Get more replies from employers
Send a job-specific resume in minutes.
Lennar Corporation is seeking a Security Program Manager in the Resilience and Security Services organization. You will run the enterprise assurance program across multiple workstreams, aligning policy reviews, evidence gathering, and audit responses with Lennar’s calendars and controls.
You will partner with control owners, manage the policy lifecycle, and oversee the evidence library. Strong PM capabilities and experience with CSF, SOC, PCI, and FFIEC will be essential in this role.
Lennar Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500® company and consistently ranked among the top homebuilders in the United States.
Lennar has an opportunity for a Security Program Manager within the Resilience and Security Services organization, working in close partnership with Security, primarily comprised of Governance, Risk, and Compliance (GRC) and Privacy, to run the enterprise program that keeps Lennar's NIST Cybersecurity Framework (CSF) controls backed by clear, current policy and verifiable evidence of adherence. This role reports directly to the Director, Resilience and Security Services. The Security Program Manager is Lennar's primary point of contact for internal and external audit engagements and regulatory inquiries, and the trusted advisor to the federation of control owners across Lennar IT (LTG) who author and maintain policy. This is a program management role at its core: the Security Program Manager runs the assurance program end-to-end, setting the annual cadence, managing cross-functional workstreams, and holding every deliverable, policy review, evidence request, and audit response to a disciplined program plan. Additional insight into cybersecurity and IT auditing is a major plus.
Lead and manage the enterprise assurance program as a structured, multi-workstream initiative, applying disciplined program and project management practices (Agile, Waterfall, or hybrid, as appropriate) to keep every deliverable on time and within scope.
Build and maintain the year-long assurance calendar, aligning evidence-gathering activity, policy reviews, and audit response with Lennar's regulatory and audit calendars.
Own the enterprise policy library: maintain an accurate, current inventory of every policy tied to an enforced NIST CSF control, manage the policy lifecycle on an annual review cadence, and read every policy closely for clarity, completeness, and fidelity to the intent of the underlying control.
Design and maintain the standard process flow that governs how a policy moves from draft through review, giving control owners a clear, repeatable path to a compliant policy. Security retains final review and sign-off authority on every policy; the Security Program Manager ensures the process is followed.
Own the evidence library: ensure evidence is properly catalogued, stored, and retrievable, and that evidence approaching the end of its one-year validity window is refreshed before it expires.
Serve as Lennar's primary liaison to internal and external audit teams and regulatory bodies, leading the response to audit and regulatory evidence requests with a service-oriented, no-surprises approach, and reusing previously validated evidence wherever it falls within its one-year validity period.
Partner directly with control and policy owners across the LTG federation, providing patient, constructive guidance and facilitating solution-oriented working sessions that keep policy work moving ahead of Security's final review.
Lead the evaluation and selection of the system(s) of record for the policy and evidence libraries, anticipated to be a combination of SharePoint and AuditBoard, with final tooling to be determined as an initial program deliverable.
Identify and help assess security and compliance risks surfacing from policy gaps, control weaknesses, or stale evidence, applying working knowledge of relevant frameworks (NIST CSF, SOC, PCI, FFIEC) to elevate substantive issues to Security and the Director, Resilience and Security Services.
Communicate program status, risks, and issues to stakeholders and senior management, including VP/SVP-level leadership, in clear, concise, executive-ready formats.
Mentor and guide program contributors, including a proposed Security Analyst II role should it be approved, fostering a culture of continuous improvement and disciplined execution.
Analyze multi-domain assurance trend data, including audit findings, evidence turnaround, and policy currency, to institutionalize process fixes and improve reliability at scale.
Maintain the assurance program's source of truth in Lennar's management platforms, ensuring all artifacts meet global security and audit control standards.
Define program requirements by managing milestones, forming working teams with control owners, and establishing budgets where applicable; monitor progress by tracking activity, resolving problems, and publishing progress reports.
Regular, in-person attendance at the Lennar office during regular work hours is an essential function of this job.
This is primarily a sedentary office position which requires the incumbent to have the ability to operate computer equipment, speak, hear, bend, stoop, reach, lift, and move and carry up to 25 lbs. Finger dexterity is necessary.
This description outlines the basic responsibilities and requirements for the position noted. This is not a comprehensive listing of all job duties of the Associates. Duties, responsibilities and activities may change at any time with or without notice.
At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally.
Lennar Associates will have access to these benefits as outlined by Lennar’s policies and applicable plan terms.
Visit Lennartotalrewards.com to view our suite of benefits.
Join the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview | LinkedIn for the latest job opportunities.
Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws. We’re Always Looking Ahead Want to work in an innovative environment that empowers you to explore your passions? At Lennar, we promote asking questions and working together to solve complex problems. It’s how we’ve become a leader in the homebuilding industry and why our Associates love working here.
If you’re interested in helping people find their future homes and, in doing so, build a better future for themselves, then Lennar is the place for you.
We’re committed to building and sustaining an inclusive culture where everyone has a seat at the table, and we’re all on a first-name basis. This inclusive culture influences our hiring practices, the communities we serve and how we build better career experiences for all our Associates. It’s why we created our Everyone’s Included Advisory Council, and we’d love for you to be a part of our shared journey.
Welcome to the Lennar Community! We are tickled, delighted and happy that you've decided to join our Talent Community! We look forward to connecting about career opportunities at Lennar.