Partner 20, Staff Security Technical Program Manager

a16z

$243K — $284K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of technical program management experience
  • At least 3 years managing security programs
  • Proven ability to scale vulnerability management programs
  • Technical fluency to interpret security findings and risk ratings
  • Familiarity with common SaaS tools and their security implications
  • Experience with agile methodologies and documentation tools
  • Excellent writing skills with a focus on clarity and structure
  • Strong interpersonal skills to collaborate with diverse departments

Responsibilities

  • Own and streamline the security remediation process across the firm
  • Manage the vulnerability management program, ensuring timely tracking and reporting
  • Coordinate efficient vendor security reviews and keep stakeholders updated
  • Drive cross-team security initiatives from inception to completion
  • Establish and maintain the team's operational rhythm, ensuring visibility into progress
  • Enhance documentation practices, keeping materials organized and accessible
  • Define metrics to evaluate program effectiveness and translate findings into actionable insights

Benefits

  • Participation in a carry program and bonus programs
  • Health, dental, and vision insurance
  • Disability and life insurance coverage
  • 401K retirement plan
  • Vacation and sick leave
Full Job Description
The Role

We're hiring a Staff Security Technical Program Manager to run the operating system of the a16z Security team. You'll own the firm's vulnerability management program, drive cross-team security initiatives to completion, and own the planning rhythm that keeps the team and its stakeholders aligned: sprints, OKRs, timelines, and the documentation and ticketing hygiene that make all of it real.

Security at a16z moves fast and touches every part of the firm. We work in close partnership with teams across the firm. Your job is to keep that work on schedule, keep decisions written down, and make sure nothing gets dropped between teams. Leadership should be able to get the real status from you, and engineers should see you as someone who removes obstacles, not someone who adds process.

This role requires an in-office presence 2 days a week, Tuesday and Thursday, in our San Francisco, CA office, with occasional days in our Menlo Park, CA office.
To join our team, you should be excited to:
  • Own security remediation across the firm, end to end: Pull findings from threat models, code reviews, penetration tests, vulnerability management, audits, and incident postmortems into a single tracked backlog, and manage it with clear owners, priorities, remediation SLAs
  • Run the vulnerability management program: Scan coverage, patching cadence, exceptions and risk acceptance, and reporting that shows leadership where risk stands
  • Work with stakeholders to keep vendor security reviews fast and consistent, and keep requesters informed on where their review stands
  • Drive cross-team security initiatives from kickoff through delivery, coordinating work across Security, IT, Legal, HR, and Compliance, and partnering with owners to keep commitments on track
  • Build and run the team's execution rhythm: Sprint planning, quarterly OKRs, and ticket hygiene that keeps the work visible
  • Raise the bar on documentation: Program docs, runbooks, decision records, and postmortem follow-ups that stay findable and current
  • Define and track the metrics that tell us whether our programs are working, and turn them into actionable insights
Minimum Qualifications
  • 7+ years of technical program management experience, with at least 3 years running security programs
  • A track record of owning a vulnerability management program at scale: SLAs, remediation tracking across teams you don't control, executive reporting, and measurable risk reduction
  • Technical fluency to be credible with security engineers: you can read a finding, understand severity and exploitability, and push back on a risk rating with reasons.
  • Knows the common SaaS tools (okta, Slack,GSuite etc) of an enterprise stack well enough to talk through their security issues with the teams that own them.
  • Deep hands-on experience with agile execution: sprint planning, OKR frameworks, ticketing systems (Jira, Linear, or equivalent), documentation platforms like Confluence or Notion, and building program reporting in spreadsheets or BI dashboards.
  • Writing that is clear, brief, and structured
  • Ability to build strong working relationships across functions like IT, Legal, Compliance, and engineering, and execute through those partnerships: work gets done with other teams, not around them.
  • Low ego, high empathy, and the capacity to collaborate effectively with diverse teams

The anticipated salary range for this role is between $243,000 - $284,000, actual starting pay may vary based on a range of factors which can include experience, skills, and scope.

This role is eligible to participate in the a16z carry program and various discretionary bonus programs as well as benefit and perquisite plans including health, dental, vision, disability, life insurance, 401K plan, vacation, and sick leave.

Similar Jobs

More Jobs at a16z

More Information Technology Jobs

Find similar Partner 20, Staff Security Technical Program Manager jobs: