Senior Technical Program Manager, Security

Aledade

Washington (District of Columbia)

On-site

USD 130,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Aledade is seeking a Sr Security TPM in Washington, DC, to enhance security by embedding it into engineering practices and compliance frameworks. This role involves diagnosing and prioritizing security maturity while engaging with engineering and compliance teams.

Applicants should have 10+ years in technical program management, strong security domain fluency, and a track record in transforming security programs. Aledade celebrates diversity and is committed to being an equal opportunity employer.

Qualifications

  • 10+ years in technical program management, especially high-stakes security programs.
  • Strong technical judgment to challenge decisions and identify risks.
  • Experience transforming security programs and closing gaps.

Responsibilities

  • Drive security program maturity and assess current state.
  • Translate security requirements into engineering practice.
  • Own compliance standards without losing sight of risk.

Skills

Technical program management
Deep security domain fluency
Risk management
Influence without authority
Outcomes orientation

Job description

Aledade exists to help independent primary care practices survive and thrive — and to bend the healthcare cost curve by reducing the most suffering and saving the most lives. That mission runs on trust: trust that patient data is protected, that financial controls hold, that the systems clinicians and patients depend on are secure and reliable.

This role exists to scale that trust through security as a foundation, not the friction.

As Sr Security TPM, you bring vision and depth across multiple disciplines: the controls and compliance frameworks that are non-negotiable in healthcare and financial operations, the engineering instincts that come from understanding how engineering teams actually work — their cycles, their constraints, their craft — and knowing how to weave security into that fabric as a native discipline, not an outside requirement, and the program leadership to make it all move at the speed the technology landscape demands. You understand where a security program is, what it needs to become, and how to build the structures that get it there — durably, extensibly, and without creating hurdles or stovepipes along the way.

You see security as infrastructure. You engineer the highways — not the roadblocks — so that the compliance requirements, control frameworks, and engineering practices that protect Aledade’s patients, practices, and people aren’t obstacles to work around. They’re already built into how work gets done, smoothing the way for the trust this mission depends on.

Primary Duties
Diagnose, prioritize, and drive security program maturity
  • Assess the current state with clear eyes: identify what’s working, what’s underdeveloped, and what needs to be rebuilt
  • Build a prioritized, multi-quarter roadmap that sequences risk reduction against business reality — without waiting to be handed a problem statement
  • Establish governance, ownership, and metrics that make the portfolio legible and actionable across security leadership, engineering leadership, and executives
  • Hold the line on outcomes — not activity or artifacts.
Translate security requirements into engineering practice
  • Make security by design the operating standard: shift-left practices, threat modeling, architecture review, and controls embedded into how teams plan and ship
  • Own the intersection of what security requires and what engineering can build — and move both sides toward it, fluently
  • Remove the blockers that sit between security intent and engineering execution
  • Build the habits and structures that outlast any individual program or initiative
Own the compliance surface without losing sight of real risk
  • Translate HIPAA, financial controls, and governance requirements into resilient programs that reduce actual exposure and scale — not just satisfy milestone audits
  • Sequence compliance investments against where the company is going, not just where it’s been
  • Build the evidence frameworks, metrics, and operational readiness that hold up under real scrutiny at scale
Shape the AI security framework before it becomes a crisis
  • Synthesize Aledade posture about AI risk, guardrails, and governance as AI becomes embedded in how we work and what we build
  • Build the scaffolding — principles, review processes, accountability structures — that gives others a framework to execute against
  • Operate with conviction in a space where the industry is still writing the rules
Drive alignment across a complex, high-stakes intersection
  • Operate at the seam between security, engineering, compliance, legal, and finance — without owning any of the headcount
  • Eliminate toil that crushes effectiveness of the subject matter experts around you by clearing the path, not walking it for them
  • Surface what’s being normalized that shouldn’t be — the risks deferred, the gaps unnamed, the programs that exist only on paper
  • Drive evidence-based decisions that stick — from architecture, through build, to the risk level with executives
  • Full-stack program leadership: equally at home in an architecture review, a compliance audit, a risk conversation with the CTO, and a sprint planning session with an engineering team
Minimum Qualifications
  • 10+ years in technical program management at Staff-level scope — cross-org, ambiguous, high-stakes security programs
  • Deep security domain fluency: frameworks, controls, HIPAA and financial-specific obligations, risk management — and how all of it maps to real engineering decisions
  • Technical judgment strong enough to question the status quo, challenge architectural decisions, and identify real risk versus inherited noise
  • Proven track record of transforming security programs — advancing maturity, closing gaps, and positioning programs for where the business is going
  • Influence without authority across senior security, engineering, compliance, and executive stakeholders
  • Outcomes orientation: risk reduction and program maturity
Preferred KSA’s
  • Experience in healthcare or other highly regulated environments where security failure has consequences beyond the company
  • Track record of building security governance and operating models from the ground up
  • Familiarity with AI and ML risk frameworks and emerging AI governance practice
  • Operated at a company in significant growth — where the security foundation had to be built while the business was already running on it
  • Can move between a threat model conversation with a security engineer and a risk framing conversation with a CFO without losing accuracy in either direction
Physical Requirements
  • Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required.

At Aledade, we don’t just accept differences, we celebrate them! We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation.

Privacy Policy: By applying for this job, you agree to Aledade's Applicant Privacy Policy available at https://www.aledade.com/privacy-policy-applicants

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer - IAM
Staff Security Engineer - IAM

Socket.dev • Austin (TX)

On-site
USD 190,000 - 270,000
Remote-friendly
401(k) with match
Stock options
+2
Senior Security Engineer II - DSPM
Senior Security Engineer II - DSPM

Aledade, Inc. • Austin (TX)

Hybrid
USD 110,000 - 150,000
Flexible work schedules
Health, dental, and vision insurance
21 days of PTO in the first year
+2
Director of Security Operations, Remote
Director of Security Operations, Remote

Aledade • Northern (KY)

Hybrid
USD 140,000 - 210,000
Health insurance
401(k) with match
Stock options
+2
Senior Security Engineer II - DSPM
Senior Security Engineer II - DSPM

Aledade • Austin (TX)

Hybrid
USD 120,000 - 150,000
Flexible work schedules
Health, dental, and vision insurance
21 days of PTO
+2
Director of Security Operations, Remote
Director of Security Operations, Remote

Aledade PBC • United States

Remote
USD 180,000 - 260,000
Health insurance
PTO 21 days (approx.)
Volunteer days
+7
Director of Security Operations, Remote
Director of Security Operations, Remote

Aledade • United States

On-site
USD 150,000 - 230,000
Remote-friendly culture
401(k) with match
Stock options
+1
Senior Security Engineer II (IAM)
Senior Security Engineer II (IAM)

Aledade • United States

Remote
USD 120,000 - 150,000
Flexible work schedules
Health, dental and vision insurance
Robust time-off plan
+2
Director - Application Support Operations, Remote
Director - Application Support Operations, Remote

Aledade • United States

Remote
USD 120,000 - 160,000
Flexible work schedules
Health, dental, and vision insurance
Robust time-off plan
+2
Senior Technical Product Manager (AI Data Platform), Remote
Senior Technical Product Manager (AI Data Platform), Remote

Aledade • United States

Remote
USD 120,000 - 160,000
Health insurance
401(k) with match
Flexible work schedules
+3
Senior Program Specialist, Hospital & Health System Enablement and Ops, Remote
Senior Program Specialist, Hospital & Health System Enablement and Ops, Remote

Socket.dev • United States

Remote
USD 120,000 - 180,000
Health, dental and vision insurance
Paid time off
401(k) with match
+3