Principal Security Technical Program Manager
Oracle
As a vital member of Oracle Cloud Infrastructure’s (OCI) Security Operations Organization, you will be at the forefront of protecting Oracle’s cloud and enterprise environments from both external adversaries and insider threats. As our team continues to expand and tackle ambitious initiatives, we are seeking experienced security professionals with a proven track record in safeguarding critical infrastructure and data.
Our rapidly growing team specializes in threat hunting, analyzing indicators of compromise (IOCs), investigating security incidents, managing incident responses, and conducting digital forensics across IaaS, PaaS, and SaaS platforms. In this role, you will be part of a dedicated security operations team, helping to coordinate the buildout of data loss prevention tools and automations to detect and respond to security threats in real time and support program operations and processes.
The Role
We are looking for an experienced Security Technical Program Manager who is proactive, results-oriented, and demonstrates strong ownership and accountability. The successful candidate will have extensive experience engaging with senior security and technology leaders, as well as their operations teams. You should possess a strong background in program management within technological environments, with a track record of coordinating and delivering large-scale, security-focused initiatives.
Exceptional communication skills, meticulous attention to detail, and the ability to translate data into actionable metrics are crucial for success in this role. You will lead the planning, coordination, and execution of a variety of security projects—including tool implementation, process development, analytics and reporting automation, and establishment of case management tools and related processes.
The ideal candidate will have significant experience in developing and tracking meaningful OKRs that reflect the health and maturity of security domains. You will collaborate closely with partner security teams (such as SOC, digital forensics, incident response, physical security, and engineering) and work cross-functionally with senior leaders from HR, Legal, crisis management, and other business units during security-related investigations.
Key Responsibilities
Program & Project Management : Plan, scope and coordinate multiple complex, cybersecurity initiatives, ensuring effective prioritization, resource allocation, and execution within defined timelines.
Metrics & Performance Tracking : Develop and implement value-based metrics to measure the effectiveness of the cybersecurity program, continuously refining KPIs to drive business impact.
Process Design & Optimization : Architect, implement, and enhance security-related business processes to improve efficiency, scalability, and compliance.
Business Operations Execution : Drive critical business operations activities, including workforce planning, efficiency tracking, capacity management, and executive reporting on Key Performance Indicators (KPIs) and Objectives and Key Results (OKRs).
Data-Driven Decision Making : Analyze and interpret complex datasets using Excel, Power BI, Python, or other analytics tools to identify trends, generate insights, and provide actionable recommendations to leadership.
Cross-Functional Communication : Facilitate clear, concise communication across teams, ensuring alignment on key priorities and enabling effective decision-making at all levels.
Executive Reporting & Presentations : Develop high-impact reports, dashboards, and presentations tailored for senior leadership, ensuring clarity, professionalism, and strategic insight.
Strategic Planning & Execution : Define project requirements, establish roadmaps, and manage execution for complex cybersecurity programs, balancing long-term strategy with immediate business needs.
Issue & Risk Management : Identify, assess, and mitigate program risks and blockers, ensuring continued progress toward cybersecurity and operational goals.
Continuous Improvement & Agility : Maintain a bias for action, iterating and refining processes to enhance efficiency, reduce operational bottlenecks, and support evolving business needs.
Knowledge Management : Create and maintain structured documentation, templates, and operational artifacts to support collaboration and knowledge sharing.
Security Program Oversight : Oversee multiple security initiatives, ensuring alignment with organizational security objectives and compliance requirements.
Problem Solving & Critical Thinking : Leverage data-driven methodologies to solve complex business and technical challenges, optimizing cybersecurity operations for effectiveness and efficiency.
Preferred Qualifications
Program & Process Management
- 7–10 years of experience in technical and/or business program management, preferably in cybersecurity, compliance, or cloud services.
- Experience with Agile frameworks, including managing key processes such as stand-ups and scrums.
- Project Management Professional (PMP) certification or equivalent industry certification preferred.
- Proven ability to navigate ambiguity in fast-paced, dynamic environments with adaptability and resilience.
- Experience in collaborative, event-driven operations, working effectively within cross-functional teams.
Leadership & Communication
- Exceptional communication skills, with the ability to convey complex information clearly to technical and non-technical audiences.
- Strong executive presence, capable of engaging and influencing senior leadership.
- Active listening and critical thinking skills, enabling rapid assessment of situations to determine criticality and scope.
- Meticulous attention to detail, ensuring accuracy and precision in program execution.
Financial & Procurement Oversight
- Experience in budget management, financial reporting, and data analysis, ensuring operational efficiency and cost control.
- Experience working with procurement teams
Cybersecurity & Technical Expertise
- Direct experience in cybersecurity or compliance with a technology or cloud service provider.
- Strong understanding of the interrelationship background and purpose of key security functions across an end-to-end cybersecurity organization.
- Ability to translate technical concepts into business insights, ensuring effective communication with non-technical stakeholders.
Data Analytics & Automation
- Experience with scripting or coding languages for data analytics, such as SQL (data querying), DAX (Power BI), Python, or R, to enhance reporting, automate processes, and perform custom analyses.