Principal Technical Program Manager, Security Awareness/Outreach
ModernaAbout the role
The Role
In this role, you The Moderna Cyber Security Awareness & Outreach team is seeking an experienced Technical Program Manager who can raise the security bar across Moderna by enabling security awareness and development best practices at scale. The ideal candidate will have a history and ability to break down security hygiene concepts as well as complex security engineering concepts to the various 10K+ employees of. She or he is a self-starter with a passion for independent problem-solving, has proven data analysis skills and shows strong ownership to deliver end-to-end learning enablement experiences to detect risk-based spot hotspots, and prompt fast action.
We are a team with an open charter and company-wide impact with a challenging mission to shape the culture of Moderna to safeguard patient trust as well as the Moderna brand. Our team perpetuates Moderna’s security culture by working with Information Security experts and our development engineering teams to provide tools, training platforms, and dashboards to evaluate, measure, and improve the security maturity of the company.
As the Principal Technical Program Manager on the team, you will often need to communicate with other Moderna teams across organizations, borders, and time zones. Your ability to collaborate and express your point clearly combined with peaking around corners to remove obstacles, is essential. You will work closely with security engineers and operators to evaluate the effectiveness of security learning platforms and security technologies to scale training and phish testing campaigns worldwide. You will partner with development teams and other functional teams to work backwards from their needs. Your goal is to ensure that a high security bar is maintained by building mechanisms that enable a shared responsibility where every Moderna employee can identify a security threat and respond with the right action to preserve patient trust.
Here’s What You’ll Do
Translate opportunities into roadmaps, and roadmaps into released programs and products for Moderna Managers and employees
Work in an instructional capacity teaching others on the Moderna digital attack surface threats (i.e. Social Engineering) and our remediation efforts, as well as develop security concepts (SDL) to grow SDL-like programs
Bring innovative ideas to the table every day, finding better ways of engaging as well as delighting our partners
Identify and solve highly ambiguous problems
Work closely with engineering teams to deliver new capabilities with efficacy and precision
Administrate training and phishing simulation campaigns within Learning Management Systems (Knowbe4)
Roll up your sleeves working across multiple disciplines and functional organizations, as well as diverse audiences and roles (High Value Targets, Managers, Individual Contributors)
Additional duties as may be assigned from time to time
Here’s What You’ll Need (Minimum Qualifications)
A solid understanding of security concepts, security engineering practices, assessment tools, and risk analysis to ensure compliance with PCI/DSS, ISO, and NIST standards.
A minimum of 10 years’ program management experience, with a focus on cybersecurity or related fields. Experience in high-growth environments and ability to adapt to changing priorities is crucial.
Proven track record in delivering complex programs/services and managing technology projects that integrate into corporate culture.
Demonstrated ability to understand, discuss, and implement engineer-focused tools, training concepts, schedule tradeoffs, and new ideas with technical communities.
Experience in working with cross-functional teams, across different geographical locations and time zones.
Experience in administrating training and phishing simulation campaigns within Learning Management Systems.
Strong data analysis skills and the ability to identify and solve highly ambiguous problems.
Excellent communication skills, able to translate opportunities into roadmaps, and roadmaps into released programs and products.
Here’s What You’ll Bring to the Table (Preferred Qualifications)
Security certifications such as CISSP, CISM, CompTIA Security+, or equivalent.
Past work experience in Technical Writing, specifically influencing Security policies and standards in accordance with industry best practices.
Deep understanding and working practice of Security Architecture frameworks such as Threat Modeling, and the Secure Software Development Lifecycle (SSDLC).
Experience with cybersecurity awareness and training programs.
Proven ability to work in an instruc
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s