SlipstreamJobsFresh Startup & VC-Backed Jobs

Security Technical Program Manager

Sierra - San Francisco, CA, USA - In-office - posted 2026-08-05

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Sierra is building an AI platform to help businesses deliver better customer experiences. This role is a Security Technical Program Manager based in San Francisco, reporting to security and engineering leadership. You will drive high-impact security and infrastructure initiatives end-to-end, owning complex cross-functional programs spanning cloud infrastructure, platform security, identity and access management, detection and response, vulnerability management, and secure software delivery. You'll be accountable for sequencing work, managing dependencies, tracking risk, and ensuring delivery of Sierra's most critical security programs with clear milestones and outcomes. Key responsibilities include: partnering with security and engineering leadership to define priorities and investment areas; driving programs that establish durable security primitives such as identity boundaries, access controls, logging and detection baselines, and incident readiness; decomposing loosely defined security, risk, and compliance challenges—particularly in emerging AI domains—into structured programs with measurable outcomes; and providing clear updates to leadership on program health, risks, dependencies, and tradeoffs. You'll collaborate with infrastructure and data platform engineers, security and GRC teams, product and GTM leaders, legal, and executive leadership. You need strong technical fluency across cloud infrastructure, IAM, infrastructure as code, observability, secure CI/CD, and incident response. You should be comfortable executing through ambiguity, prioritizing effectively, and operating in environments where things aren't fully built yet. Ideal candidates have experience running security-focused technical programs in fast-growing SaaS or platform environments, plus experience scaling security programs globally in AI-first or data-intensive environments. Exposure to emerging AI risk, data governance, or agent and model-related security considerations is a plus. Experience in public-sector, regulated, or multi-cloud environments (AWS, GCP, Azure) and familiarity with frameworks like ISO 27001, PCI DSS, FedRAMP, or HIPAA are valued.

Similar roles