waypointjobs

Concord Technologies

Senior Security Program Manager

Remote — United States (see country and timezone requirements)

Check who can apply and the requirements below before continuing.

Job description

About Concord Technologies

Our fax-delivery suite of products allows our clients to exchange millions of patient information, insurance and other documents safely, swiftly and securely every business day. Concord’s use of Artificial Intelligence, analytics, and other cutting-edge technology also analyzes the data being transferred within a fax, then delivers it into the right inboxes and workflows, fundamentally changing how data moves.

More than 2,300 healthcare organizations, financial providers, and companies in other equally document-intensive industries trust Concord to deliver their confidential and sensitive information. We care about our customers, and with a retention rate of more than 98%, it’s clear they love the service and value we provide.

We have been in business since 1996 and growing faster than ever. Our products are getting smarter, our customers are getting bigger, and our user community is exploding. To continue meeting market demand and anticipating our customers’ needs, we are expanding our offerings. That means assembling a world-class team to take us through this next phase of growth. We hope you’d like to join us!

About the role

Concord is seeking a Senior Security Program Manager to bring structure, visibility , and

disciplined execution to our enterprise security program. Reporting to the CISO, this role

serves as the CISO's operational partner and leads Concord's security program

management office (PMO) function, acting as the connective tissue between security

strategy and execution across Concord's distributed security functions. In this role, you

will serve as Concord's: 1) Security Program & Portfolio Lead- responsible for the

planning, coordination, and delivery of enterprise security , compliance, and customer

trust initiatives across the enterprise, and 2) Security Governance & Operations Lead-

establishing the governance forums, processes, metrics, and financial management

practices that give leadership clear , credible, and timely insight into security program

performance, risk posture, and investment. This role requires strong program

management, facilitation, and communication skills, working knowledge of security and

compliance frameworks, and the ability to influence without direct authority in a

regulated healthcare technology environment.

Essential Functions:

Security Program & Cross-Functional Execution

Lead the planning, coordination, and execution of enterprise security initiatives across Concord's distributed security functions, spanning strategic security , compliance, and customer trust priorities

Own the integrated security roadmap and project portfolio, translating strategic objectives into sequenced milestones, workstreams, decision points, and measurable outcomes

Manage project intake, prioritization, and scheduling for security initiatives, as well as IT and business-owned projects with security interests

Coordinate dependencies, handoffs, and critical path activities related to security initiatives across the enterprise, working with partner functions such as Technology, Product, Engineering, Legal, Privacy , Compliance, Operations, and Finance

Identify, track, and manage risks, issues, assumptions, and dependencies, and proactively escalate critical obstacles associated with all security-related projects and initiatives

Drive accountability and execution discipline across initiative owners and delivery partners without becoming the project manager for every individual effort

Security Governance, Change Management & Cross-Functional Visibility

Implement and lead a Security Change Advisory Board (CAB) to review , assess, and approve security-relevant changes across Concord's environments

Establish and facilitate security governance committees and leadership reviews, with clearly defined decision rights, escalation paths, and operating rhythms

Maintain disciplined tracking of decisions and action items to ensure security priorities are effectively assessed, communicated, and managed

Develop and maintain security metrics, KPIs/KRIs, and executive dashboards that provide actionable insight into security program performance, risk posture, compliance status, and progress against strategic initiatives

Prepare EL T reporting, executive updates, and decision materials that synthesize complex program information into clear , concise narratives

Security Process, Documentation & Program Enablement

Lead the development, standardization, and maintenance of security processes, procedures, standards, playbooks, RACI matrices, operating models, and program documentation across Concord's distributed security functions

Establish consistent program management methodologies, reporting practices, and delivery expectations across security functions

Identify process gaps and drive continuous improvement initiatives that enhance consistency , accountability , scalability , operational efficiency , and overall security program maturity

Cross-Functional Security Planning, Budget & Operational Management

Support the CISO in the planning, coordination, and management of the security operating plan, vendor portfolio (including contracts, licensing, and renewals), resource allocation and capacity , and operational priorities

Manage the security budget lifecycle in partnership with Finance, including annual planning, forecasting, variance analysis, and spend reporting, to provide financial visibility and accountability

Coordinate annual and quarterly planning activities and help prioritize security investments and resources based on business objectives, risk, compliance requirements, and strategic priorities

Develop business cases and ROI analyses to support security investment decisions and ensure spending remains aligned with approved budgets, program objectives, and organizational priorities

Required Qualifications:

Bachelor's degree in Information T echnology , Cybersecurity , Business Administration, Project Management, or related field, or an equivalent combination of education and experience

7+ years of program or project management experience, including at least 4 years supporting Information Security , IT , or technology risk initiatives

Experience building or leading PMO, governance, or portfolio management functions, including steering committees, change advisory boards, or executive governance forums

Working knowledge of cybersecurity and regulatory frameworks such as NIST CSF, NIST 800-53, ISO 27001, HIP AA, HITRUST , SOC 2, and PCI-DSS

Familiarity with core security domains (identity and access management, vulnerability management, detection and response, cloud security , data loss prevention) and IT infrastructure concepts sufficient to engage credibly with technical teams

Experience managing budgets, forecasting, variance analysis, vendor portfolios, and purchase order processes, including developing business cases and ROI analyses

Demonstrated experience developing KPIs/KRIs, dashboards, and executive reporting that leaders can act on

Strong written and verbal communication skills, with the ability to create crisp executive updates, one-pagers, and decision materials for EL T audiences

Excellent f acilitation skills and a proven ability to influence without direct authority and align stakeholders across a matrixed, distributed organization

Strong understanding of Agile, W aterf all, and hybrid delivery methodologies, with hands-on experience using tools such as Jira, Power BI, or Microsoft Project

Comfort operating in ambiguity and bringing structure, sequencing, and clarity to complex work

Experience in healthcare IT or another highly regulated industry preferred

At least one relevant certification (PMP , P gMP , CISSP , CISM, or equivalent) required; both project management and security certifications preferred

Compensation Range: $140,000 - $160,000

Range can flux dependent on experience, education/training, etc.

Additional employee benefits at Concord Technologies:

401K plan w/ 6% company match (vests immediately)

Flex-Time off + sick time

10 company holidays

Full suite of health benefits (Medical, Dental, Vision)– employee only coverage covered at 100% (no employee cost). For employees + dependents, Concord covers 60% of premiums.

Voluntary insurance options:

Pet insurance

Employee Life and AD&D

Spousal Life and AD&D

Child Life and AD&D

Paid Parental Leave program

Free unlimited ORCA card (Seattle area residents)

Employee Rewards and Recognition through NectarHR

Unlimited access to Udemy for Business

Concord Technologies is an Equal Employment Opportunity (EEO) employer. It is the policy of the Company to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.

Originally posted on Himalayas

Who can apply

Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.

Ready for your next step?Apply on the official website
Apply on Himalayas ↗

Explore related searches

Current related jobs

infisical

Jobicy

Senior Full Stack Engineer

Remote — Brazil, Canada, Europe, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Mission

Remote — USA

Salary not specifiedRemote

The Music Mission enables music creators to grow, engage, and monetize their fan bases on Spotify. Central to the Music Mission's vision is the d…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Promotion

Remote — USA

Salary not specifiedRemote

The Music Mission enables Music creators to grow, engage & monetize their fan bases on Spotify. Central to the Music Mission's vision is the deve…

Listing review due 2026-10-07View job

infisical

Jobicy

Strategic Finance

Remote — Canada, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job