About The Position

Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone. As a Technical Program Manager on the Detection and Response Team (DART), you will lead efforts to enhance security resilience and regulatory compliance, particularly NIS2. You will design, implement, and govern our incident response model, translating requirements into executable processes and scalable systems with partners like Security Engineering, Legal, and GRC. This role involves orchestrating high-impact programs, ensuring consistent classification, escalation, and reporting for live events. You will build durable playbooks, metrics, and tooling to continuously improve detection, response, and documentation. You will drive alignment, enable confident decision-making, and elevate how the organization operationalizes risk for secure, resilient operations.

Requirements

  • 8+ years of experience leading complex technical programs within security, incident response, or regulatory domains.
  • Deep familiarity with the incident response lifecycle and security event classification.
  • Experience navigating breach notification requirements (e.g., NIS2, GDPR, or similar frameworks).
  • Demonstrated ability to translate regulatory language into technical execution plans.
  • Experience partnering closely with Legal and Privacy during real incidents.
  • Comfort operating in ambiguity and driving alignment without formal authority.
  • A bias for action combined with strong risk judgment.
  • The ability to build trust with engineers and executives alike

Responsibilities

  • Own and operationalize large-scale security programs, including GDPR, NIS2 regulatory readiness and incident response governance.
  • Translate complex regulatory requirements into executable workflows, tooling, and measurable controls.
  • Operate calmly and decisively during high-pressure security incidents. Driving clarity during live incidents ensuring classification, escalation, and regulatory decisions are aligned and documented.
  • Build durable systems that improve response speed, audit readiness, and executive visibility.
  • Facilitate high-stakes cross-functional conversations where risk ownership, accountability, and tradeoffs must be clearly defined.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service