Support the International Director to safeguard OpenAI’s global footprint by assisting with security policy writing, consistent with US and main office policy and procedures, including ongoing mitigation strategies. Events: Support local events when needed and work with the resilience team on updating policy and procedures that involve the GSOC’s support. Partnerships & Stakeholder Engagement: Establish and strengthen relationships with local law enforcement agencies, peer security organizations, and other external partners to stay current on emerging risks. Policy Development & Compliance: Be the primary point of contact for the Corporate Security Operations team for global policy and procedures. Support and contribute to all the Corp Sec pillars as needed, f
At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. We are seeking an experienced Manager of Security Operations, reporting to the Director of Security, to lead our exceptionally talented Security Engineering team. Vanta’s Security Operations team provides essential security operational services, including configuring, monitoring, and maintaining our security tools and infrastructure. You’ll be responsible for leading the Security Operations team and assisting with incident response, setting our detection and response strategy, and assisting with investigations. You’ll also work cross-functionally to ensure we maintain compliance and improve our secure maturity. What you’ll do as a Manager, Security Operations at Vanta: Lead and grow a team of the best security operations analysts in the world, with a view of security that is AI-first, human-centric, and trust-based. Help define the strategy for Vanta’s security operations team, and empower the team to implement robust security protocols and stay ahead of emerging threats. Leverage AI to improve efficiency of team processes, and improve the maturity of the overall security program. Lead and drive incident response from detection, remediation, to prevention Identify, develop, and implement new processes in our security operations program Identify new technologies and emerging threats for our organization, and plan a technology-driven approach to addressing new risks How to be successful in this role: Strong leadership experience in security and an ability to lead a global team from a foundation of transparency and trust. Strong security operations experience, with emphasis on implementing security controls in a SaaS and cloud env
From $2.9M/yr
In this competitive market, the Group Product Manager for Cloud Security will play a mission-critical role in providing product and strategy leadership to grow Datadog’s market share through differentiation, innovation and compelling customer value. This leader will lead a talented and growing team of product managers and work with world class engineers to build and grow multiple Cloud Security products that play an essential role for our customers’ cloud security programs, and growing Datadog into a security industry leader. You Will: Run and grow multiple Cloud Security products to meet revenue and business targets with the goal of building a multi-hundred million dollar annual business. Lead and own product strategy and roadmap for accountable security products, fully aligned to revenue and business goals and with compelling differentiation and customer value. Ensure predictable roadmap execution across direct and partner teams to achieve product and business outcomes required to meet the revenue and business goals. Analyze and develop pricing and packaging strategies to maximize revenue through attaching deep understanding of market dynamics and other strategic leverage points. Drive GTM strategy with GTM partner teams to achieve revenue and business goals Fulfill the role as the product-leader representative across accountable product lines with analyst, press and customer communities Manage and grow individual contributor (IC) Product Managers, ensuring they are motivated, delivering high quality work and finding high fulfillment. Model and contribute to a culture of learning and collaboration across product management and the broader organization Raise the bar of PM leadership through leadership in strategy development, roadmap planning and execution, GTM and overall product-leader responsibilities. You Are: An experienced leader in Product Management with demonstrated business growth and customer adoption success in the CNAPP, data and AI
From $2.9M/yr
We're on a mission to build the best platform in the world to defend the enterprise from code-to-cloud-to-runtime. Used by thousands of companies globally, Datadog security products uniquely leverage Datadog’s unified security and observability platform so Security, DevOps and SRE can collaborate rapidly and seamlessly to deliver better detection, prioritization and remediation. Our product and engineering culture values pragmatism, honesty, and simplicity to solve hard problems the right way. In this competitive market, the Group Product Manager for Code Security will play a mission-critical role in providing product and strategy leadership to grow Datadog’s market share through differentiation, innovation and compelling customer value. This leader will lead a talented and growing team of product managers and work with world class engineers to build and grow multiple Code Security products that play an essential role for our customers’ code security programs, and growing Datadog into a security industry leader. At Datadog, we place value in our office culture - the relationships and collaboration it builds, and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Run and grow multiple Code Security products to meet revenue and business targets with the goal of building a multi-hundred million dollar annual business. Lead and own product strategy and roadmap for accountable security products, fully aligned to revenue and business goals and with compelling differentiation and customer value. Ensure predictable roadmap execution across direct and partner teams to achieve product and business outcomes required to meet the revenue and business goals. Analyze and develop pricing and packaging strategies to maximize revenue through attaching deep understanding of market dynamics and other strategic leverage points. Drive GTM strategy with GTM partner teams
About the Team The team’s mission is to accelerate the secure evolution of agentic AI systems at OpenAI. To achieve this, the team designs, implements, and continuously refines security policies, frameworks, and controls that defend OpenAI’s most critical assets—including the user and customer data embedded within them—against the unique risks introduced by agentic AI. About the Role As a Security Engineer on the Agent Security Team , you will be at the forefront of securing OpenAI’s cutting-edge agentic AI systems. Your role will involve designing and implementing robust security frameworks, policies, and controls to safeguard OpenAI’s critical assets and ensure the safe deployment of agentic systems. You will develop comprehensive threat models, partner tightly with our Agent Infrastructure group to fortify the platforms that power OpenAI’s most advanced agentic systems, and lead efforts to enhance safety monitoring pipelines at scale. We are looking for a versatile engineer who thrives in ambiguity and can make meaningful contributions from day one. You should be prepared to ship solutions quickly while maintaining a high standard of quality and security. We’re looking for people who can drive innovative solutions that will set the industry standard for agent security. You will need to bring your expertise in securing complex systems and designing robust isolation strategies for emerging AI technologies, all while being mindful of usability. You will communicate effectively across various teams and functions, ensuring your solutions are scalable and robust while working collaboratively in an innovative environment. In this fast-paced setting, you will have the opportunity to solve complex security challenges, influence OpenAI’s security strategy, and play a pivotal role in advancing the safe and responsible deployment of agentic AI systems. You’ll be responsible for: Architecting security controls for agentic AI – design, implement, and iterate on identity, netwo
Higher-paying openings
Jobs with higher listed pay
Technical Enablement Program Manager
Postman · San Francisco, California, United States
$1.6M – $2M/yr
Digital Program Manager (DPM)
Glide · United States
$1.7M – $1.9M/yr
Sr. CE Program Manager
Smartsheet · Bellevue, WA, USA
From $1.6M/yr
Sales Enablement Program Manager
Postman · San Francisco, California, United States
From $1.4M/yr
Supply Chain Program Manager (SCPM) - AI Infrastructure
OpenAI · San Francisco, California, United States
$226K – $285K/yr
Principal Technical Program Manager, Compute
Roblox · San Mateo, CA, United States
From $277.4K/yr
Related career options
Similar roles with stronger pay
Demand 35/100 · 7 jobs
$4.6M – $4.6M/yr
Salary →Demand 34/100 · 8 jobs
$345K – $345K/yr
Salary →Demand 56/100 · 93 jobs
$294.5K – $294.5K/yr
Salary →Demand 44/100 · 22 jobs
$292.5K – $292.5K/yr
Salary →Demand 33/100 · 9 jobs
$255.7K – $255.7K/yr
Salary →Demand 59/100 · 123 jobs
$242.1K – $242.1K/yr
Salary →Other cities to consider
More places hiring for this role
180 live jobs · rising
347 live jobs · steady
1,206 live jobs · steady
196 live jobs · steady
69 live jobs · steady
36 live jobs · steady
11 live jobs · steady
41 live jobs · steady
Get new lead lead security technical program manager manager specialist jobs in United States by email
Daily job updates · Unsubscribe anytime