32 information security program manager jobs at 27 companies in Napa, CA
2w
Save
Mark Applied
Hide
2w
Information Security Officer
Sacramento County, California, United States
$9k-$13k/moHybridFull Time
State Controller's Office: California's fiscal controller managing state financial operations and assets.
Develop, maintain, and enforce information security policies; manage risk, incident response, and security program for department and customer agencies; must pass fingerprint background check and be California resident at hire.
IT Program Manager (Enterprise Architect and Information Security)
San Francisco or Lakewood or Washington or Atlanta or Chicago or Boston or Kansas City or New York or Philadelphia or Fort Worth or Tacoma
$128k-$197k/yrOnsiteFull Time
General Services Administration: Centralized procurement and property management for federal government agencies.
1+ YOEExpertise in IT program and acquisition management, enterprise architecture, and information security; must meet GS-14 specialized experience and federal eligibility requirements.
FigmaNew York Stock Exchange: FIG: Collaborative interface design and prototyping software for teams.
5+ YOE5+ years in program/project management for cloud/SaaS; strong information security knowledge; ability to translate technical details for diverse audiences; proficient with PM tools like Asana, Google Workspace, Slack, Zoom, Notion, and Figma.
Asana, Google Workspace, Slack, Zoom, Notion, Figma
Trustly: Provides account-to-account payment and open banking infrastructure.
15+ YOE15+ Mgmt15+ years in cybersecurity with experience building enterprise security programs, cloud security (AWS/GCP/Azure), regulatory compliance (PCI DSS, SOC 2, GDPR, DORA, ISO 27001), incident response, and leading global security and IT teams; advanced security certs preferred.
Service Delivery Manager - Apple Information Security
Austin or San Francisco or Seattle
OnsiteFull Time
AppleNASDAQ: AAPL: Designs and sells consumer electronics, software, and online services.
8+ YOE3+ Mgmt8+ years in information security with 3+ years of people management; strong web app security, vulnerability management, and incident response; experience with bug bounty programs and enterprise security tooling; able to lead across multiple time zones.
Python, Go, Bash, Web application security, Vulnerability scanning tools, WAF, DNS security
Harvey: AI platform for legal research and document analysis.
7+ YOE7+ years in information security, customer trust, technical program management or consulting; audit/compliance experience (SOC2, ISO 27001); 1–2+ years automating processes with AI; strong customer communication and metrics orientation.
AsanaNYSE: ASAN: Software platform for team project management and workflow automation.
7+ YOE7+ years in information security with proven experience building security risk management programs, quantitative risk methodologies (e.g., FAIR), scripting/automation for risk monitoring, and knowledge of NIST, ISO, SOC 2, and FedRAMP.
Cohere: Provides enterprise-grade large language models and AI software platforms.
8+ YOE8+ years in Application Security / Security Engineering; strong focus on vulnerability management, SDLC, and bug bounty; proficient in SAST, DAST, and penetration testing; programming in Python/GoLang; cloud experience (AWS/GCP/Azure); strong communication and leadership.
Adapture Renewables: Develops and operates utility-scale solar and energy storage systems.
3+ YOE3–5+ years OT/ICS/SCADA security; BS in Electrical/Computer Engineering, Cybersecurity, or related; experience with NERC CIP; OT networking and ICS protocols; SIEM; OT security tooling; field travel.
Postman: Platform for building, testing, and managing software APIs.
8+ YOE4+ Mgmt8+ years in offensive security with 4+ years in people leadership; strong AI/ML offensive depth and strategic program-building; adept at adversarial mindset and tooling.
PentestGPT, Horizon3, Microsoft PyRIT, Garak, custom harnesses, LLM-based fuzzing
Chai Discovery: Develops AI models for molecular prediction and drug discovery.
5+ YOE5+ years security engineering experience; built or improved security programs at high-growth companies; production coding in Python and TypeScript; detection/response and incident management; familiarity with SOC 2 and ISO 27001; customer-facing credibility.
San Francisco or New York City or Chicago or United States
$206k-$290k/yrHybridFull Time
Komodo Health: Provides AI-driven healthcare data and patient journey analytics software.
7+ YOE5+ Mgmt7+ years corporate security experience with program ownership, 5+ years managing teams, expertise in identity, endpoint, SaaS security, incident response, audits/SOC 2, and executive communication.
SIEM, EDR/MDR, Email security, IAM, SSO, RBAC, Apple device management
Santa Monica or Brooklyn or San Francisco or Los Angeles
$180k-$250k/yrHybridFull Time
Pivotal Health: AI platform automating healthcare insurance claim disputes for providers.
8+ YOE8+ years in security with experience building security programs, cloud/infrastructure/application security, SOC 2/HIPAA compliance, audit readiness, and external stakeholder communication.
SalesforceNYSE: CRM: Sells cloud-based customer relationship management and business software solutions.
3+ YOE3-5+ years FedRAMP and software security governance; project/program management; experience with GovCloud, and certifications like CISSP/CISA/CISM.
Zapier: Connects web applications to automate repetitive workflows without coding.
Executive security leader to set strategy, lead App/Infra/Detection & Response/GRC teams, run risk and incident programs, partner with executives and Product/Engineering, and drive enterprise trust for an AI-native SaaS platform.
Deep hands-on experience in vulnerability research, exploit analysis, IPS/IDS detection, strong protocol and exploit knowledge, programming/scripting skills, and ability to lead technical work under ambiguity.