Technical Program Manager, Information Security Strategic Initiatives

San Mateo, CA

Guidewire Software

Elevate your P&C insurance with Guidewire's industry-leading software! Streamline workflows, enhance customer experience, and drive growth. Learn more today!

View company page

As part of the Information Security team, we are looking for an experienced and motivated Technical Program Manager, Information Security Strategic Initiatives. This individual must be a natural communicator who can bridge the gap and gain consensus and trust between the Information Security team and business stakeholders. Be accurate, understandable, and manage actionable plans to guide our business to be more functional and successful by raising the Company's security standards. This role is responsible for planning, executing, and delivering strategic security projects that balance the competing demands of scope, time, cost, quality, resources, and risks.
You will lead strategic security initiatives (technical and business-oriented), including engaging in or managing these initiatives across our product development and cloud security.  Across these initiatives, you will focus on identification and prioritization of highest value improvement areas, understanding as-is processes, identifying gaps, gathering business requirements, developing and documenting possible solutions (e.g., process flows, systems designs and configurations, etc.), analysis and driving decisions to the optimal solution, scoping and developing implementation plans, leading cross-functional teams, and designing change management strategies to ensure user adoption. This individual will have an opportunity to navigate forward-looking security capabilities in enhancing Guidewire's product development and cloud security. The candidate should have experience working with multiple departments such as Product Development, Information Systems/Technology, and Cloud Operations.

Job Responsibilities:

  • Work closely with Infosec, Product Development, and Cloud Operations teams to drive prioritization, planning, and execution of projects in the portfolio
  • Facilitate project meetings, including core team meetings and steering committee meetings
  • Track deliverables, milestones, deadlines, and report on assigned projects
  • Escalate urgent issues and drive them to closure promptly
  • Drive security and process improvements into the Infosec team and throughout the Company Act as a liaison with client groups and the Information Security team to facilitate effective and seamless communication channels
  • Create presentations for Executive Leadership
  • Estimate timelines and resource requirements
  • Manage vendor relationship and review scope of work in agreements
  • Promote the adoption of program frameworks, tools, and best practices

Minimum Requirements:

  • 3+ years project management experience in software development, cloud or product security
  • Strong communication skills to work with and explain security requirements to development teams, product management, and senior management
  • B.S degree preferred in CS, IS, or another technical field
  • Efficiency and effectively leveraging Microsoft PowerPoint, Excel, Google docs to create analytics and executive dashboards
  • Ability to effectively prioritize and execute tasks in a dynamic and fast-paced, evolving environment
  • Experience working with commercial Static (SAST), Dynamic (DAST), and vulnerability management methodologies and tools. Experience should include partnering with senior leaders to present product vulnerability measures/metrics to help drive remediation
  • Experience with Secure Software Development Lifecycle (SSDLC) practices in an agile development environment

Desired Skills & Experience:

  • Cloud experience desired, particularly in AWS
  • Strong hands-on knowledge of Jira ticketing workflow and ability to generate metrics and reports
  • CISSP, Agile/Scrum, PMP, or other security and project management related certifications
  • Knowledge of National Institute of Standards and Technology (NIST) security standards and frameworks
About GuidewireGuidewire is the platform P&C insurers trust to engage, innovate, and grow efficiently.
Guidewire combines core, data, digital, analytics, and AI to deliver our platform as a cloud service. More than 400 insurers, including the largest and most complex in the world, run on Guidewire.
As a partner to our customers, we continually evolve to enable their success. We are proud of our unparalleled implementation track record with 1000+ successful projects, supported by the largest R&D team and partner ecosystem in the industry. Our Marketplace provides hundreds of add-ons that accelerate integration, localization, and innovation.
Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position.
Disability Accommodations and Guidewire’s Appeals Process. Guidewire provides accommodations to the hiring process to create a fair opportunity for candidates with disabilities to contend for open positions. Accommodation requests should be directed to (650) 356-4940 or Accommodations@guidewire.com. If things do not go as hoped, we invite you to use our appeals process. Guidewire promises to independently review any denied accommodation and any decision not to offer you the position. The appeals process is the same in either case. Within five business days of receiving a notice of denial of an accommodation, or receiving a notice of your non-selection for a vacancy, call (650) 356-4940 or e-mail Accommodations@guidewire.com to make an appeal. Guidewire will assign a new decision-maker to review the request and/or hiring decision, who will then notify you in writing of a decision within 10 business days.

Tags: Agile Analytics AWS C CISSP Cloud DAST Jira NIST Product security R&D SAST Scrum Vulnerability management

Perks/benefits: Career development

Region: North America
Country: United States
Job stats:  7  2  0
Category: Leadership Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.