1

Security Program Manager Jobs in Pittsburgh, PA (NOW HIRING)

Plan, develop, or implement warehouse safety and security programs and activities. * Inspect ... Plan, organize, or manage the work of subordinate staff to ensure that the work is accomplished ...

Program Manager

Coraopolis, PA ยท On-site

$98K - $134K/yr

Plan, develop, or implement warehouse safety and security programs and activities.Inspect physical ... Plan, organize, or manage the work of subordinate staff to ensure that the work is accomplished ...

The Program Manager will lead and execute the planning, scheduling, and budgeting to ensure ... Current DoD Security Clearance or ability to obtain one. Education/Experience Requirements:

We are seeking a Program Manager to join our team, at the program in Coraopolis, PA . This is a ... Benefits Merakey offers generous benefits that promote well-being, financial security, and work ...

We are seeking a Program Manager to join our team, at the program in Coraopolis, PA . This is a ... Benefits Merakey offers generous benefits that promote well-being, financial security, and work ...

Lead physical security, asset security, executive protection, travel security, and crisis management programs. * Conduct security risk assessments, threat assessments, and vulnerability evaluations ...

Lead physical security, asset security, executive protection, travel security, and crisis management programs. * Conduct security risk assessments, threat assessments, and vulnerability evaluations ...

Security Program Leadership: Design and manage the enterprise-wide information security strategy, aligning security initiatives with software development lifecycles (SDLC) and business goals. * Risk ...

Security Program Leadership: Design and manage the enterprise-wide information security strategy, aligning security initiatives with software development lifecycles (SDLC) and business goals. * Risk ...

Manage travel security and threat assessment programs. * Manage security vendors, service providers, contracts, and budgets. * Deliver security awareness and training programs. * Brief executive ...

next page

Showing results 1-20

Security Program Manager information

See Pittsburgh, PA salary details

$52.9K

$144.7K

$162.1K

How much do security program manager jobs pay per year?

As of Aug 23, 2026, the average yearly pay for security program manager in Pittsburgh, PA is $144,665.00, according to ZipRecruiter salary data. Most workers in this role earn between $125,200.00 and $152,400.00 per year, depending on experience, location, and employer.

What is a security program manager?

A Security Program Manager (SPM) oversees an organization's security initiatives, ensuring they align with business objectives and compliance requirements. They coordinate security programs, manage risks, and implement policies to protect assets, data, and infrastructure. SPMs work closely with cross-functional teams, including IT, legal, and leadership, to enhance security posture. Their role involves assessing threats, driving security awareness, and managing security projects efficiently.

What are the key skills and qualifications needed to thrive as a security program manager?

To thrive as a Security Program Manager, you need a solid background in information security, risk management, and project management, typically bolstered by a relevant degree and experience in security operations. Experience with security frameworks (like NIST or ISO 27001), tools such as SIEM platforms, and certifications like CISSP or PMP are highly valued. Excellent cross-functional communication, leadership, and problem-solving abilities help you coordinate teams and drive initiatives forward. These capabilities are crucial to effectively lead security programs, mitigate risks, and ensure organizational compliance in a dynamic threat landscape.

What are some typical challenges faced by security program managers, and how are they addressed?

Security Program Managers often face challenges such as balancing evolving cybersecurity threats with business objectives, managing cross-departmental initiatives, and ensuring ongoing compliance with industry standards. Success in this role typically involves continuous learning to stay ahead of threat trends, fostering collaboration among IT, compliance, and executive stakeholders, and implementing clear processes for incident response and policy enforcement. Program Managers regularly review and adjust security strategies, conduct gap analyses, and ensure team alignment through effective communication and stakeholder engagement. Proactively addressing these challenges helps maintain robust security postures while enabling organizations to achieve their goals.

What are popular job titles related to Security Program Manager jobs in Pittsburgh, PA?

For Security Program Manager jobs in Pittsburgh, PA, the most frequently searched job titles are:

What job categories do people searching Security Program Manager jobs in Pittsburgh, PA look for?

The top searched job categories for Security Program Manager jobs in Pittsburgh, PA are:

What cities near Pittsburgh, PA are hiring for Security Program Manager jobs?

Cities near Pittsburgh, PA with the most Security Program Manager job openings:

Infographic showing various Security Program Manager job openings in Pittsburgh, PA as of August 2026, with employment types broken down into 1% As Needed, 78% Full Time, 17% Part Time, and 4% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $144,665 per year, or $69.6 per hour.

Information Security Program Lead

MSA, The Safety Company

Cranberry Township, PA โ€ข On-site

$125K - $152K/yr

Full-time

Posted 12 days ago


Job description

Overview
Are you someone who is passionate, motivated, and driven to make a difference? If so, MSA Safety is the perfect fit for your career.
At MSA, SAFETY is who we are AND it is what we do. We are a purpose-driven company committed to deploying innovation and technology to deliver on our Mission to help protect people and assets all around the world. We continue to be relentless in our pursuit of solving our customers greatest problems so they can go home safe each and every day.
Are you in? Read on for more details about this particular role.
Responsibilities
ISMS Ownership & ISO 27001
  • Own and maintain the Information Security Management System (ISMS), ensuring alignment with ISO 27001:2022 requirements and organizational objectives
  • Lead and coordinate internal and external ISO 27001:2022 audits, including audit planning, execution, and follow-up
  • Conduct gap analyses, risk assessments, and risk treatment planning in line with ISO 27001 Annex A controls
  • Develop, review, and maintain information security policies, standards, and procedures

Multi-Framework Compliance
  • Drive and coordinate compliance activities across SOC 2 Type II, including control documentation, evidence collection, and readiness reviews in preparation for external assessments
  • Support CMMC 2.0 Level 2 readiness and compliance, including control implementation guidance aligned with NIST SP 800-171 and coordination for third-party assessment organization (C3PAO) engagements
  • Maintain working knowledge of NIST SP 800-171 requirements and their relationship to CMMC, supporting Controlled Unclassified Information (CUI) scoping and handling requirements
  • Ensure compliance activities reflect applicable regional data protection obligations, including GDPR and other jurisdiction-specific requirements relevant to global operations
  • Maintain a cross-framework control mapping to identify overlaps, reduce duplication of effort, and ensure consistent control coverage across ISO 27001, SOC 2, CMMC, and NIST

Global Governance & Stakeholder Engagement
  • Serve as a key point of contact for external certification bodies, auditors, and regulatory inquiries
  • Report on the state of the ISMS, compliance posture, and key risk indicators to senior management across global business units
  • Contribute to security awareness programs and training initiatives, adapting content for regional and cultural relevance where needed
  • Collaborate with cross-functional and geographically distributed stakeholders to embed security and compliance requirements into business processes

Third-Party & Engineering Collaboration
  • Support and collaborate with the Third-Party Risk Management (TPRM) function, providing GRC expertise on vendor risk assessments and due diligence processes
  • Work closely with the software development function to integrate compliance requirements into the Secure Software Development Lifecycle (SSDLC)

Qualifications
Required Skills / Knowledge / Abilities
  • Deep understanding of ISO 27001:2022 and associated standards (e.g., ISO 27002), including practical ISMS management experience
  • Solid grasp of GRC methodologies, control frameworks, and structured risk assessment practices
  • Working knowledge of SOC 2 (Trust Services Criteria) and readiness or audit support experience
  • Working knowledge of CMMC 2.0 and/or NIST SP 800-171, including their application to CUI environments and U.S. federal compliance obligations
  • Familiarity with GDPR or equivalent data protection regulations as they apply to global enterprise operations
  • Experience with cross-framework control mapping across two or more of the above frameworks
  • Excellent written and verbal communication skills - ability to translate complex compliance topics for both technical and non-technical audiences across different cultural and organizational contexts
  • Proven ability to work independently and drive compliance initiatives with minimal supervision in a globally distributed team environment

Preferred Skills
  • Hands-on experience with SOC 2 Type II audit support and evidence collection
  • Direct involvement in CMMC readiness activities or C3PAO-facilitated assessments
  • Knowledge of cloud security controls, particularly in AWS and Office 365 environments
  • Familiarity with AI-enhanced GRC tooling and compliance automation approaches
  • Understanding of TPRM frameworks, vendor risk methodologies, and associated tooling
  • Familiarity with SSDLC principles and their integration with compliance requirements
  • Experience working across multiple time zones and jurisdictions in a multinational organization

Education & Experience
Required
  • Bachelor's degree in Computer Science, Information Security, or a relevant field
  • Demonstrated experience leading or supporting ISO 27001 certification or re-certification audits
  • Experience developing and implementing security policies and controls across multiple frameworks
  • Experience conducting structured risk assessments and managing risk treatment plans in complex, multi-jurisdictional environments

Preferred
  • ISO 27001 Lead Auditor or Lead Implementer certification (e.g., PECB, BSI, or equivalent)
  • Master's degree in Computer Science, Information Security, or a relevant field
  • Additional certifications such as CISM, CISA, CISSP, or ISO 27005 Risk Manager
  • Certifications or formal training in CMMC, NIST, or SOC 2 methodologies
  • Experience working in or supporting regulated industries subject to U.S. government compliance requirements

#LI-KH2
#LI-HYBRID