Technical Program Manager, Vulnerability
Technical Program Manager, Vulnerability
San Francisco, CAExplore this location
Take a look at the map to discover what’s nearby.
Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.
About the Role
We are looking for a Technical Program Manager (TPM) who can think like a security architect and execute like an engineering program lead. As Veeam Data Cloud scales, vulnerabilities are discovered across multiple layers: cloud infrastructure, containers, and product application services. This role ensures those signals are centralized, prioritized, and remediated – not just reported.
You will own the end‑to‑end vulnerability management program for Veeam Data Cloud, partnering with product engineering, platform/SRE, and security engineers. You’ll shape strategy and process, but you’ll also dive into technical details with teams to understand impact, negotiate trade‑offs, and drive closure across both infrastructure and application layers.
What You’ll Do
- Own the end‑to‑end vulnerability management lifecycle across cloud infrastructure, platforms, containers, operating systems, and application services
- Lead intake and triage of vulnerabilities from scanners, cloud security tools, AppSec testing, penetration tests, bug bounty, and manual reports
- Drive risk‑based prioritization by combining technical severity with business context such as service criticality, data sensitivity, and exposure
- Act as the single‑threaded owner coordinating remediation across engineering, platform, and security teams, with clear ownership and SLAs
- Partner with infrastructure and application security teams to reduce recurring risk through hardened baselines, shared libraries, and design improvements
- Build and maintain dashboards and executive‑ready reporting on vulnerability exposure, aging, trends, and remediation progress
- Continuously improve vulnerability processes and tooling by integrating workflows into CI/CD, issue tracking, and release processes
Technologies You'll Work With
- Cloud‑native, multi‑tenant SaaS environments using Azure, AWS, GCP, Kubernetes, containers, and microservices
- A broad set of security tooling, including vulnerability scanners, SAST/DAST, SCA, cloud security posture tools, and vulnerability management platforms
- Modern engineering languages and frameworks such as GoLang, Python, React, Vue, TypeScript and Pulumi
What You’ll Bring
- 5+ years of experience in security, cloud infrastructure, or platform‑focused technical roles
- Proven experience leading complex, cross‑team technical programs in security, cloud infrastructure, or platform engineering
- Ability to turn a large, ambiguous vulnerability backlog into a clear, prioritized roadmap with owners, milestones, and measurable outcomes
- Strong understanding of infrastructure/cloud and application‑level vulnerabilities, including misconfigurations, dependency risk, and authn/authz issues
- Comfort working closely with security engineers and developers on architectures, designs, and vulnerability findings
- Technical fluency without a daily coding requirement; you are not expected to write production code, but can engage deeply with technical details and scanner output
- Data‑driven mindset, using metrics such as vulnerability aging, SLAs, and repeat findings to influence priorities and explain risk to non‑security stakeholders
- Strong communication and influence skills, with a track record of aligning teams and driving outcomes without direct authority
#LI-SO2
What you'll get
- Unlimited paid time off, 12 paid holidays, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
- Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
- Medical, dental, and vision coverage starting on your first day
- Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
- 401(k) retirement plan with company matching contributions
- Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
- AirVet: 24/7 virtual veterinary care at no cost
- Legal services, identity protection, and supplemental health insurance options
- Tax-advantaged spending accounts for healthcare, dependent care, and commuting
- Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning
Compensation Transparency
Veeam is committed to pay transparency and equitable compensation. For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus. For roles with a commission plan, the compensation range represents On Target Earnings (OTE), which includes base salary plus variable commission. When determining compensation, Veeam takes into consideration factors such as experience, education, skills, and geographic zone. Offers are typically made below the midpoint of the range.
In addition to compensation, Veeam provides a comprehensive benefits package, including health coverage, retirement plans, and unlimited time off.
Please note that any personal data collected from you during the recruitment process will be processed in accordance with our Recruiting Privacy Notice.
The Privacy Notice sets out the basis on which the personal data collected from you, or that you provide to us, will be processed by us in connection with our recruitment processes.
By applying for this position, you consent to the processing of your personal data in accordance with our Recruiting Privacy Notice.
By submitting your application, you acknowledge that the information provided in your job application and any supporting documents is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification of information may result in disqualification from consideration for employment or, if discovered after employment begins, termination of employment.
Jobs for you
Find your fit. Discover roles where bold ideas, real impact, and career-defining growth come together.
Related content
-
Early Careers Ready to start your career? Learn more about our Early Careers opportunities. -
Corporate Functions Learn more about working in Corporate Functions team at Veeam. -
Join Us in Romania Join our Bucharest hub and shape the future with the #1 global leader in data resilience. -
Sales Learn more about working in Sales team at Veeam. -
Growth Explore what Growth at Veeam could look like for you -
Join Us in Poland We’re hiring sales and tech talent across Poland to go fearlessly forward with the #1 global leader in data resilience. -
Join Us in Pune Join our Pune hub and shape the future with the #1 global leader in data resilience. -
Inclusion We believe in hiring the best people from all walks of life. Learn more about Inclusion at Veeam. -
Culture Our company culture is important to us. Learn more about how we work at Veeam. -
Locations Explore our locations to find opportunities near you. -
Benefits Learn more about our company benefits at Veeam. -
Join Us in Czechia Be part of the 700+ Veeamers in Czechia driving global innovation in data resilience. -
Technology Learn more about working in Technology team at Veeam. -
Join Us in Germany Help enterprises across Germany protect what matters most - their data.
Sign up for job alerts
Don't see what you’re looking for? Sign up and we'll notify you when roles become available.
Sign Up