SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 97,000 - 120,000 / annual
Flywire is seeking a Security Technical Program Manager to serve as the strategic operational bridge between Security Risk Engineering and global Product, Engineering, and SRE teams. You will orchestrate mission-critical security programs from inception to deployment, transforming security, compliance, and risk initiatives into actionable roadmaps.
Key Responsibilities:
- Lead cross-functional "Security by Design" and Secure-SDLC initiatives across critical application launches, automated workflows, and emerging AI tools.
- Leverage internal enterprise AI tools and Large Language Models to automate program tracking, streamline documentation, and optimize security workflows.
- Coordinate end-to-end vulnerability lifecycle management, partnering with Product, SRE, and Software Engineering teams to ensure rapid prioritization and remediation.
- Oversee complex technical security assessments and audits for PCI-DSS, SOX, SOC 1, and SOC 2 compliance frameworks.
- Establish and maintain the security engineering program roadmap with clear project charters, timelines, success metrics, and technical definitions of done.
- Partner with high-velocity software engineering and infrastructure teams to integrate secure guardrails without impeding development velocity.
- Provide guidance and mentorship to junior security and program team members, fostering technical excellence and collaborative risk awareness.
This role requires balancing rigorous technical program management, financial services acumen, and modern technical insight across cloud architectures and AI ecosystems. You will work in a fast-paced environment where security and business enablement must be balanced strategically.
Requirements:
- Bachelor's or Master's degree in Cybersecurity, Information Technology, Computer Science, or related technical field.
- 2+ years of progressive experience in Technical Program Management (TPM), driving complex Information Security, Application Security, or Cyber Risk initiatives within highly scalable technology environments.
- Extensive experience operating within Financial Services and global Payments Industry space. Deep structural understanding of high-stakes financial platform mechanics, transaction processing lifecycles, and payment clearing rails is required.
- Proven track record managing and delivering complex end-to-end audits for financial and core data privacy frameworks. Mandatory proficiency in PCI-DSS (v4.0), SOX, SOC 1, and SOC 2. Working knowledge of emerging international standards (e.g., DORA) highly preferred.
- Solid foundational understanding of modern cloud architectures (AWS/GCP/Azure), automated Secure-SDLC engineering pipelines, OWASP Top 10 for LLMs, and automated enterprise vulnerability management systems.
- Exceptional ability to translate dense compliance requirements and technical vulnerabilities into actionable engineering remediation plans.
- Demonstrated ability to replace manual program management frameworks with intelligent automation and enterprise AI tools.
- Natural leadership presence with ability to align and motivate cross-functional teams across globally distributed time zones.
- Impeccable resilience and analytical clarity in high-pressure scenarios, including active security incidents and compressed product launch windows.
- Strategic and tactical balance with commercial mindset; hands-on technical skills with ability to translate vision into actionable plans.
Highly Preferred Certifications:
- CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CCSK (Certificate of Cloud Security Knowledge).
- CISA (Certified Information Systems Auditor).
- PMP (Project Management Professional) or certified Agile/Scrum Master.