1

Cybersecurity Rotational Program Jobs in Los Altos, CA

Cyber Security Engineer

Livermore, CA ยท On-site

$146K - $222K/yr

Promote and support plans to promote diversity, equity and inclusion within the program. * Perform ... of a rotation). Additional qualifications at the SES.3 level * Significant knowledge of SIEM ...

Participate in a structured on-call rotation to provide critical command coverage outside of ... Purchase Program if you meet certain eligibility requirements. Full-time employee coverage is ...

New

AI Platform Security Engineer

San Jose, CA ยท On-site

$180 - $240/hr

... program using Azure Key Vault with HSMโ€‘backed keys, including key rotation automation ... Prior experience in a cybersecurity product company or securing multiโ€‘tenant SaaS infrastructure.

next page

Showing results 1-20

Cybersecurity Rotational Program information

See Los Altos, CA salary details

$34.9K

$144.6K

$233.9K

How much do cybersecurity rotational program jobs pay per year?

As of Aug 30, 2026, the average yearly pay for cybersecurity rotational program in Los Altos, CA is $144,614.00, according to ZipRecruiter salary data. Most workers in this role earn between $119,000.00 and $177,100.00 per year, depending on experience, location, and employer.

What is a cybersecurity rotational program?

A Cybersecurity Rotational Program is a structured early-career development program offered by some organizations, typically lasting 1-3 years. Participants rotate through several cybersecurity departments or roles, such as threat analysis, incident response, risk management, and security operations. This approach allows individuals to gain broad experience, develop a diverse skill set, and build a network within the company. Upon completion, participants often move into a more specialized cybersecurity position based on their interests and strengths.

What types of projects and responsibilities can I expect during a cybersecurity rotational program?

During a Cybersecurity Rotational Program, you will typically rotate through several key areas such as threat analysis, incident response, vulnerability management, and security operations. Each rotation provides hands-on experience with real-world security challenges, allowing you to collaborate closely with cross-functional teams like IT, compliance, and risk management. You can expect to participate in tasks like monitoring security alerts, conducting risk assessments, supporting cybersecurity audits, and assisting in the development of security policies. This structure is designed to give you a broad foundation and help you identify your preferred specialization within cybersecurity.

What are the key skills and qualifications needed to thrive in a cybersecurity rotational program, and why are they important?

To thrive in a Cybersecurity Rotational Program, you need a solid understanding of information security principles, risk assessment, and IT fundamentals, often supported by a degree in computer science or a related field. Familiarity with security tools such as firewalls, SIEM systems, vulnerability scanners, and certifications like CompTIA Security+ or CISSP are commonly expected. Strong analytical thinking, adaptability, and effective communication skills help you navigate diverse teams and rapidly changing threats. These skills and qualities are essential for quickly learning new domains, contributing to multiple projects, and effectively protecting organizational assets.

What is the difference between Cybersecurity Rotational Program vs Cybersecurity Analyst?

AspectCybersecurity Rotational ProgramCybersecurity Analyst
CredentialsTypically requires a bachelor's degree in cybersecurity, IT, or related fields; certifications like CompTIA Security+ are commonOften requires similar degrees and certifications; Security+ or CISSP preferred
Work EnvironmentRotates through different teams and projects within an organization, gaining broad experienceFocuses on monitoring, analyzing, and responding to security incidents within a specific team
Employer & Industry UsageUsed by large organizations for talent development; common in tech and finance sectorsStandard role across industries for maintaining security posture

The Cybersecurity Rotational Program offers a broad, multi-faceted experience across various security functions, ideal for those seeking diverse exposure. In contrast, a Cybersecurity Analyst specializes in monitoring and defending against security threats within a specific area. Both roles require similar credentials but differ in scope and career focus.

What job categories do people searching Cybersecurity Rotational Program jobs in Los Altos, CA look for?

The top searched job categories for Cybersecurity Rotational Program jobs in Los Altos, CA are:

What cities near Los Altos, CA are hiring for Cybersecurity Rotational Program jobs?

Cities near Los Altos, CA with the most Cybersecurity Rotational Program job openings:

Infographic showing various Cybersecurity Rotational Program job openings in Los Altos, CA as of August 2026, with employment types broken down into 92% Full Time, and 8% Contract. Highlights an 100% In-person job distribution, with an average salary of $144,614 per year, or $69.5 per hour.

Technical Program Manager (Cybersecurity)

Palo Alto, CA โ€ข On-site

Prospance Inc.
201 - 500 employees

$152K - $196K/yr

Other

Posted 3 days ago

New


Job description

About the role
We're looking for a Staff Technical Program Manager to drive delivery across our Enterprise Cybersecurity portfolio. Your first charter is our identity and access management (IAM) program โ€” anchored by a large-scale migration from Microsoft Entra ID to Okta โ€” but this is a portfolio role, not a single-program role. As the identity program matures, you'll flex across the broader cybersecurity roadmap: security operations (SOC), governance/risk/compliance (GRC), vendor risk, security awareness, and whatever the function needs delivered next.
This role lives on relationships and prioritization as much as on plans. You'll coordinate across enterprise security, infrastructure, compliance, legal, endpoint/digital workplace, and enterprise application teams; align our identity roadmap with the product security teams' own identity projects; and manage external implementation partners โ€” keeping many threads moving, visible, and correctly sequenced against each other. If you're equally comfortable talking federation cutover sequencing with an IAM architect, reconciling priorities across two security organizations, and translating program risk into a crisp update for executive sponsors, this role is for you.
What you'll do
Own end-to-end program plans across the cybersecurity portfolio: scope, milestones, dependencies, resourcing, and critical path โ€” starting with the Entra ID โ†’ Okta migration, decomposing the multi-year identity vision into executable milestones.
Coordinate federation, SSO, provisioning, and application onboarding workstreams, sequencing cutovers and rollback/hypercare plans to protect business continuity, and managing the external implementation partner through delivery.
Serve as the connective tissue between Enterprise Cybersecurity and the product security teams' identity initiatives: maintain a shared view of roadmaps and dependencies, surface collisions and overlaps early, and broker sequencing and ownership decisions so the two portfolios reinforce rather than block each other.
Run the operating cadence โ€” planning, status reporting, RAID (risks, actions, issues, decisions) tracking, and stakeholder syncs โ€” across internal teams and external partners, managing dependencies and controlling change in a fast-moving environment.
Drive cross-functional prioritization: build and maintain the relationships needed to get commitments from teams you don't manage, negotiate trade-offs when workstreams compete for the same people, and keep leadership equipped to make priority calls with current, honest information.
Juggle multiple complex problems in parallel and find creative solutions with limited resources โ€” this is a lean team, and the answer is rarely "add headcount"; it's a smarter sequence, a lighter-weight process, or an unconventional path to the same outcome.
Drive governance of non-human identities โ€” service accounts, service principals, workload identities, and API credentials โ€” spanning discovery, ownership assignment and attestation, least-privilege scoping, rotation, and decommissioning, with full lifecycle (joiner/mover/leaver) coverage for human and non-human accounts.
Coordinate the identityโ†”endpoint seam with digital workplace and infrastructure teams: device trust, conditional/adaptive access, and device-posture signals informing access decisions.
Partner with compliance and audit teams to operationalize controls, coordinate evidence collection, and keep programs aligned to framework requirements (TISAX, ISO 27001, NIST CSF/800-53).
Report up and down with equal fluency: help prepare the reports, briefings, and materials that keep executives, sponsors, and delivery teams aligned on the same priorities โ€” playing a pivotal role in the team's success by making its work visible, understood, and correctly prioritized.
Translate technical requirements into terms non-technical teams (legal, procurement, facilities, HR, business stakeholders) can act on, communicating priorities so every team understands what's needed from them, why, and by when.
Maintain program artifacts and single sources of truth (roadmaps, Gantt/status decks, RACI, action logs) in Jira, Confluence, and related tooling.
Manage vendor and contract touchpoints โ€” SOWs, order forms, and implementation-partner deliverables โ€” in coordination with procurement and legal.
Define and report program metrics (application migration progress, service-account remediation, cutover readiness, milestone health) to measure and communicate delivery.
What you'll bring
Bachelor's degree in computer science, information systems, cybersecurity, engineering, or a related field โ€” or equivalent practical experience.
8+ years of technical program or project management experience, including 3+ years delivering identity and/or security programs.
Direct experience running an enterprise IAM platform migration or consolidation involving Okta and/or Microsoft Entra ID (Azure AD).
Working fluency (not necessarily hands-on configuration) in IAM/IGA/PAM concepts: SSO, federation (SAML/OIDC), SCIM provisioning, lifecycle management, and least-privilege access models.
Breadth across cybersecurity domains beyond identity โ€” familiarity with security operations, GRC/audit, vendor risk, or incident response sufficient to run programs credibly in those areas.
A track record of cross-organizational coordination: building trusted relationships across teams you don't manage, aligning parallel roadmaps owned by different organizations, and driving prioritization without formal authority.
Demonstrated ability to lead cross-functional programs across technical and non-technical stakeholders in a matrixed environment, including external implementation partners and vendors.
Strong written and verbal communication, with the ability to report up to executives and down to delivery teams, and to translate technical requirements into clear priorities and asks for non-technical audiences.
Fluency with program tooling โ€” Jira, Confluence, and slide/document production โ€” and a bias toward clear, paste-ready artifacts.
Ability to juggle multiple complex problems simultaneously and find creative solutions with limited resources โ€” comfort operating in a lean, fast-moving environment where you own execution end to end and resourcefulness beats headcount.
Nice to have
Experience in a TISAX, ISO 27001, or NIST-regulated environment; automotive or enterprise-JV context a plus.
Experience coordinating between enterprise/corporate security and product security organizations.
Familiarity with non-human identity/service-account governance and secrets management concepts and tooling (e.g., 1Password, CyberArk, HashiCorp Vault).
Familiarity with IGA/governance platforms and PAM tooling; exposure to endpoint/UEM platforms (e.g., Microsoft Intune, Jamf) and device-trust or passwordless approaches (FIDO2/passkeys, conditional access).
Exposure to SOC tooling and operations (SIEM, EDR, detection engineering programs) or GRC platforms.
Relevant certifications: PMP, CISSP, Okta Certified Professional/Administrator, Microsoft Identity & Access Administrator, or Certified ScrumMaster.