Senior Information Security Technical Program Manager: Technical Security Audit and Risk Management

6 Months ago • All levels • Cyber Security

About the job

Job Description

Senior InfoSec Program Manager role at Unity focusing on technical security audits and risk management, requiring expertise in compliance (SOX, SOC 2, PCI, ISO 27001), cloud security (AWS, GCP, AZURE), and vulnerability management.
Must have:
  • Compliance experience
  • Cloud security
  • Vulnerability management
  • Project management
Good to have:
  • Threat modeling
  • Penetration testing
  • Agile experience
  • Unity engine
Perks:
  • Leading platform
  • Global impact
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

The opportunity

Unity understands the significance of a solid Security Program. The Security Program is key to maintaining customer confidence in our products and is the pathway to a well-tuned, functional Information Security Management System, Compliance and Program. This will be a chance to work on real security problems in a fast-paced high growth business. The person in this role will be at the helm of critical security risk and compliance projects with major impact across the company. You will help Unity to obtain and maintain applicable security certifications. You will have input into the overall security strategy to guide our security policy and architecture in addition to driving security awareness and compliance across the business units.

What you'll be doing

  • Driving Technical audits and implementation of audit and control framework to monitor production environments for potential system integrity, cyber-risk exposure and control weaknesses
  • Perform security gap analysis and help define specific/technical remediation measures.
  • End-to-end project and program management : Manage audit and/or remediation projects. Produce high-quality deliverables, project material and audit documentation that are suitable for engineering teams, external stakeholders and auditors.
  • Guide and work with engineering and DevOps as they execute on risk remediation and novel solutions Work day-to-day with technical Security engineers and collaborate with them for driving project progress and resolving blockers
  • Be responsible for reporting on these projects to senior leadership. Effectively communicate not only with peers, engineers , devops, business development stakeholders, but also with VP and execs.
  • Operate and lead initiatives within a distributed team and collaborate with colleagues both local and remote, cross functionally and within your department. Stay updated on the latest industry trends and technologies to keep our services cutting-edge.

What we're looking for

  • Experience driving compliance or audit engagements (eg SOX or SOC 2 or PCI or ISO 27001). Experience conducting risk assessment on products and applications (in-house and/or third-party) to inculcate better security using NIST or Similar compliance frameworks..
  • Experience working on cloud service providers such as AWS/GCP/AZURE, and knowledge of cloud services and infrastructure
  • Experience in Vulnerability management ( Qualys/ORCA etc), Security Operations ( Logging and monitoring, SIEM and SOAR tools ) and Infrastructure Security.
  • Familiarty with SAST/ DAST tools
  • Exposure to distributed systems development and/or an understanding of container and orchestration technologies such as Docker, Kubernetes or Nomad.
  • Strong understanding of software development best practices and design patterns, a security and quality first mentality and approach (Secure Software development Lifecycle SSDLC)
  • Experience with one or more of the following: threat modeling, security reviews, vulnerability management, penetration testing, secure software development
  • Excellent project management skills and communication and collaboration abilities, adept at working with teams across various disciplines. Experience with process mapping (preferably on MS Visio / Lucidchart or equivalent). Excellent skills with excel and powerpoint.
  • Excellent communication skills and experience collaborating with cross functional teams, driving for alignment on key decisions, effective communication with project participants and leadership

You might also have

  • Professional certifications in security, privacy risk management, and audit areas are a plus, such as PMP, CISA, CISM, CISSP, or CIPT.
  • Experience with Unity, Unreal, or other game engines
  • Experience working within an Agile environment (SCRUM/Kanban/XP) and leading work within teams

Additional information

  • Relocation support is not available for this position.
  • International relocation support is not available for this position.
  • Work visa/immigration sponsorship is not available for this position.

Life at Unity

Unity [NYSE: U] is the world's leading platform of tools for creators to build and grow real-time games, apps, and experiences across multiple platforms. Creators, ranging from game developers to artists, architects, automotive designers, infrastructure experts, filmmakers, and more, use Unity to bring their imaginations to life across multiple platforms, from mobile, PC, and console, to spatial computing.

As of the fourth quarter of 2023, more than 69% of the top 1,000 mobile games are made with Unity as derived from a blended number of the top 1,000 games in the Google Play Store and iOS App Store. In 2023, Made with Unity applications had an average of 3.7 billion downloads per month. For more information, please visit www.unity.com.

Unity is an equal opportunity employer committed to fostering an inclusive, innovative environment with the best employees. Therefore, we provide employment opportunities without regard to age, race, color, ancestry, national origin, disability, gender, or any other protected status in accordance with applicable law. If there are preparations or accommodations we can make to help ensure you have a comfortable and positive interview experience, please fill out this form to let us know.

This position requires the incumbent to have a sufficient knowledge of English to have professional verbal and written exchanges in this language since the performance of the duties related to this position requires frequent and regular communication with colleagues and partners located worldwide and whose common language is English. Headhunters and recruitment agencies may not submit resumes/CVs through this website or directly to managers. Unity does not accept unsolicited headhunter and agency resumes. Unity will not pay fees to any third-party agency or company that does not have a signed agreement with Unity.

Your privacy is important to us. Please take a moment to review our Prospect and Applicant Privacy Policies. Should you have any concerns about your privacy, please contact us at DPO@unity.com .

#SEN

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Unity (NYSE: U) is the world’s leading platform for creating and operating real-time 3D (RT3D) content. Creators, ranging from game developers to artists, architects, automotive designers, filmmakers, and others, use Unity to make their imaginations come to life. Unity is the foundation upon which the world’s most powerful digital content is created. Specifically, Unity’s platform provides a comprehensive set of software solutions to create, run and monetize interactive, real-time 2D and 3D content for mobile phones, tablets, PCs, consoles, and augmented and virtual reality devices. 

In the fourth quarter of 2021, Unity had, on average, 3.9 billion monthly active end users who consumed content created or operated with its solutions. The applications developed by these creators were downloaded, on average, five billion times per month in 2021. For more information, please visit www.unity.com. 


Download Unity: http://unity3d.com/get-unity

We're hiring! Visit our careers site: https://careers.unity.com

For support, please email: support@unity3d.com


Check us out on our other social channels: 

Twitter: https://twitter.com/unity

Facebook: https://www.facebook.com/unity3d/

Instagram: https://www.instagram.com/unitytechnologies/

Bellevue, Washington, United States (On-Site)

Bellevue, Washington, United States (On-Site)

Copenhagen, Denmark (On-Site)

United States (Remote)

Copenhagen, Denmark (On-Site)

Abu Dhabi, Abu Dhabi, United Arab Emirates (On-Site)

Helsinki, Uusimaa, Finland (On-Site)

Montreal, Quebec, Canada (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

Brighton And Hove, England, United Kingdom (On-Site)

View All Jobs

Get notified when new jobs are added by Unity

Similar Jobs

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Easybrain - HTML5 Game Developer

Easybrain, Cyprus (On-Site)

Aristocrat Gaming - Technical Lead(Typescript Developer)

Aristocrat Gaming, India (Hybrid)

Meta - Software Engineer, Infrastructure

Meta, United States (On-Site)

Passive Logic - Digital Twin AI Framework Engineer

Passive Logic, United States (On-Site)

Juego Studios - Senior Software Engineer

Juego Studios, India (On-Site)

Inworld AI - Senior Product Manager, AI Engine - USA

Inworld AI, United States (On-Site)

Hypersonic Laboratories - Gameplay Software Engineer

Hypersonic Laboratories, (Remote)

Life church - Donor Relationship Manager

Life church, United States (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Luxoft - Solution Architect - Fixed Income

Luxoft, India (Remote)

Luxoft - Senior/Lead DevOps Engineer

Luxoft, India (Remote)

Innova Falcon - Lead 3D Artist

Innova Falcon, India (Remote)

Omind - Senior DevOps Engineer

Omind, India (On-Site)

Publicis Groupe - Copywriter - Digital

Publicis Groupe, India (On-Site)

Illumina - Sr Software Test Engineer

Illumina, India (On-Site)

Nielsen Holdings - GDS- Business Automation Leader

Nielsen Holdings, India (Hybrid)

Paypal - MTS 2, Software Engineer

Paypal, India (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

LeoVegas - Cloud Security Engineer

LeoVegas, Sweden (Hybrid)

PwC - IT Project Management

PwC, Portugal (On-Site)

Tencent - 安全技术开发

Tencent, China (On-Site)

Discord - Vulnerability Management Engineer

Discord, United States (Remote)

STMicroelectronics - Function Safety & Cyber security Engineer

STMicroelectronics, India (On-Site)

Get notifed when new similar jobs are uploaded