> Markdown version of [/jobs/ext/2710436-security-technical-program-manager](https://www.wearedevelopers.com/jobs/ext/2710436-security-technical-program-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Technical Program Manager - **Company:** Technology Talent Network LLC - **Location:** San Francisco, CA, United States (Remote available) - **Experience:** Expert - **Salary:** $194,000.0 - $220,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software Security - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-security-technical-program-manager-asana-9636387 ## About the Role * 8+ years of TPM experience, with meaningful time in a security context (security engineering, GRC, product security, infra security, or similar) * Strong understanding of security with the ability to engage technical teams and communicate clearly to executive stakeholders * Demonstrated ability to lead large-scale, cross-functional programs from ambiguous inception through delivery * Exceptional written and verbal communication, with proven ability to influence without authority at all levels * Track record of operating with high autonomy - you create the structure rather than waiting for it * Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making ## Description At Asana, security is foundational to our mission of helping teams work together effortlessly. Our Security organization protects Asana's employees, users, and customers by proactively addressing threats, enabling secure product development, and embedding security into the fabric of how we operate. We partner closely with Engineering, Product, IT, Legal, and Compliance to build and maintain trust at scale. As a Security Technical Program Manager, you'll be the connective tissue across the entire Security organization, driving the strategy, programs, and operational rhythms that make the team highly effective and externally visible. This is a high-impact, high-autonomy role. You'll define how Security as a function operates: how it plans, how it measures itself, how it communicates progress, and how it executes on its biggest bets. You won't just run programs, you'll shape the operating model that makes all programs run better. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements. What you'll achieve * Lead high-impact, cross-functional special projects that span organizational boundaries, from standing up new security capabilities and maturity programs to company-wide strategic initiatives * Own the Security organization's annual and quarterly planning cycles, translating multi-year security strategy into a prioritized, executable roadmap * Drive the prioritization and communication of security asks across stakeholders, building a unified framework that influences how partner teams plan and prioritize security work * Define and own the Security team's KPI framework, covering risk posture, program health, and strategic goal progress * Build dashboards and reporting cadences that give leadership real-time visibility into what's working, what's at risk, and where decisions are needed * Establish and continuously improve the operating cadences (All Hands meetings, program reviews, OKR check-ins) that keep the organization aligned and moving fast * Act as a thought partner to security leadership on org design, process improvement, and operational scale ## Related Videos - [How to Stop Your Agents From Going Rogue - Arnav Gupta](https://www.wearedevelopers.com/videos/2152-how-to-stop-your-agents-from-going-rogue-arnav-gupta) - [Edit Your Future: Queerverse Radical AI](https://www.wearedevelopers.com/videos/909-edit-your-future-queerverse-radical-ai) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [AI is dead, long live AK](https://www.wearedevelopers.com/videos/1093-ai-is-dead-long-live-ak) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) ## Related Articles - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this)