> Markdown version of [/jobs/ext/2383501-principal-security-program-manager](https://www.wearedevelopers.com/jobs/ext/2383501-principal-security-program-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Security Program Manager - **Company:** deepwatch, inc. - **Location:** Raleigh, NC, United States (Remote available) - **Experience:** Expert - **Salary:** $165,000.0 - $185,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Apple Mac Systems, Confluence, JIRA, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Information Technology Operations, Smartsuite, Security Information and Event Management, Software Vulnerability Management, Slack, Gsuite, Servicenow - **Published:** August 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=871d80e17526c2b0 ## About the Role * 7 - 10 years of experience in cybersecurity, IT, technical program management, security operations, compliance, or related roles. * Prior experience working directly within a cybersecurity program. * Strong understanding of security, IT, cloud, compliance, and operating models. * Deep experience with Jira and Confluence is required. * Strong working knowledge of Slack, macOS, and Google Workspace. * Proven ability to manage multiple technical projects simultaneously, deadlines, owners, dependencies, and competing priorities. * Excellent written communication, documentation and cross functional alignment strategy. * Experience leading meetings independently with technical teams, vendors, stakeholders, and leadership. * Strong knowledge of compliance programs, audits, evidence collection, control tracking, and security governance. * Ability to operate with urgency, ownership, discretion, and minimal supervision. Preferred Experience: * Familiarity with security frameworks such as SOC 2, ISO 27001, NIST, and ISO 42001. * Experience supporting cloud security programs across AWS, Azure, or GCP. * Experience working with ServiceNow, GRC tools, vulnerability management platforms, SIEM, EDR, or identity platforms. * Prior experience as a Principal Program Manager, Security Program Manager, IT Chief of Staff, Manager of Security, or Senior Technical PM. ## Description We are looking for a Principal Security Program Manager to support a healthy, high-performing security, IT, cloud, and compliance program. This role will partner with and report directly to the CISO owning project execution, operating cadence, deadlines, meeting outcomes, Jira/Confluence hygiene, dashboards, and cross-functional follow-through. This person must have hands-on experience working inside cybersecurity programs and be comfortable operating across security engineering, IT operations, cloud infrastructure, compliance, and executive communication. The ideal candidate is a strong project owner, an excellent technical writer, a sharp meeting facilitator, and a trusted operating partner who can keep the organization consistently progressing. You are a senior operator who has lived inside cybersecurity programs and understands how security, IT, cloud, compliance, and MDR work actually get done. You are organized, direct, technically fluent, and an excellent communicator. You can sit in a room with engineers, understand the work, identify the gaps, document the outcome, and drive the next step without needing constant direction. This is a high-trust role for someone who wants to help run the operating system of a modern security organization. Core Responsibilities: * Own the full portfolio of security, IT, cloud, and compliance projects. * Keep Jira, Confluence, dashboards, timelines, owners, blockers, and status updates accurate at all times. * Drive projects from intake to completion with clear owners, deadlines, dependencies, decisions, and next steps. * Run meetings independently, capture outcomes, and deliver clear, accurate summaries with action items. * Act as a trusted extension of the CISO for the IT team and cross-functional workstreams. * Turn conversations, risks, requests, and open questions into actionable Jira stories, projects, timelines, and measurable outcomes. * Provide CISO with concise executive briefings on status, risks, deadlines, upcoming milestones, blockers, and decisions needed. * Hold project owners accountable for commitments, deadlines, updates, and open actions. * Improve the security program's operating rhythm, documentation quality, meeting discipline, project visibility, and overall organization. * Utilize AI tools responsibly to increase project speed, elevate documentation, summarize meetings, identify gaps, and create executive-ready updates. * Maintain exceptional accuracy, completeness, and attention to detail across all project tracking, documentation, and reporting. * Support program maturity across vulnerability management, incident response, compliance, cloud security, IT operations, endpoint, identity, governance, and MDR/SOC operations., * Projects have clear ownership, timelines, tracking, status, blocker support and documented next steps. * Meetings produce decisions, action items, and follow-through. * Security, IT, cloud, and compliance work is visible, organized, and progressive. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Stack Overflow: Community and AI](https://www.wearedevelopers.com/videos/600-stack-overflow-community-and-ai) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Leading Through Stagility: Human Capital Trends That Redefine Work](https://www.wearedevelopers.com/videos/1717-leading-through-stagility-human-capital-trends-that-redefine-work) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)