Security Program Manager

OneleetBeaverton, OR
$75,000 - $140,000Remote

About The Position

The Security Program Manager is part vCISO & part account manager. You will work with our customers from the start to assess their current security/compliance framework, provide guidance and recommendations for improvements, and work with clients to implement recommendations. You're passionate about security, and enjoy sharing your knowledge with not only our customers but your colleagues.

Requirements

  • 4+ years in a role involving information security, compliance, or audit (security operations, GRC, vCISO, security advisory, IT/Compliance auditing, or a security-adjacent customer success/IT support role). You’ll need to understand security and operations well enough that compliance becomes the natural byproduct of genuine security, not just checking boxes against the checklist. You should know why the box exists.
  • Working and broad knowledge of security best practices, major compliance frameworks (SOC 2, ISO 27001, HIPAA, GDPR, PCI), and how controls map to real infrastructure and operations. Audit-side insight is particularly relevant.
  • Technical Account Management experience, or client facing or stakeholder facing experience with strong project management instincts. This is a high-volume, high-interruption, relationship-oriented role that requires you to translate between technical and non-technical people. Startup and business fluency matters, whether gained internally or in consulting with startups, for helping companies find a compliance path that truly fits where they are today.
  • Ability to understand client infrastructure and map security controls to meet compliance goals and the bigger picture of holistic security and compliance.
  • Strong analytical skills to evaluate environments and determine appropriate safeguards.
  • Excellent verbal and written communication skills.
  • Self-driven with the ability to work independently, comfortable with ambiguity, and able to adapt approach client-by-client in a fast-moving startup environment.
  • Willingness to go the extra mile to meet tight deadlines and deliver results.

Nice To Haves

  • One or more of the following certifications: CISA, CISSP, CISM
  • Exposure to a “Lead Auditor” scope (cross-framework, whole-program view) rather than a single specialty area
  • Prior experience in customer success, IT support, or technical support background (useful for pace/responsiveness this role demands)

Responsibilities

  • Conduct initial consultation calls with new clients to assess their current security posture, infrastructure stack, compliance requirements and overall objectives.
  • Provide guidance and recommendations for improving client security posture
  • Develop high-level security programs consisting of technical, operational and administrative controls based on industry frameworks and client needs.
  • Collaborate with clients to customize and refine the security program to match their specific use cases.
  • Communicate with clients and stakeholders to ensure smooth and efficient security program creation
  • Liaise with auditors to ensure clients' security programs align with auditors' expectations
  • Maintain expertise across a range of security frameworks, control types, and technologies including NIST, SOC2, ISO27001, CMMC, AWS, Azure, GCP, Kubernetes, Docker, Terraform, and more.
  • Provide feedback to Oneleet's engineering team to inform development of integrations, solutions, and products that deliver on client needs.
  • Be highly technical, learn new technologies quickly, and translate security concepts into implementations.
  • Partner with internal teams to translate security programs into implementations consisting of policies, procedures, configurations and software integrations.

Benefits

  • Comprehensive health & wellness benefits
  • 20 days PTO per year, plus 8 floating holiday
  • Remote work culture
  • Team off-sites in stunning places (Amsterdam, Italy, etc).
  • Competitive compensation & equity
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service