Job description
About Concord Technologies
Our fax-delivery suite of products allows our clients to exchange millions of patient information, insurance and other documents safely, swiftly and securely every business day. Concord’s use of Artificial Intelligence, analytics, and other cutting-edge technology also analyzes the data being transferred within a fax, then delivers it into the right inboxes and workflows, fundamentally changing how data moves.
More than 2,300 healthcare organizations, financial providers, and companies in other equally document-intensive industries trust Concord to deliver their confidential and sensitive information. We care about our customers, and with a retention rate of more than 98%, it’s clear they love the service and value we provide.
We have been in business since 1996 and growing faster than ever. Our products are getting smarter, our customers are getting bigger, and our user community is exploding. To continue meeting market demand and anticipating our customers’ needs, we are expanding our offerings. That means assembling a world-class team to take us through this next phase of growth. We hope you’d like to join us!
About the role
Concord is seeking a Senior Security Program Manager to bring structure, visibility , and
disciplined execution to our enterprise security program. Reporting to the CISO, this role
serves as the CISO's operational partner and leads Concord's security program
management office (PMO) function, acting as the connective tissue between security
strategy and execution across Concord's distributed security functions. In this role, you
will serve as Concord's: 1) Security Program & Portfolio Lead- responsible for the
planning, coordination, and delivery of enterprise security , compliance, and customer
trust initiatives across the enterprise, and 2) Security Governance & Operations Lead-
establishing the governance forums, processes, metrics, and financial management
practices that give leadership clear , credible, and timely insight into security program
performance, risk posture, and investment. This role requires strong program
management, facilitation, and communication skills, working knowledge of security and
compliance frameworks, and the ability to influence without direct authority in a
regulated healthcare technology environment.
Essential Functions:
Security Program & Cross-Functional Execution
Lead the planning, coordination, and execution of enterprise security initiatives across Concord's distributed security functions, spanning strategic security , compliance, and customer trust priorities
Own the integrated security roadmap and project portfolio, translating strategic objectives into sequenced milestones, workstreams, decision points, and measurable outcomes
Manage project intake, prioritization, and scheduling for security initiatives, as well as IT and business-owned projects with security interests
Coordinate dependencies, handoffs, and critical path activities related to security initiatives across the enterprise, working with partner functions such as Technology, Product, Engineering, Legal, Privacy , Compliance, Operations, and Finance
Identify, track, and manage risks, issues, assumptions, and dependencies, and proactively escalate critical obstacles associated with all security-related projects and initiatives
Drive accountability and execution discipline across initiative owners and delivery partners without becoming the project manager for every individual effort
Security Governance, Change Management & Cross-Functional Visibility
Implement and lead a Security Change Advisory Board (CAB) to review , assess, and approve security-relevant changes across Concord's environments
Establish and facilitate security governance committees and leadership reviews, with clearly defined decision rights, escalation paths, and operating rhythms
Maintain disciplined tracking of decisions and action items to ensure security priorities are effectively assessed, communicated, and managed
Develop and maintain security metrics, KPIs/KRIs, and executive dashboards that provide actionable insight into security program performance, risk posture, compliance status, and progress against strategic initiatives
Prepare EL T reporting, executive updates, and decision materials that synthesize complex program information into clear , concise narratives
Security Process, Documentation & Program Enablement
Lead the development, standardization, and maintenance of security processes, procedures, standards, playbooks, RACI matrices, operating models, and program documentation across Concord's distributed security functions
Establish consistent program management methodologies, reporting practices, and delivery expectations across security functions
Identify process gaps and drive continuous improvement initiatives that enhance consistency , accountability , scalability , operational efficiency , and overall security program maturity
Cross-Functional Security Planning, Budget & Operational Management
Support the CISO in the planning, coordination, and management of the security operating plan, vendor portfolio (including contracts, licensing, and renewals), resource allocation and capacity , and operational priorities
Manage the security budget lifecycle in partnership with Finance, including annual planning, forecasting, variance analysis, and spend reporting, to provide financial visibility and accountability
Coordinate annual and quarterly planning activities and help prioritize security investments and resources based on business objectives, risk, compliance requirements, and strategic priorities
Develop business cases and ROI analyses to support security investment decisions and ensure spending remains aligned with approved budgets, program objectives, and organizational priorities
Required Qualifications:
Bachelor's degree in Information T echnology , Cybersecurity , Business Administration, Project Management, or related field, or an equivalent combination of education and experience
7+ years of program or project management experience, including at least 4 years supporting Information Security , IT , or technology risk initiatives
Experience building or leading PMO, governance, or portfolio management functions, including steering committees, change advisory boards, or executive governance forums
Working knowledge of cybersecurity and regulatory frameworks such as NIST CSF, NIST 800-53, ISO 27001, HIP AA, HITRUST , SOC 2, and PCI-DSS
Familiarity with core security domains (identity and access management, vulnerability management, detection and response, cloud security , data loss prevention) and IT infrastructure concepts sufficient to engage credibly with technical teams
Experience managing budgets, forecasting, variance analysis, vendor portfolios, and purchase order processes, including developing business cases and ROI analyses
Demonstrated experience developing KPIs/KRIs, dashboards, and executive reporting that leaders can act on
Strong written and verbal communication skills, with the ability to create crisp executive updates, one-pagers, and decision materials for EL T audiences
Excellent f acilitation skills and a proven ability to influence without direct authority and align stakeholders across a matrixed, distributed organization
Strong understanding of Agile, W aterf all, and hybrid delivery methodologies, with hands-on experience using tools such as Jira, Power BI, or Microsoft Project
Comfort operating in ambiguity and bringing structure, sequencing, and clarity to complex work
Experience in healthcare IT or another highly regulated industry preferred
At least one relevant certification (PMP , P gMP , CISSP , CISM, or equivalent) required; both project management and security certifications preferred
Compensation Range: $140,000 - $160,000
Range can flux dependent on experience, education/training, etc.
Additional employee benefits at Concord Technologies:
401K plan w/ 6% company match (vests immediately)
Flex-Time off + sick time
10 company holidays
Full suite of health benefits (Medical, Dental, Vision)– employee only coverage covered at 100% (no employee cost). For employees + dependents, Concord covers 60% of premiums.
Voluntary insurance options:
Pet insurance
Employee Life and AD&D
Spousal Life and AD&D
Child Life and AD&D
Paid Parental Leave program
Free unlimited ORCA card (Seattle area residents)
Employee Rewards and Recognition through NectarHR
Unlimited access to Udemy for Business
Concord Technologies is an Equal Employment Opportunity (EEO) employer. It is the policy of the Company to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
Originally posted on Himalayas
Who can apply
Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.