Software Developer/ Engineer/ Architect

Senior Information Security Program Manager

About the Role

We are looking for a Technical Program Manager to join our team. You will be responsible for the delivery of services from the Technology Security teams, from customer engagement and gathering requirements to ensuring sponsors and partners are kept up to date. You will collaborate with engineers, architects, Strategy and Planning partners and drive the requirements from the design phase through execution. With a growing customer base and a Software-as-a-Service model, security, scalability, and reliability need to be ever-present in what and how we deliver. You must thrive in working as a team in a fast-paced environment. Our daily work has a direct impact on our customers and our business. As the company grows, so will your skills, exposure and ability to contribute. Work location is the Dublin office.

 

What you will do:

  • Drive Vulnerability Management across Workday's technology, including Assessment /Tracking, Remediation Engineering and Reporting
  • Proactively and independently manage enterprise Security programs
  • Partner across the Security and Technology Organisation (Engineering, Product, Legal, Compliance, Business & Technology, Operations and Customer Success) teams to align with strategic vision and goals
  • Help plan, implement and deliver security projects and programs and drive accountability across partner teams to ensure security objectives are met
  • Integrate information security into organizational development and processes
  • Ensure compliance to Information Security policy and practices
  • Communicate inherent security risks and solutions to technical and non-technical business owners
  • Partners with the InfoSec Engineering team to help define, drive and deliver security initiatives in Corporate Security, Infrastructure Security and Application Security.
  • Partners with the Risk Compliance team on Information Security risk management activities including information security risk assessment, vendor reviews, and leads the remediation of identified gaps and issues.
  • Partners with the InfoSec team to help collect and prioritize security use cases and drive security visibility, alerting and monitoring for Upstart Products and Operations
  • Provides reporting and measurements of program efficiency and provides analysis to senior management

What you should have:

  • Experience with security vulnerability management: establishing process, driving assessment, tracking, remediation and reporting at enterprise level
  • A proven experience in technical program management in SAAS/Public/Private Cloud
  • Experience running Information Security programs, including collecting and redefining requirements into measurable work items
  • Familiarity and experience with agile software delivery methodologies
  • Ability to prioritize effectively and multitask efficiently
  • Demonstrated ability to efficiently cross collaborate with partner teams
  • Strong communication, presentation, and documentation skills
  • Experience influencing others without having direct management authority and motivating them to successfully complete tasks within required timelines
  • Strong risk analysis and problem-solving skills
  • Able to drive collaboration and influence multiple teams. Thrive in a diverse environment.
  • Excellent written and verbal and presentation skills, building strong collaborations internal and external to the Security organisation.

What we hope you have:

  • Experience working with sophisticated, high transaction, high availability environments
  • Knowledge of Security fundamentals including access control, cryptography, vulnerability management, secure configurations, secret management, logging and alerting, and system and network Security
  • Understanding of Secure Software Development Life Cycle (SSDLC) practices
  • Understanding of infrastructure and platform technologies (Linux, virtualisation, public cloud, Kubernetes, firewalls etc.) and related secure design patterns