Sr. Technical Program Manager, Vulnerability Management Initiatives, Products, and Services

Amazon

Amazon

IT, Operations
Austin, TX, USA
Posted on May 23, 2025

DESCRIPTION

Do you have a passion for security and vulnerability management? Does digging deep into data to discover how to disrupt existing processes, define key performance indicators (KPIs), and influence business priorities excite you? Do you like having the influence to steer an entire business program to meet strategic companywide goals? Would you like to have high visibility for your efforts across multiple organizations through the programs you own? If yes, we need you to join our Vulnerability Management Initiatives, Products, and Services (VIPS) organization.

VIPS is looking for an experienced Sr. TPM to own the entire vulnerability management visibility program for Amazon SDO. A Sr. TPM in this role will work broadly across AWS and SDO vulnerability management, patching, and scanning teams to deliver Amazon’s required outcomes for scanning and visibility. This Sr. TPM will work in direct partnership with over 15 VP, Director, Principal, and Sr. Manager level peers to delivery monthly visibility outcomes. Further, this Sr. TPM will get the opportunity to go deep into a variety of vulnerability management use cases that span a heterogenous environment of various compute and container workloads.

VIPS is a multi-discipline team that utilizes a broad range of skills to ensure visibility (scanning and detection) of all SDO assets by vulnerability management tools daily. Also, VIPS serves all of SDO requiring the creation of solutions that scale by business use cases, as well as compute footprint. For example VIPS can process up to a trillion signals a day, while dealing with the nuances from supporting fulfillment centers, autonomous cars, and satellites. As a Sr. TPM in VIPS, you will work with security engineers, software engineers, applied scientists, and businesses intelligence engineers across junior, senior, and principal levels. Your scope will include owning and executing a scanning and visibility program that span three immediate software and security teams, and advising the head of SDO’s Host & Container VM program (5 teams). You will interact with VP level audiences monthly to review program progress, derive action items, and influence the future direction of the visibility program. Finally, you will define the program strategy for scanning and detecting vulnerabilities across Amazon’s SDO asset footprint.


Key job responsibilities
- Writing executive level documents on the status and progress of Amazon SDO and Amazon Security (AmSec) visibility and patching programs.
- Conducting deep dives with dependent builder, security, and business teams (SDO and AWS) to develop solutions required for vulnerability management scanning and visibility.
- Driving resolution of cross organization (VP level) action items, project blockers, solution alignment, metrics alignment, and process improvements for both your SDO organization and AWS partners.
- Working directly with Principal Security and Software Engineers to align software and security roadmaps to deliver on long term vulnerability management visibility goals as it pertains to SDO assets.
- Conduct mentoring and guidance to peer TPMs, Product Manager - Technical (PMT), Software Managers (SDMs), and Security Managers (SDM) to grow other Amazonians.
- Facilitate business reviews weekly and monthly for the Host & Container VM space.
- Performing data analysis via Excel, SQL, and/or other data intelligence tool suites as part of program investigations.

A day in the life
You will start your day reviewing action items related to the scanning and visibility charter to ensure the software teams are moving forward. After this activity, you will engage in alignment discussions for critical scanning projects and reporting efforts across multiple teams and Principal leaders across Amazon. Post meetings and audits, you will work on creating strategic program documents and Senior VP updates on the security posture and progress of your programs. You will conclude your days attending business and metrics reviews where you help raise the bar on the overall progress and metrics for your programs.

About the team
You will be reporting to the head of Vulnerability Management Initiatives, Product, and Services organization consisting of five charters. You will work across three of those charters to drive a Tier-1 visibility program. You will interact with Principal Engineers and Program Managers across multiple business lines to drive results for your program. You will have the support of peer principal leaders and senior engineers.

Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training and Career growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.