(IT PSP) Program Manager II

Spectraforce
Oakland, CA, United States
25 days ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Testing (Software) Microsoft Word Microsoft Excel Data Analysis Microsoft Office Microsoft PowerPoint Power BI Phishing Cybercrime

Job description

Description[div id=”summaryDescription”]The Social Engineering Training & Testing Program Specialist plays a highly visible role within the Security Communications, Engagement, and Training organization, helping strengthen the company’s human defenses against cybersecurity threats. This position combines cybersecurity and physical security awareness, program management, joy at work, customer experience, training delivery and communications to reduce risk through education and behavior change.The successful candidate will support enterprise-wide phishing, vishing, and social engineering testing programs; provide immediate coaching and training following campaign interactions; develop meaningful awareness experiences; and deliver metrics and insights that help drive strategic security decisions. This role offers the opportunity to directly influence security culture across the organization while serving as a trusted security educator and advisor.Key ResponsibilitiesSocial Engineering Testing & Campaign ManagementPlan, coordinate, execute, and continuously improve enterprise-wide social engineering testing campaigns, including phishing, vishing, smishing, QR code phishing, credential harvesting, and impersonation simulations.Create campaign strategies, identify target audiences, obtain required approvals, and coordinate testing activities with security and business stakeholders.Serve as a backup administrator for all social engineering testing and training activities.Evaluate campaign results and implement improvements based on threat trends, organizational risk, and user behaviors.Maintain testing documentation, procedures, schedules, and records.Employee Training & Security AwarenessServe as a visible trainer and security ambassador, delivering engaging virtual and in-person training programs.Conduct immediate outreach to employees who interact with simulated social engineering attacks, focusing on empathy, coaching, and positive behavior reinforcement.Partner with leaders and stakeholders to improve security awareness and strengthen organizational security culture.Vishing Program AdministrationSupport and lead phone-based social engineering assessments.Develop realistic vishing scenarios and coordinate target selection, approvals, communications, execution, reporting, and follow-up activities.Analyze results and provide recommendations to improve employee readiness and reduce risk.Metrics, Reporting & AnalyticsMaintain program metrics that measure awareness effectiveness, behavioral improvements, and risk reduction.Create dashboards, scorecards, and executive reporting using Power BI and other reporting tools.Track and report key performance indicators including click rates, reporting rates, training completion, remediation activities, and campaign effectiveness.Analyze data, identify trends, and provide actionable recommendations to leadership and stakeholders.Program Management & Stakeholder EngagementComplete assignments of moderate scope and

Requirements

complexity while managing multiple priorities and deadlines.Participate in project teams and cross-functional initiatives supporting cybersecurity awareness and engagement objectives.Communicate effectively with employees, contractors, leaders, and stakeholders to gather information, exchange ideas, and drive program success.Provide timely correspondence and stakeholder notifications before, during, and after social engineering campaigns.Build strong partnerships across security, communications, compliance, risk management, and business organizations.Minimum QualificationsEducationBachelor’s degree or equivalent experience.ExperienceMinimum three (3) years of related experience in cybersecurity awareness, communications, training, learning and development, program management, cybersecurity operations, risk management, or a related field.Knowledge, Skills & AbilitiesKnowledge of social engineering tactics, phishing, vishing, cyber threats, and security awareness best practices.Excellent presentation, facilitation, and training delivery skills.Ability to assess needs, identify risks, and recommend effective solutions for assigned projects and initiatives.Strong verbal and written communication skills with the ability to engage both technical and non-technical audiences.Strong understanding of Program Management principles and practicesAbility to prioritize, plan, execute, and communicate activities effectively in a fast-paced environment.Strong analytical and problem-solving skills with experience measuring program performance and interpreting data.Experience developing metrics, dashboards, and executive reports.Proficiency with Microsoft Office applications including Word, Excel, PowerPoint, Teams, and Power BI.Ability to work independently and collaboratively across multiple teams and organizational levels.Knowledge of current utility and energy industry trends, operational challenges, and issues affecting customers and the business.Knowledge of customer engagement, adult learning principles, and behavior change strategies is preferred.Why Join This Team?This role offers a unique blend of security, training, communications, analytics, and program support. The individual in this position will have the opportunity to influence thousands of employees, lead highly visible awareness initiatives, partner with leaders across the company, and play a critical role in reducing organizational cyber risk. It is an ideal opportunity for someone who enjoys educating others, building relationships, leveraging data to drive decisions, and making a meaningful impact on security culture and organizational resilience. Enable Skills-Based Hiring No Mail Code N/AHave you pre-identified a specific candidate? NoIf yes, enter the name and contact detail for the pre-identified worker. Name: Email: Phone Number

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa ¡ LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa ¡ LIVE

1:24 min

Moving the semantic layer upstream to avoid vendor lock-in

Piotr Menclewicz Piotr Menclewicz ¡ Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 ¡ World Congress 2026 Europe

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering ¡ World Congress 2026 Europe

Videos

See all

Related articles

See all