1

Senior Cybersecurity Program Manager Jobs in Indiana

Senior Program Manager

Crane, IN · On-site

$116K - $116K/yr

The Senior Program Manager (SPM) will lead program execution, financial management, contract ... Coordinate cross-functional teams (engineering, logistics, finance, contracting, cybersecurity) to ...

Senior Program Manager

Carmel, IN · On-site

$115K - $116K/yr

Senior Program Manager - New Product Development-Carmel, IN (Hybrid) Qualified candidates must be ... Test, Cyber-Security, and other functions to establish project development strategy, schedule ...

Senior Program Manager

Carmel, IN · On-site

$115K - $116K/yr

Senior Program Manager - New Product Development-Carmel, IN (Hybrid) Qualified candidates must be ... Test, Cyber-Security, and other functions to establish project development strategy, schedule ...

Senior Program Manager

Crane, IN · On-site

$116K - $116K/yr

The Senior Program Manager (SPM) will lead program execution, financial management, contract ... Coordinate cross-functional teams (engineering, logistics, finance, contracting, cybersecurity) to ...

Senior Program Manager

Crane, IN · On-site

$116K - $116K/yr

The Senior Program Manager (SPM) will lead program execution, financial management, contract ... Coordinate cross-functional teams (engineering, logistics, finance, contracting, cybersecurity) to ...

Program Manager

Butlerville, IN · On-site

$140K - $190K/yr

Conduct tours and briefings for Senior State and national level leaders * Represent the MACC-TTE at ... cybersecurity, information technology/management, software engineering, unmanned aerial systems ...

next page

Showing results 1-20

Senior Cybersecurity Program Manager information

Can you make 200k a year in cyber security?

Senior cybersecurity program managers can earn $200,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and leadership responsibilities. Salaries vary based on industry, location, and company size, with some roles in high-demand sectors reaching or exceeding this level.

What does a Senior Cybersecurity Program Manager do?

A Senior Cybersecurity Program Manager oversees the planning, development, and implementation of an organization's cybersecurity strategies and programs. They coordinate teams, manage budgets, and ensure compliance with relevant regulations and standards. Their responsibilities often include risk assessment, policy development, and incident response planning. They also serve as a bridge between technical teams and executive leadership, ensuring alignment between security initiatives and business objectives.

What is the 80 20 rule in cyber security?

The 80/20 rule in cybersecurity suggests that approximately 80% of security issues are caused by 20% of vulnerabilities or threats. For a Senior Cybersecurity Program Manager, focusing on the most critical vulnerabilities and implementing prioritized controls can significantly improve security posture and resource efficiency.

What are the key skills and qualifications needed to thrive as a Senior Cybersecurity Program Manager, and why are they important?

To thrive as a Senior Cybersecurity Program Manager, you need extensive knowledge of information security principles, risk management, and program management, often backed by a bachelor's or master's degree in a related field and certifications like CISSP or CISM. Familiarity with security frameworks (e.g., NIST, ISO 27001), security tools, and project management systems (such as Jira or MS Project) is crucial. Exceptional leadership, communication, and strategic planning skills are important for guiding cross-functional teams and aligning cybersecurity initiatives with organizational goals. These skills are vital to effectively manage complex security programs, mitigate risks, and ensure compliance in a rapidly evolving threat landscape.

Can you make $500,000 a year in cyber security?

Senior cybersecurity program managers with extensive experience, advanced certifications, and leadership roles in large organizations can potentially earn $500,000 or more annually, especially with bonuses and stock options. Achieving this level typically requires a combination of technical expertise, strategic management skills, and a track record of successful security initiatives.

What is a cybersecurity program manager?

A cybersecurity program manager oversees and coordinates an organization's cybersecurity initiatives, ensuring security policies, risk management, and compliance are effectively implemented. They often manage teams, develop strategic plans, and work with tools like security frameworks and incident response processes to protect digital assets.

What is the difference between Senior Cybersecurity Program Manager vs Cybersecurity Analyst?

AspectSenior Cybersecurity Program ManagerCybersecurity Analyst
CertificationsCISSP, PMP, CISMCompTIA Security+, CEH
Work EnvironmentOversees security programs, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in large organizations, government agencies, corporationsCommon in IT departments, security firms, tech companies

The main difference is that a Senior Cybersecurity Program Manager leads and manages security initiatives and teams, focusing on strategic planning and program oversight. In contrast, a Cybersecurity Analyst primarily monitors and analyzes security threats, implementing technical solutions. The Program Manager role involves higher-level management and coordination, while the Analyst role is more technical and operational.

How does a Senior Cybersecurity Program Manager typically collaborate with other departments to ensure organization-wide security compliance?

A Senior Cybersecurity Program Manager frequently works cross-functionally, partnering with IT, legal, compliance, and business units to develop and implement security strategies. They lead security awareness initiatives, coordinate risk assessments, and ensure that various teams are aligned with regulatory requirements and internal policies. Regular communication, training sessions, and collaborative projects are integral, as the role relies on fostering a culture of security across all levels of the organization. This collaborative approach helps proactively identify vulnerabilities and implement effective safeguards.
What are popular job titles related to Senior Cybersecurity Program Manager jobs in Indiana? For Senior Cybersecurity Program Manager jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Senior Cybersecurity Program Manager jobs in Indiana look for? The top searched job categories for Senior Cybersecurity Program Manager jobs in Indiana are:
What cities in Indiana are hiring for Senior Cybersecurity Program Manager jobs? Cities in Indiana with the most Senior Cybersecurity Program Manager job openings:
Technical Cyber Security Program Manager

Technical Cyber Security Program Manager

Lilly

Indianapolis, IN • On-site

$123K - $159K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Eli Lilly and Company rating

8.8

Company rating: 8.8 out of 10

Based on 62 frontline employees who took The Breakroom Quiz

11th of 71 rated pharmaceutical


Job description

At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our employees around the world work to discover and bring life-changing medicines to those who need them, improve the understanding and management of disease, and give back to our communities through philanthropy and volunteerism. We give our best effort to our work, and we put people first. We're looking for people who are determined to make life better for people around the world.

Lilly Cyber is seeking a Cyber Technical Program Manager. This role is designed for someone who has lived inside the cybersecurity field: who understands attacker TTPs, can hold a credible conversation with cyber professionals, and brings genuine technical depth across security domains. The right person will operate at the intersection of program delivery and hands-on technical context, driving execution of programs that directly address the threat landscape, including emerging risks from adversarial use of AI (such as Mythos-class threats), identity exploitation, and enterprise-scale attack surface management.

What You Will Do:

You will own programs end-to-end, challenge assumptions, surface risks, and hold technical teams accountable to outcomes. You will embed in the work alongside security engineers, architects, and Cyber leaders to bring structure to complex delivery, and translate program health into executive-ready intelligence for Cyber leadership.

The programs led by this role exist because the threat environment demands them. Candidates must understand the adversarial context driving each program, including:

  • AI supply chain and model integrity threats: risks introduced through third-party model integrations, prompt injection, and data poisoning in enterprise AI deployments

  • Identity and privilege exploitation: continued evolution of credential theft, lateral movement, and abuse of legitimate access pathways

  • Enterprise attack surface expansion: the compounding risk surface introduced by cloud-native architectures, third-party dependencies, and hybrid identity environments

Understanding this landscape is important to this role. It shapes how programs are chartered, how risks are assessed, and how success is measured.

How You Will Succeed:

Program Governance & Cyber-Informed Planning

  • Develop and own program charters grounded in the cyber context driving each initiative as well as business requirements. Charters must connect program objectives to the specific risks being mitigated.

  • Drive gate-validated execution through the program lifecycle, ensuring planning rigor, resource readiness, dependency resolution, and architecture review before execution begins.

  • Maintain RASCI clarity across Sponsor, Service Owner, BISO, and delivery team roles, ensuring BISOs are engaged from day one.

  • Lead critical path identification and gain alignment on the milestones that matter, reducing noise in reporting and keeping delivery teams focused on the outcomes that move the security posture.

  • Identify and surface risks through a technical lens along with schedule and budget, but threat-informed risks that could undermine program effectiveness.

  • Contribute to continuous improvement of Cyber's program governance processes, templates, and stage gate documentation.

Execution & Technical Delivery

  • Own assigned programs through the full lifecycle: intake, charter, detailed planning, execution, and closeout with rigor and accountability at each stage.

  • Maintain execution momentum on concurrent programs, leading cross-functional dependencies, resolving blockers, and coordinating with security architects, engineers, and platform teams.

  • Ensure program plans include milestone roadmap, dependency map, architecture review confirmation, and resource assignments. No plan is approved without these elements.

  • Coordinate release readiness, change management, and go/no-go decisions with communications partners and business stakeholders to minimize disruption.

  • Engage directly with threat intelligence, red team, and detection engineering teams to ensure program scope and success criteria reflect current adversarial realities.

  • Proactively identify and escalate key issues, blockers, and constraints to appropriate management and stakeholders, ensuring timely resolution and minimal program impact.

  • Communicate complex cybersecurity concepts clearly and concisely across diverse audiences-from executives and business partners to technical teams-tailoring messaging to stakeholder needs.

Capacity & Resource Coordination

  • Track resource needs and timelines across assigned programs, forecasting 1-2 quarters out and surfacing capacity conflicts before they become blockers.

  • Coordinate alignment of external resources and vendor delivery across planning and execution phases.

  • Support leadership capacity planning with accurate, data-driven forecasts tied to program criticality and threat priority.

Cybersecurity Technical Depth

  • Bring working knowledge across multiple security domains: identity and access management, endpoint security, cloud security architecture, network security, application security, and security operations.

  • Engage credibly with security engineers, architects, and threat intelligence teams - understanding enough to ask the right questions, challenge delivery gaps, and assess whether technical decisions align with security objectives.

  • Maintain fluency in current and emerging threat actor behaviors, including AI-augmented adversarial techniques and the specific risks posed by frontier model capabilities and Mythos-class actors.

  • Apply working knowledge of NIST CSF, MITRE ATT&CK, Zero Trust principles, and applicable regulatory frameworks (FDA cybersecurity guidance, GxP, SOX, HIPAA, GDPR, PCI) to program delivery decisions.

Reporting & Executive Communication

  • Deliver milestone-driven status reporting aligned to critical path, surfacing what matters, what is at risk, and what decisions are needed.

  • Maintain Jira-based program tracking that supports portfolio-level visibility for Cyber leadership.

  • Produce executive-ready reporting that connects program progress to cyber objectives and threat mitigation outcomes.

  • Facilitate steering committee and reviews, providing accurate updates on status, dependencies, financials, risks, and threat relevance.

  • Adapt communication style fluidly across technical practitioners, Cyber leadership, and business executives.

Your Minimum Qualifications:

  • Bachelor Degree in a STEM field

  • At least 5+ years of experience in program or project management, with the majority of that time spent inside a cybersecurity organization.

  • Direct hands-on experience with cybersecurity program delivery: security tool deployments, identity and access management programs, cloud security initiatives, or threat detection and response programs

  • Experience with program tooling including Jira, Azure DevOps, and Power BI; ability to build and maintain dashboards that support portfolio visibility.

What You Should Bring:

  • Understanding of cybersecurity domains: IAM, endpoint security, cloud security (AWS, Azure, or GCP), application security, network security, and security operations.

  • Familiarity with current threat actor tradecraft, including the adversarial application of AI tools, large language model exploitation techniques, and AI-augmented attack patterns.

  • Working knowledge of MITRE ATT&CK, NIST CSF, Zero Trust frameworks, and security architecture patterns.

  • Awareness of life sciences regulatory requirements including FDA cybersecurity guidance, GxP, SOX, HIPAA, GDPR, and PCI as they apply to cyber program delivery.

  • Structured, focused approach to program governance: checkpoint processes, RASCI documentation, stage-based delivery, and plan quality standards.

  • Ability to translate technical cyber risk into business impact language for executive audiences.

  • Strong stakeholder management across technical practitioners, security leadership, and business executives.

  • Comfortable with ambiguity; able to make sound program decisions in constantly evolving environments.

  • Data-driven: uses Power BI, Excel, or equivalent tooling to track, forecast, and communicate program health.

  • Cybersecurity certification strongly preferred: CISSP, CISM, CCSP, or equivalent demonstrating sustained investment in the security discipline.

  • PMP, Agile (SAFe, CSM), or ITIL certification a plus.

  • Demonstrated track record running complex, cross-functional programs in fast-paced enterprise environments with opposing priorities.

  • Champion and leverage AI tools (e.g., Claude) to streamline workflows, accelerate analysis, and improve program delivery efficiency across cybersecurity initiatives.

  • Prior experience at large enterprises with complex regulatory and compliance obligations.

  • Exposure to AI security governance, ML model risk, or adversarial AI research understanding how frontier model capabilities are reshaping the threat landscape.

  • Experience with MITRE ATT&CK-based program scoping or threat-informed defense frameworks.

Other:

Remote status will be considered for non-local candidates

For local candidates the role is on a hybrid working schedule

Lilly is dedicated to helping individuals with disabilities to actively engage in the workforce, ensuring equal opportunities when vying for positions. If you require accommodation to submit a resume for a position at Lilly, please complete the accommodation request form (https://careers.lilly.com/us/en/workplace-accommodation) for further assistance. Please note this is for individuals to request an accommodation as part of the application process and any other correspondence will not receive a response.

Lilly is proud to be an EEO Employer and does not discriminate on the basis of age, race, color, religion, gender identity, sex, gender expression, sexual orientation, genetic information, ancestry, national origin, protected veteran status, disability, or any other legally protected status.


Our employee resource groups (ERGs) offer strong support networks for their members and are open to all employees. Our current groups include: Africa, Middle East, Central Asia Network, Black Employees at Lilly, Chinese Culture Network, Japanese International Leadership Network (JILN), Lilly India Network, Organization of Latinx at Lilly (OLA), PRIDE (LGBTQ+ Allies), Veterans Leadership Network (VLN), Women's Initiative for Leading at Lilly (WILL), enAble (for people with disabilities). Learn more about all of our groups.

Actual compensation will depend on a candidate's education, experience, skills, and geographic location. The anticipated wage for this position is

$124,500 - $182,600

Full-time equivalent employees also will be eligible for a company bonus (depending, in part, on company and individual performance). In addition, Lilly offers a comprehensive benefit program to eligible employees, including eligibility to participate in a company-sponsored 401(k); pension; vacation benefits; eligibility for medical, dental, vision and prescription drug benefits; flexible benefits (e.g., healthcare and/or dependent day care flexible spending accounts); life insurance and death benefits; certain time off and leave of absence benefits; and well-being benefits (e.g., employee assistance program, fitness benefits, and employee clubs and activities).Lilly reserves the right to amend, modify, or terminate its compensation and benefit programs in its sole discretion and Lilly's compensation practices and guidelines will apply regarding the details of any promotion or transfer of Lilly employees.

#WeAreLilly


What Eli Lilly and Company employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Eli Lilly logo

About Eli Lilly

Sourced by ZipRecruiter

Eli Lilly, based in Indianapolis, IN, US, is one of the pioneers in the pharmaceutical industry with a rich history dating back to 1876. This global pharmaceutical company focuses on discovering, developing, manufacturing and selling pharmaceutical products in approximately 120 countries. The company's product categories include endocrinology, oncology, cardiovascular, neuroscience, and immunology. Having invested over $9 billion in research and development in the past decade, Eli Lilly is also committed to creating high-quality medicines that meet real needs. As a recipient of several awards and recognitions, Eli Lilly is known for its focus on life-saving research and drug development. Their mission is to make medicines that help people live longer, healthier, and more active lives.

Industry

Pharmaceutical product wholesalers

Company size

10,000+ Employees

Headquarters location

Indianapolis, IN, US

Year founded

1876