Security Risk, Security Programs - Technical Program Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

CoreWeave · 15 hours ago

Security Risk, Security Programs - Technical Program Manager

CoreWeave is The Essential Cloud for AI™, delivering a platform of technology that enables innovators to build and scale AI with confidence. The Security Risk Program Manager will support the Security Risk Management function by identifying and tracking security risks, conducting assessments, and driving corrective actions across the organization.

AI InfrastructureArtificial Intelligence (AI)Cloud ComputingCloud InfrastructureInformation TechnologyMachine Learning
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Develop Risk Methodologies: Create and socialize system-level and enterprise-level risk assessment methodologies with clear scoring, evidence expectations, and review pathways
Establish Risk Governance: Define the Cyber Risk Operating Model including roles, decision authorities, cross-functional workflows, and escalation criteria
Create Core Artifacts: Develop policy, procedures, risk register templates, issue tracking frameworks, and exception/acceptance workflows
Conduct Risk Assessments: Execute security risk assessments and lead CoreWeave's annual enterprise-wide cybersecurity risk assessment
Build Risk Measurement: Define initial Key Risk Indicators (KRIs), design the Cyber Risk Dashboard, and light up seed metrics using available telemetry
Enable Continuous Visibility: Partner with Assurance Engineering to integrate risk measurement with existing telemetry pipelines and dashboards
Drive Adoption: Integrate risk assessment into the Security Intake Process and embed risk practices into engineering workflows

Qualification

Security Risk ManagementRisk Assessment MethodologiesCloud Infrastructure SecurityNIST CSFISO 27001Key Risk IndicatorsGRC ToolingProject ManagementCommunication SkillsOrganizational Skills

Required

Bachelor's degree in Information Security, Computer Science, or a related field, or equivalent practical experience
5+ years of experience in Security Risk Management including exposure to frameworks such as NIST CSF or ISO 27001
Experience developing and executing risk assessment methodologies
Strong understanding of cloud infrastructure security, system architecture, and common security controls
Ability to work effectively with cross-functional teams including engineering, IT, compliance, and executive leadership to drive alignment and adoption
Excellent written and verbal communication; can translate technical risk into business language and vice versa
Strong organizational and project management skills; proven ability to manage shifting priorities with sound judgment and composure

Preferred

Experience adapting risk management frameworks in response to evolving business, technology, and regulatory needs
Proven experience building and maturing security risk programs in cloud-native or highly regulated environments
Experience with risk measurement frameworks and Key Risk Indicators (KRIs) or Key Performance Indicators (KPIs)
Familiarity with telemetry-based continuous monitoring and security data analytics
Background in fast-paced, high-growth technology companies or cloud infrastructure environments
Knowledge of compliance frameworks (SOC 2, ISO 27001, FedRAMP) and their relationship to risk management
Experience with GRC tooling, dashboards, and workflow automation
Understanding of NIST CSF or similar cybersecurity maturity frameworks

Benefits

Medical, dental, and vision insurance - 100% paid for by CoreWeave
Company-paid Life Insurance
Voluntary supplemental life insurance
Short and long-term disability insurance
Flexible Spending Account
Health Savings Account
Tuition Reimbursement
Ability to Participate in Employee Stock Purchase Program (ESPP)
Mental Wellness Benefits through Spring Health
Family-Forming support provided by Carrot
Paid Parental Leave
Flexible, full-service childcare support with Kinside
401(k) with a generous employer match
Flexible PTO
Catered lunch each day in our office and data center locations
A casual work environment
A work culture focused on innovative disruption

Company

CoreWeave

twittertwittertwitter
company-logo
CoreWeave is a cloud-based AI infrastructure company offering GPU cloud services to simplify AI and machine learning workloads.

Funding

Current Stage
Public Company
Total Funding
$23.37B
Key Investors
Jane Street CapitalStack CapitalCoatue
2025-12-08Post Ipo Debt· $2.54B
2025-11-12Post Ipo Debt· $1B
2025-08-20Post Ipo Secondary

Leadership Team

leader-logo
Michael Intrator
Chief Executive Officer
linkedin
leader-logo
Nitin Agrawal
Chief Financial Officer
linkedin
Company data provided by crunchbase