Senior Technical Program Manager - Compliance
Redmond, Washington, United States
Full Time Senior-level / Expert USD 117K - 250K
Microsoft
Every company has a mission. What's ours? To empower every person and every organization to achieve more. We believe technology can and should be a force for good and that meaningful innovation contributes to a brighter world in the future and today.Microsoft is built on trust and Azure is committed to being the most trusted cloud for its customers. As Azure expands services, certifications, and regions for its global customers, we require increased support for our customer certification efforts. The Azure Compliance team is seeking an enthusiastic and dedicated Senior Technical Program Manager to support Azure’s PCI assessments and other commercial compliance certifications.
The Senior Technical Program Manager-Compliance will lead and manage projects with multiple stakeholders within Azure as well as our external customers to understand compliance requirements and operationalize solutions to scale and maintain certifications and all regulatory requirements that applies to Azure. The role will be supporting audit engagements (including scoping, evidence gathering, etc.) across multiple Microsoft online service offerings.
Azure's Security and Compliance team manages the external audits that Azure maintains. We partner with engineering, security teams, and external auditors to ensure that our extensive certification portfolio can be leveraged by customers to build the most secure and compliant systems on Azure. We are a passionate group with a true customer-first mindset, enabling customers to effectively and securely leverage the many benefits of Azure Cloud. Come join our team and help our customers with their digital transformation efforts!
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Responsibilities
- Manage and accountable in execution of Azure external assessment/audit projects.
- Lead collaboration efforts with team members to devise strategies and processes around various compliance programs.
- Develop requirements for building tools and processes needed to develop a scalable and efficient compliance program.
- Create and manage effective action plans in response to audit findings.
- Design and review Azure’s procedures, practices, and documents to identify potential vulnerabilities or risks.
- Engage with customer and partner teams for ad hoc compliance support.
Other
Qualifications
Required Qualifications:
- Bachelor's Degree AND 4+ years of experience in engineering, product/technical program management, data analysis, or product development.
- OR equivalent experience.
- 4+ years of experience managing PCI DSS assessments.
- 2+ years of experience managing cross-functional and/or cross-team compliance projects.
Other Requirements:
- Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Additional / Preferred Qualifications:
- 8+ years of demonstrated experience with security control frameworks (e.g., SOC 2, PCI, ISO, NIST, COSO, COBIT).
- End to end experience of leading and managing multiple audit/certification lifecycle.
- Demonstrated project management excellence in medium-large scale projects.
- Attention to detail and willingness to dive into technical details.
- Proficient written, verbal, and presentation skills.
- Experience supporting new and innovative technologies.
- Enthusiasm, integrity, ingenuity, results-driven, self-motivated, and resourceful.
- Comfortable working in a fast-paced environment and able to manage multiple, disparate activities at once.
- Technical security and network background.
- CISSP, CISA, and/or CISM certification.
Technical Program Management IC4 - The typical base pay range for this role across the U.S. is USD $117,200 - $229,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $153,600 - $250,200 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay
Microsoft will accept applications for the role until July 9, 2024.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form.
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
#Azurecorejobs
Tags: Audits Azure CISA CISM CISSP Cloud COBIT Compliance NIST PCI DSS SOC SOC 2 Vulnerabilities
Perks/benefits: Medical leave Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Senior Cybersecurity Engineer jobs
- Open Security Operations Engineer jobs
- Open Cloud Security Architect jobs
- Open Information Security Officer jobs
- Open Principal Security Engineer jobs
- Open Information Security Specialist jobs
- Open Senior Cyber Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open IT Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Cyber Security Architect jobs
- Open Senior Product Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Senior Network Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Security Specialist jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Security Consultant jobs
- Open IT Security Analyst jobs
- Open Security Operations Analyst jobs
- Open Senior Information Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Information System Security Officer jobs
- Open Information System Security Officer (ISSO) jobs
- Open Agile-related jobs
- Open Risk assessment-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open SOC-related jobs
- Open Network security-related jobs
- Open ISO 27001-related jobs
- Open GCP-related jobs
- Open IAM-related jobs
- Open Application security-related jobs
- Open Threat intelligence-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open DoD-related jobs
- Open DevOps-related jobs
- Open CEH-related jobs
- Open Security Clearance-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open Kubernetes-related jobs
- Open EDR-related jobs
- Open TS/SCI-related jobs