Elo is seeking a dedicated Project Manager, Security to drive Elo Software Engineering's execution of Project Aegis, a 16-initiative enterprise security program running concurrently across five engineering teams, alongside Elo's regulatory and software assurance commitments. This role is the dedicated driver of that work: it exists so that security execution does not depend on the spare cycles of engineering leads already carrying the product roadmap.
Job Purpose & Responsibilities:Program Management - Project Aegis- Own end-to-end program management of Elo's execution against the various security initiatives and ensure Elo's security posture is kept up to date.
- Maintain the master program plan: scope, milestones, dependencies, and critical path across all initiatives and the engineering teams they touch
- Own the two-week reporting cadence into the enterprise security dashboard, delivering accurate and on-time status without diverting engineering leads
- Track cross-initiative dependencies and sequencing - for example, CI/CD consolidation preceding zero-tolerance gate enforcement - and escalate slippage early
- Maintain the Aegis project in Jira as the single source of truth for initiative status, ownership, deliverables, and dependencies
- Drive each initiative to a named Elo point of contact, defined deliverables, and an agreed date
Enterprise Interface- Serve as Elo's primary program interface to the named enterprise initiative owners across Enterprise Security, Product Security, IT, and the Software Engineering Tools & Platform team
- Coordinate Elo points of contact and SMEs for each initiative's discovery effort, ensuring active partnership with initiative owners to define scope and resolve edge cases
- Represent Elo in enterprise program governance and interface with the enterprise DMO/PMO
- Translate enterprise requirements into Elo-specific deliverables, and surface gaps where enterprise scope does not yet cover Elo platforms or systems
Regulatory & Software Assurance Programs- Manage the OWASP SAMM assessment program through to external audit, coordinating evidence collection and remediation across engineering functions
- Assist with PCI Secure Software Framework (PCI-SSF) assessment activities, including documentation delivery
- Support product certification programs (EU RED cybersecurity / EN 18031 and related), tracking findings to closure across engineering teams
- Maintain a consolidated compliance calendar of regulatory and audit deadlines across all programs
Prioritization, Resourcing & Risk- Work with engineering leads to prioritize security work alongside existing product roadmaps
- Surface trade-offs, capacity constraints, and resource asks to leadership with clear options and impact - before they become schedule risk
- Maintain program-level risk and issue registers, and drive items to closure
- Track remediation and security debt reduction at program level, reporting trend and completion against target
- Facilitate working sessions between engineering leads and initiative owners to surface automation and AI-enabled approaches to security workload
Communication & Governance- Produce executive-level program status for Elo and enterprise leadership
- Run recurring program governance meetings, ensuring decisions and actions are recorded and owned
- Translate technical and regulatory detail for business stakeholders, and business priorities for engineering teams
- Other reasonable directives, responsibilities, and activities may change or be assigned at any time with or without notice
Minimum Qualifications:- Bachelor's degree in computer science, information technology, engineering, or a related field
- At least 5 years of project or program management experience in a technology organization, with a minimum of one year in the security space
- Demonstrated experience running multi-team programs against externally imposed deadlines (regulatory, audit, or customer commitments)
- Proficiency with Jira and standard project management tooling
- Strong written communication, with the ability to produce executive-level reporting independently
Preferred Qualifications:- Experience managing security, compliance, or audit programs
- Familiarity with one or more of: OWASP SAMM, EU CRA, PCI-SSF, ISO 27001, NIST, or IEC 62443
- PMP, PMI-ACP, Certified ScrumMaster, or equivalent certification
- Experience operating in a post-acquisition environment where a parent company sets enterprise guardrails and the business unit owns execution
- Experience with cloud platform and/or connected-device product organizations
- Proficiency in Agile and Scrum delivery methodologies
- Advanced degree
Specific Professional Skills/Competencies:- Ability to drive accountability and deliverables across teams without direct authority
- Sufficient technical depth to hold credible conversations with security and platform engineers, and to challenge dates and dependencies
- Strong dependency management across concurrent workstreams and competing priorities
- Highly organized under multiple simultaneous deadlines, with disciplined follow-through on actions and evidence
- Clear, concise executive communication - able to reduce a complex program to the decisions leadership needs to make
- Proactive risk identification, with a bias toward early escalation over late surprise
- Demonstrated business ethics and a professional demeanor, leading by example
Physical Demands:- Ability to lift up to OSHA single person lift requirements
- Ability to sit, stand, bend, or walk for prolonged periods of time
- Ability to use a computer
- Ability to travel domestically and internationally, if required
- Must be able to work a standard full-time schedule
- Must be able to work a hybrid schedule, in the Milpitas office
Elo Touch Solutions offers a competitive total compensation package. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short-Term Disability, and Tuition Reimbursement. Starting compensation for this role typically ranges between $115,600 and $165,800 annually is commensurate with experience relative to the position and may vary based on candidate geographical location.