1

Security Program Manager Jobs in Castro Valley, CA

CyberSecurity Program Manager

San Jose, CA · On-site

$151K - $184K/yr

Security Governance, Policy & Procedure Development • Lead the development, documentation, and ... Cybersecurity Program Management & Strategy • Develop, implement, and maintain enterprise-wide ...

We're looking for a high-performance, experienced hands-on technical program manager(TPM) in the security domain to be part of an Engineering team. In this role, you will be responsible for leading ...

Technical Program Manager, Security

Oakland, CA · On-site

$148K - $191K/yr

We're looking for a high-performance, experienced hands-on technical program manager(TPM) in the security domain to be part of an Engineering team. In this role, you will be responsible for leading ...

Showing results 21-40

Security Program Manager information

See Castro Valley, CA salary details

$62.9K

$171.9K

$192.7K

How much do security program manager jobs pay per year?

As of Sep 5, 2026, the average yearly pay for security program manager in Castro Valley, CA is $171,950.00, according to ZipRecruiter salary data. Most workers in this role earn between $148,900.00 and $181,200.00 per year, depending on experience, location, and employer.

What is a security program manager?

A Security Program Manager (SPM) oversees an organization's security initiatives, ensuring they align with business objectives and compliance requirements. They coordinate security programs, manage risks, and implement policies to protect assets, data, and infrastructure. SPMs work closely with cross-functional teams, including IT, legal, and leadership, to enhance security posture. Their role involves assessing threats, driving security awareness, and managing security projects efficiently.

What are the key skills and qualifications needed to thrive as a security program manager?

To thrive as a Security Program Manager, you need a solid background in information security, risk management, and project management, typically bolstered by a relevant degree and experience in security operations. Experience with security frameworks (like NIST or ISO 27001), tools such as SIEM platforms, and certifications like CISSP or PMP are highly valued. Excellent cross-functional communication, leadership, and problem-solving abilities help you coordinate teams and drive initiatives forward. These capabilities are crucial to effectively lead security programs, mitigate risks, and ensure organizational compliance in a dynamic threat landscape.

What are some typical challenges faced by security program managers, and how are they addressed?

Security Program Managers often face challenges such as balancing evolving cybersecurity threats with business objectives, managing cross-departmental initiatives, and ensuring ongoing compliance with industry standards. Success in this role typically involves continuous learning to stay ahead of threat trends, fostering collaboration among IT, compliance, and executive stakeholders, and implementing clear processes for incident response and policy enforcement. Program Managers regularly review and adjust security strategies, conduct gap analyses, and ensure team alignment through effective communication and stakeholder engagement. Proactively addressing these challenges helps maintain robust security postures while enabling organizations to achieve their goals.

What are popular job titles related to Security Program Manager jobs in Castro Valley, CA?

For Security Program Manager jobs in Castro Valley, CA, the most frequently searched job titles are:

What job categories do people searching Security Program Manager jobs in Castro Valley, CA look for?

The top searched job categories for Security Program Manager jobs in Castro Valley, CA are:

What cities near Castro Valley, CA are hiring for Security Program Manager jobs?

Cities near Castro Valley, CA with the most Security Program Manager job openings:

Infographic showing various Security Program Manager job openings in Castro Valley, CA as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 17% Part Time, 1% Temporary, and 4% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $171,950 per year, or $82.7 per hour.

CyberSecurity Program Manager

Saige Partners

San Jose, CA • On-site

$151K - $184K/yr

Other

Posted 16 days ago


Job description

Cybersecurity Program Manager – GRC (San Jose, CA) 

Job Overview:
We are seeking an experienced Cybersecurity Program Manager to lead the development and execution of enterprise-wide cybersecurity governance, compliance, and risk management initiatives. This role will be responsible for establishing cybersecurity programs, creating security policies and standards from the ground up, driving compliance efforts, and partnering with cross-functional stakeholders to strengthen the organization''s security posture.
The ideal candidate combines deep cybersecurity expertise with strong program management capabilities and a proven track record of developing security governance frameworks, policies, and procedures in complex enterprise environments.
This is a W2 contract position and is not eligible for C2C or W2 referral candidates.

Key Responsibilities: 
Security Governance, Policy & Procedure Development
• Lead the development, documentation, and maintenance of enterprise-wide IT security policies, standards, and procedures.
• Create comprehensive security governance documentation from scratch, ensuring alignment with business objectives and regulatory requirements.
• Collaborate with IT, Security, Compliance, and business stakeholders to identify policy gaps and define security requirements.
• Develop and maintain policies covering areas such as access management, data protection, incident response, risk management, and security operations.
• Establish clear, enforceable standards and implementation guidelines for both technical and non-technical teams.
• Document detailed operational procedures to ensure consistent execution across departments.
• Facilitate policy review cycles, stakeholder approvals, and governance processes.
• Conduct periodic audits of policy compliance and recommend updates based on findings, organizational changes, and emerging threats.
Cybersecurity Program Management & Strategy
• Develop, implement, and maintain enterprise-wide cybersecurity programs aligned with organizational goals and industry best practices.
• Create and execute multi-year cybersecurity roadmaps and strategic initiatives.
• Define program objectives, success metrics, and key performance indicators (KPIs) to measure effectiveness.
• Monitor emerging cybersecurity threats, vulnerabilities, and industry trends to proactively adjust program strategies.
• Manage cybersecurity program budgets, resources, and project priorities.
Cross-Functional Leadership & Governance
• Partner with IT, Security Operations, Risk Management, Compliance, Legal, and business leadership teams to drive cybersecurity initiatives.
• Establish governance frameworks, decision-making processes, and accountability structures.
• Coordinate activities with external vendors, consultants, auditors, and third-party service providers.
• Communicate complex cybersecurity concepts to both technical and non-technical audiences.
• Promote a culture of cybersecurity awareness and accountability across the organization.
Compliance & Risk Management
• Ensure compliance with applicable regulatory and industry frameworks, including CCPA, CPRA, SOC 2, CMMC, and related standards.
• Lead risk assessments, vulnerability management initiatives, and penetration testing programs.
• Develop and maintain risk management processes and security control frameworks.
• Monitor and report on organizational security posture and compliance status.
• Support incident response planning, testing, and coordination during cybersecurity events.
Security Program Implementation & Optimization
• Oversee the evaluation, implementation, and optimization of security technologies, tools, and controls.
• Conduct security architecture reviews and technology assessments.
• Drive continuous improvement initiatives across cybersecurity programs and processes.
• Maintain comprehensive program documentation, operational procedures, and knowledge repositories.
• Ensure effective documentation management and organizational readiness for audits and assessments.
Executive Reporting & Stakeholder Management
• Provide executive leadership and key stakeholders with regular updates on cybersecurity initiatives, risks, and program performance.
• Develop dashboards, metrics, and reports to communicate compliance and security effectiveness.
• Present cybersecurity strategies, findings, and recommendations to senior management and executive leadership.
• Escalate critical risks, compliance issues, and security concerns as appropriate.

Qualifications: 

Required
• Bachelor''s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
• 10+ years of cybersecurity experience, including at least 5 years in a program management, governance, or leadership role.
• Proven experience developing and implementing IT security policies, standards, and procedures from the ground up.
• Demonstrated success collaborating with cross-functional teams to create and maintain enterprise security documentation.
• Strong knowledge of cybersecurity frameworks and standards, including NIST CSF, ISO 27001, CIS Controls, SOC 2, and CMMC.
• Experience with security governance, compliance management, and risk assessment methodologies.
• Deep understanding of security controls, threat management, vulnerability management, and security operations.
• Experience managing complex, enterprise-wide cybersecurity programs and initiatives.
• Strong project and program management skills with the ability to manage multiple priorities simultaneously.
• Excellent written, verbal, and executive-level communication skills.
Preferred
• PMP (Project Management Professional) certification or equivalent program management certification.
• Professional cybersecurity certifications such as CISSP, CISM, CRISC, or similar.
• Experience supporting highly regulated industries and compliance-driven environments.
• Familiarity with Agile, Waterfall, and hybrid project management methodologies.

Key Competencies: 

• Cybersecurity Governance
• Policy & Procedure Development
• Regulatory Compliance
• Risk Management
• Program & Portfolio Management
• Security Frameworks (NIST, ISO 27001, CIS, SOC 2, CMMC)
• Executive Communication
• Cross-Functional Leadership
• Vendor & Stakeholder Management