Principal Compliance Technical Program Manager

1 Month ago • 6-10 Years • Cyber Security • $137,600 PA - $294,000 PA

Job Summary

Job Description

The Principal Compliance Technical Program Manager at Microsoft Security will lead the charge in building compliance into engineering processes, driving automation, and establishing a 'compliance by design' approach. This role requires experience in engineering, compliance, or program management and involves managing cross-functional projects, defining best practices, meeting regulatory requirements (ISO/IEC 27x, FedRAMP, SOC, PCI DSS, HIPAA), and providing guidance on compliance matters. Responsibilities include developing and implementing controls, collaborating with security teams, staying up-to-date with regulatory changes, and reporting on program effectiveness. The ideal candidate will proactively identify and address systemic gaps, prevent one-off solutions, and understand the business priorities related to security training and education.
Must have:
  • 6+ years experience in relevant field
  • 3+ years managing cross-functional projects
  • Establish 'shift-left' compliance strategy
  • Drive controls and tooling automation
  • Compliance by design mindset
  • Guide internal teams on compliance
Good to have:
  • Experience with emerging privacy regulations
  • Technical Program Management IC5 experience
Perks:
  • Industry leading healthcare
  • Educational resources
  • Discounts on products and services
  • Savings and investments
  • Maternity and paternity leave
  • Generous time away
  • Giving programs
  • Networking opportunities

Job Details

Overview

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate.  Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. 

 

The Microsoft Security Compliance Program team educates and empowers the Microsoft Security organization to meet these regulations and build customer trust. The Compliance Program team ensures that Security products and services comply with Microsoft cybersecurity and privacy requirements while also leading efforts to deliver enterprise-wide cutting-edge compliance solutions. We are seeking an experienced Principal Compliance TechnicalProgram Manager tohelp lead our compliance by design and engineering efforts (Shift-left strategy).  This role provides you with the leadership opportunity to effect change that will havemarket-wide impacts.

 

The ideal candidate could have an engineering or compliance background, understanding of engineering best practices, and experience in designing and implementing controls automation at scale. This candidateneedsto have experience providing guidance and direction to technical audiences, ability to drive towards the “big picture” while managing details, and the ability to build relationships with key partners.

 

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.

 

Successful candidates can be located anywhere in the U.S.

Qualifications

Required Qualifications:

  • Bachelor's Degree AND 6+ years experience in engineering, security operations, compliance, audit, product/technical program management, data analysis, or product development 
    • OR equivalent experience.
  • 3+ years of experience managing cross-functional and/or cross-team projects. 

Other Requirements:

The ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include but are not limited to the following specialized security screenings: 

  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Preferred Qualifications:

  • Bachelor's Degree AND 10+ years experience in engineering, security operations, compliance, audit, product/technical program management, data analysis, or product development
    • OR equivalent experience.
  • 8+ years of experience managing cross-functional and/or cross-team projects. 
  • Experience with and awareness of emerging privacy and data governance related regulations.

Technical Program Management IC5 - The typical base pay range for this role across the U.S. is USD $137,600 - $267,000 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $180,400 - $294,000 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

 

Microsoft will accept applications for the role until January 17, 2025.

 

#MSFTSecurity #MSFTCompliance #SHPE24MSFT

Responsibilities

  • Establish “shift left” strategy of building compliance into our engineering processes, drive controls and tooling automation.
  • Embrace a “compliance by design” mindset; proactively identify systemic gaps that should be integrated into program design and elevate them to the appropriate owners. Prevent local/one-off solutioning whenever possible.
  • Understand the business priorities and strategies when it comes to training and education of security policies and engineering practices to enable durable customer trust. 
  • Ability to identify opportunities to embed compliance controls within development processes, tools, and practices, ensuring they are an integral part of the product development workflow.
  • Work with security teams to define best practices to navigate and meet regulatory requirements, ensuring the organization achieves and maintains necessary certifications ((e.g., such as ISO/IEC 27x, FedRAMP, SOC, PCI DSS, HIPPA)
  • Provide guidance and support to internal teams on compliance-related matters, including policy development, risk management, and incident response.
  • Lead cross-functional teams to address compliance-related issues and drive continuous improvement in the organization's compliance posture.
  • Stay up to date with the latest regulatory changes and industry best practices and ensure the compliance program is continuously updated to reflect these changes.
  • Conduct regular assessments to ensure compliance with relevant regulations and standards.
  • Accountable for delivery of measurement frameworks, processes, and maturity models to both understand and improve the bar of technical compliance across the portfolio that meets needs of the rhythm of business with exec leadership.
  • Monitor and report on the effectiveness of the compliance program, identifying areas for improvement and implementing corrective actions as needed.
  • Serve as a subject matter expert on compliance and regulatory matters, providing strategic advice and guidance to senior leadership.
  • Coordinate with other privacy, compliance, and risk management leaders in the company to ensure Microsoft Security’s programs are aligned and partner closely with governance owners, including Privacy Regulatory Affairs and Corporate External Legal Affairs Front Line.
  • Embody our and
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
Industry leading healthcare
Educational resources
Discounts on products and services
Savings and investments
Maternity and paternity leave
Generous time away
Giving programs
Opportunities to network and connect

Similar Jobs

Saviynt - Sr. Director (Application Access Governance) -  Governance Risk & Compliance

Saviynt

Atlanta, Georgia, United States (Hybrid)
3 Months ago
Xsolla - Incident Manager

Xsolla

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
3 Months ago
Zeta - Sr. Site Reliability Engineer

Zeta

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Fortis Games - DevOps Engineer II

Fortis Games

Portugal (On-Site)
2 Months ago
Illumina - IT Engineer- Data Protection

Illumina

Bengaluru, Karnataka, India (On-Site)
3 Months ago
HRS Group - Sr Security Compliance Engineer (all genders)

HRS Group

Sahibzada Ajit Singh Nagar, Punjab, India (Hybrid)
4 Months ago
PwC - Digital Risk Solutions Senior Associate

PwC

Vancouver, British Columbia, Canada (On-Site)
3 Months ago
PwC - Senior Experimentado - Application support analyst

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
3 Months ago
ByteDance - Product Solutions Architect - Enterprise Security

ByteDance

Singapore (On-Site)
3 Months ago
Palo Alto Networks - Systems Engineering Manager - SE Academy, India

Palo Alto Networks

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Rackspace Technology - Senior DataDog Developer

Rackspace Technology

Gurugram, Haryana, India (Remote)
3 Months ago
Rush Street Interactive - Threat Intelligence Analyst

Rush Street Interactive

Tallinn, Harju County, Estonia (On-Site)
1 Month ago
Gaming Innovation Group  - Infrastructure Engineer

Gaming Innovation Group

Sliema, Malta (Hybrid)
3 Months ago
Google - Senior Cyber Security Consultant, Google Public Sector

Google

Reston, Virginia, United States (On-Site)
1 Month ago
Fliff  Inc  - Senior DevOps Engineering Manager

Fliff Inc

Sofia, Sofia City Province, Bulgaria (Remote)
4 Months ago
Ajmera Infotech - Kubernetes Experts

Ajmera Infotech

Hyderabad, Telangana, India (On-Site)
2 Months ago
Saviynt - Senior Manager – Cyber Defense/ Security Operations Center

Saviynt

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Saviynt - Lead UX Designer, Product Management

Saviynt

United States (Remote)
3 Months ago
Barracuda Networks  Inc  - Principal Application Security Engineer

Barracuda Networks Inc

United States (Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in undefined

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Cyber Security Jobs

Sinch - Product Security Engineer

Sinch

Melbourne, Victoria, Australia (Hybrid)
3 Months ago
Microsoft - Solution Sales Specialist - Security

Microsoft

Bangkok, Bangkok, Thailand (On-Site)
1 Month ago
PwC - Technologie & Operation Intern

PwC

Pointe-Noire, Kouilou, Republic Of The Congo (On-Site)
3 Months ago
CloudLinux - Middle/Senior Python Developer with Security Expertise (worldwide remote)

CloudLinux

İstanbul, İstanbul, Türkiye (Remote)
3 Months ago
Postman - Staff Security Architect

Postman

San Francisco, California, United States (On-Site)
4 Months ago
Google - Cyber Engagement Lead, Mandiant Consulting

Google

(On-Site)
1 Month ago
Morning Star - Senior Application Security Architect

Morning Star

Chicago, Illinois, United States (Hybrid)
4 Months ago
PwC - IN-Senior Associate – Cyber- Strategy & Governance  –Advisory- Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Google - Senior Delivery Executive

Google

Virginia, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Microsoft is a tech giant that develops, licenses, and supports a range of software products, services, and devices.

Redmond, Washington, United States (On-Site)

Mountain View, California, United States (On-Site)

London, England, United Kingdom (Hybrid)

London, England, United Kingdom (On-Site)

Jakarta, Jakarta, Indonesia (On-Site)

Prague, Prague, Czechia (On-Site)

Montreal, Quebec, Canada (On-Site)

Dublin, County Dublin, Ireland (On-Site)

Hyderabad, Telangana, India (On-Site)

View All Jobs

Get notified when new jobs are added by Microsoft

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug