Security Program Manager

Lennar USA

Miami (FL)

On-site

USD 120,000 - 180,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
401(k) match
Paid parental leave
Adoption assistance

Job summary

Lennar is seeking a Security Program Manager to lead the enterprise assurance program within the Resilience and Security Services organization. You will run end-to-end audit responses, policy reviews, and evidence management, coordinating cross-functional teams across IT and security to maintain compliance with NIST CSF and related standards.

The role emphasizes partnering with governance, risk, and compliance functions, driving continuous improvement, and reporting to senior leadership.

Qualifications

  • 7+ years of IT project/program management, audit, risk, compliance, or governance.
  • Experience with Agile, Waterfall, and hybrid methodologies; PMP preferred.
  • Experience interacting with internal/external audit teams in a service-oriented role.
  • Ability to translate policy intent into practical guidance for control owners.
  • Familiarity with NIST CSF, NIST SP 800-53, SOC, PCI, FFIEC.
  • Experience with policy/evidence libraries and document management platforms.

Responsibilities

  • Lead enterprise assurance program as a multi-workstream initiative and keep Deliverables on time and within scope.
  • Build and maintain the year-long assurance calendar aligned with regulatory and audit calendars.
  • Own the enterprise policy library and lifecycle management for all policies tied to NIST CSF controls.
  • Design and maintain policy lifecycle flow from draft to review with clear ownership.
  • Own the evidence library and refresh evidence before expiry.
  • Liaise with internal/external audit teams and regulatory bodies on audit evidence requests.
  • Collaborate with LTG control owners to move policy work ahead of Security review.
  • Lead evaluation/selection of system of record for policy and evidence libraries (SharePoint/AuditBoard).
  • Identify security/compliance risks from policy gaps or stale evidence and escalate appropriately.
  • Communicate program status and risk to VP/SVP-level stakeholders with executive-ready formats.
  • Mentor program contributors and future roles (e.g., Security Analyst II).
  • Analyze assurance trend data to drive process improvements.
  • Maintain source of truth in Lennar management platforms and ensure artifacts meet standards.
  • Define program requirements, milestones, budgets, and progress reporting.

Skills

Program management
Auditing
Risk & compliance
Communication skills
Policy interpretation
NIST CSF
NIST SP 800-53
SOC/PCI/FFIEC
AuditBoard
SharePoint

Education

Bachelor’s degree
Master’s degree
PMP
CISA/CRISC/CISSP (certifications)

Tools

AuditBoard
SharePoint

Job description

Security Program Manager
Security Services, Cybersecurity & Compliance
We are Lennar

Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500® company and consistently ranked among the top homebuilders in the United States.

A Career that Empowers You to Build Your Future

Lennar has an opportunity for a Security Program Manager within the Resilience and Security Services organization, working in close partnership with Security, primarily comprised of Governance, Risk, and Compliance (GRC) and Privacy, to run the enterprise program that keeps Lennar's NIST Cybersecurity Framework (CSF) controls backed by clear, current policy and verifiable evidence of adherence. This role reports directly to the Director, Resilience and Security Services.

The Security Program Manager is Lennar's primary point of contact for internal and external audit engagements and regulatory inquiries, and the trusted advisor to the federation of control owners across Lennar IT (LTG) who author and maintain policy. This is a program management role at its core: the Security Program Manager runs the assurance program end-to-end, setting the annual cadence, managing cross-functional workstreams, and holding every deliverable, policy review, evidence request, and audit response to a disciplined program plan. Additional insight into cybersecurity and IT auditing is a major plus.

  • A career with purpose.
  • A career built on making dreams come true.
  • A career built on building zero defect homes, cost management, and adherence to schedules.
Your Responsibilities on the Team
  • Lead and manage the enterprise assurance program as a structured, multi-workstream initiative, applying disciplined program and project management practices (Agile, Waterfall, or hybrid, as appropriate) to keep every deliverable on time and within scope.
  • Build and maintain the year-long assurance calendar, aligning evidence-gathering activity, policy reviews, and audit response with Lennar's regulatory and audit calendars.
  • Own the enterprise policy library: maintain an accurate, current inventory of every policy tied to an enforced NIST CSF control, manage the policy lifecycle on an annual review cadence, and read every policy closely for clarity, completeness, and fidelity to the intent of the underlying control.
  • Design and maintain the standard process flow that governs how a policy moves from draft through review, giving control owners a clear, repeatable path to a compliant policy. Security retains final review and sign-off authority on every policy; the Security Program Manager ensures the process is followed.
  • Own the evidence library: ensure evidence is properly cataloged, stored, and retrievable, and that evidence approaching the end of its one-year validity window is refreshed before it expires.
  • Serve as Lennar's primary liaison to internal and external audit teams and regulatory bodies, leading the response to audit and regulatory evidence requests with a service-oriented, no-surprises approach, and reusing previously validated evidence wherever it falls within its one-year validity period.
  • Partner directly with control and policy owners across the LTG federation, providing patient, constructive guidance and facilitating solution-oriented working sessions that keep policy work moving ahead of Security's final review.
  • Lead the evaluation and selection of the system(s) of record for the policy and evidence libraries, anticipated to be a combination of SharePoint and AuditBoard, with final tooling to be determined as an initial program deliverable.
  • Identify and help assess security and compliance risks surfacing from policy gaps, control weaknesses, or stale evidence, applying working knowledge of relevant frameworks (NIST CSF, SOC, PCI, FFIEC) to escalat[e?] substantive issues to Security and the Director, Resilience and Security Services.
  • Communicate program status, risks, and issues to stakeholders and senior management, including VP/SVP-level leadership, in clear, concise, executive-ready formats.
  • Mentor and guide program contributors, including a proposed Security Analyst II role should it be approved, fostering a culture of continuous improvement and disciplined execution.
  • Analyze multi-domain assurance trend data, including audit findings, evidence turnaround, and policy currency, to institutionalize process fixes and improve reliability at scale.
  • Maintain the assurance program's source of truth in Lennar's management platforms, ensuring all artifacts meet global security and audit control standards.
  • Define program requirements by managing milestones, forming working teams with control owners, and establishing budgets where applicable; monitor progress by tracking activity, resolving problems, and publishing progress reports.
Requirements
  • 7+ years of professional experience spanning IT project/program management, audit, risk, compliance, or governance, including at least 5 years leading multi-workstream projects or programs.
  • Proven program/project management discipline: experience with Agile (Scrum, XP), Waterfall/Predictive, and hybrid methodologies; PMP certification preferred.
  • Extremely detail-oriented and hyper-organized, comfortable owning a portfolio of concurrent, time-sensitive deliverables (policy reviews, evidence requests, audit responses) without dropping a thread.
  • Experience interacting with internal or external audit teams, with a service-oriented mindset and the presence to represent Lennar credibly in audit and regulatory conversations.
  • Demonstrated ability to read, interpret, and translate the intent of a policy into practical guidance for control owners; collaborative and personable enough to coach non-compliance professionals through it.
  • Working knowledge of the NIST Cybersecurity Framework (CSF) and NIST SP 800-53 control families, or a comparable enterprise control framework; familiarity with SOC, PCI, and FFIEC compliance requirements is a strong plus.
  • Additional insight into cybersecurity and IT auditing, including security risk and vulnerability identification, is a major plus.
  • Experience selecting, implementing, or administering Security and document management platforms; direct experience with AuditBoard and SharePoint preferred.
  • Exceptional written and verbal communication skills, with an emphasis on facilitating solution-oriented meetings and briefing VP/SVP-level stakeholders on status, risk, and trade-offs.
  • Strong organizational and time management skills, with the ability to manage multiple priorities and competing deadlines in a fast-paced environment.
  • Bachelor’s degree in Business, Information Systems, Risk Management, or a related field; Master’s degree preferred, or equivalent experience.
  • Certifications a plus: PMP, CISA, CRISC, CIA, CGEIT, CISSP, or equivalent.
Physical & Office/Site Presence Requirements:

Regular, in-person attendance at the Lennar office during regular work hours is an essential function of this job. This is primarily a sedentary office position which requires the incumbent to have the ability to operate computer equipment, speak, hear, bend, stoop, reach, lift, and move and carry up to 25 lbs. Finger dexterity is necessary.

This description outlines the basic responsibilities and requirements for the position noted. This is not a comprehensive listing of all job duties of the Associates. Duties, responsibilities and activities may change at any time with or without notice.

Life at Lennar

At Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone’s Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar’s policies and applicable plan terms. Visit Lennartotalrewards.com to view our suite of benefits.

Join the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview | LinkedIn https://www.linkedin.com/company/lennar/ for the latest job opportunities.

Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Program Manager
Security Program Manager

Lennar USA • Irving (TX)

On-site
USD 120,000 - 150,000
Health insurance
401(k) match
Paid parental leave
+4
Security Program Manager
Security Program Manager

Lennar • Irving (TX)

On-site
USD 140,000 - 190,000
Security Program Manager
Security Program Manager

LEN Lennar Corporation • Town of Florida (NY)

On-site
USD 120,000 - 180,000
Health insurance
401(k) match
Paid parental leave
+5
Security Program Manager
Security Program Manager

Lennar • Miami (FL)

On-site
USD 120,000 - 180,000
Health insurance
401(k) match
Paid parental leave
+3
Lead Security Analyst
Lead Security Analyst

Lennar • Irving (TX)

On-site
USD 120,000 - 160,000
Health insurance
401(k) match
Paid parental leave
+6
Security Program Manager
Security Program Manager

Jobtailor • Town of Florida (NY)

On-site
USD 120,000 - 180,000
Program Manager
Program Manager

Lennar • Bentonville (AR)

On-site
USD 110,000 - 150,000
Health insurance
401(k) match
Paid parental leave
+2
Program Manager
Program Manager

Lennar • Miami (FL)

On-site
USD 110,000 - 160,000
Medical, Dental, and Vision insurance
401(k) with company match
Paid parental leave
+2
Project Manager I
Project Manager I

Lennar • Miami (FL)

On-site
USD 95,000 - 119,000
Health insurance
401(k) match
Paid parental leave
+8
Project Manager I
Project Manager I

Lennar • Irvine (CA)

On-site
USD 95,000 - 119,000
Health insurance
401(k) with company match
Paid parental leave
+2