Security Program Manager
Job description
About the role
The Security Program Manager role at Bugcrowd centers on owning the end-to-end Vulnerability Management Program in partnership with security engineering and business units. You will drive prioritization and accountability for security issues while leveraging data and AI-driven insights from Bugcrowd's Security Knowledge Platform™. In this capacity, you act as the primary liaison between the cybersecurity department and all other departments, enabling engineering teams to own security outcomes across the organization. You will utilize the platform's data and AI capabilities to support modern crowdsourced security initiatives that outpace evolving threats, including zero-day exploits. The role is fully remote and based in India, aligning with Bugcrowd's mission to create a new era of modern crowdsourced security that outpaces threat actors.
What you'll do
- Drive the Vulnerability Management Program end-to-end, from prioritization to execution, ensuring business units take ownership of security issues.
- Leverage metrics and regular program reviews to transparently communicate performance, trends, and risk to leadership and cross-functional partners.
- Provide expert project leadership for complex, high-visibility initiatives that span multiple teams and geographies, including the US, India, and Australia.
- Coordinate closely with Software Engineers, Engineering leaders, and Product Managers to align security priorities with product and business objectives.
- Build, improve, and standardize project management tools, workflows, and practices to increase efficiency and program maturity.
- Mentor team members on best practices in program management, security workflows, and cross-functional collaboration.
- Act as the central liaison between the cybersecurity department and all other departments to enable engineering ownership of security.
- Help organize and coordinate calendar management and vendor interactions for TISO and CI/SO activities.
- Utilize data and AI-driven insights from the Security Knowledge Platform to support decision-making and threat response.
- Champion a culture of accountability, transparency, and continuous improvement across security operations.
- Support the scalability and adaptability of the platform by ensuring programs keep pace with evolving threats, including zero-day exploits.
- Contribute to the mission of creating a new era of modern crowdsourced security that outpaces threat actors.
- Collaborate with the hacker community and internal teams to uncover hidden weaknesses and drive timely remediation.
- Ensure all security program activities are documented, tracked, and reported to maintain clarity and auditability.
- Promote inclusive practices and diverse perspectives to strengthen the security posture and innovation of the Bugcrowd platform.
Requirements
- Bachelor's degree in engineering, computer science, or a relevant field, or equivalent practical experience.
- 5+ years of experience in technical program management.
- 2+ years of exposure to security, site reliability engineering, or software engineering is preferred.
- Ability to understand IT concepts such as web applications and servers, and be relatively tech savvy.
- Must be able to work remotely from India with reliable internet connectivity and a suitable workspace.
- Strong written and verbal communication skills to effectively liaise with all departments and global teams.
- Experience working with metrics, reporting tools, and program review frameworks.
- Ability to manage multiple priorities and deadlines in a fast-paced, dynamic environment.
- Comfortable using project management tools and collaborating across distributed teams.
Working conditions and culture
- The role is fully remote with work-from-home arrangements based in India.
- Bugcrowd emphasizes a culture of diversity, inclusion, and belonging, recognizing that diverse perspectives strengthen security outcomes and innovation.
- The company describes its environment as family-like, with a broad range of team members bringing varied interests and backgrounds.
- There are no specified hours, travel requirements, visa details, or application deadlines included in the source.
Engagement and alignment
- This role supports key functions such as calendar management and vendor coordination for TISO and CI/SO.
- You will leverage the patented Security Knowledge Platform™ and CrowdMatch™ technology to find the right talent and insights for your security programs.
- The position contributes directly to Bugcrowd's goal of outpacing threat actors through collective ingenuity and expert coordination across a globally distributed team.