Sr. Security Program Manager
Mitek Systems
Apply to this jobMitek (NASDAQ: MITK) is a global leader in digital & biometric identity authentication, fraud prevention, and mobile deposit solutions. Our verified identity platform and advanced image capture solutions are built on the latest advancements in biometric recognition, artificial intelligence, computer vision and machine learning, and trusted by over 7,500 organizations worldwide. We are headquartered in San Diego, California, with operations in the United Kingdom, Spain, France, Mexico, and the Netherlands. Visit us at www.miteksystems.com.
We are Virtual 1st! Whether you choose to work remotely from your home office or in-person from one of Mitek’s offices, our practices, processes and tools are designed to enable your success. At Mitek, the Future of Work is about flexibility and preference wherever and whenever we are working. Because we care about our candidates, employees and customers, we include an in-person meeting as part of our hiring process. It’s one of the ways we live our mission to “Protect What’s Real.”
At Mitek, we believe that teams are more resilient, effective, and innovative when they benefit from a wide range of ideas, lived experiences, and perspectives. The strength of our organization is deeply rooted in the people who power it. We know that a workforce reflecting the richness of our communities and customers helps us better serve their needs.
Operational backbone of the department, ensuring the Information Security program runs efficiently and measurably by coordinating initiatives across all security functions, producing executive reporting, and managing the operational cadence so the VP, IT & Security can focus on strategy, customer security relationships, board engagement, and regulatory matters.
This is not a hands-on engineering role, but the ideal candidate has built credibility working within an Information Security organization and understands how Security Operations, Vulnerability Management, Identity & Access Management, Cloud Security, Incident Response, and Security Engineering teams operate and partner together. Success in this role comes from translating operational security priorities into executive action, cross-functional execution, and measurable program outcomes.
What You’ll Do (Essential Responsibilities)
-
Own the security program roadmap at the execution level across all security functions
-
Track initiatives, timelines, and blockers without requiring VP involvement day-to-day
-
Coordinate cross-functional dependencies across Security Operations, Vulnerability Management, Security Engineering, Identity & Access Management, Cloud Security, IT, Legal, and Compliance.
-
Act with delegated authority from the VP on operational execution matters
-
Build and maintain the security metrics framework — vulnerability SLA compliance, incident-response timelines, audit-finding closure, and training completion
-
Produce dashboards for board reporting, SEC disclosure prep, audit-committee updates, and customer security reviews
-
Translate raw tool and team data into a coherent program narrative for executive and external audiences
-
Partner with Security Operations, Engineering, and IT teams to coordinate security initiatives, remediation efforts, and operational follow-through across the security program.
-
Coordinate security team evidence collection for SOC 2, ISO 27001, PCI-DSS, and customer audits.
-
Serve as the security team's interface to the General Counsel's Compliance team during audits and regulatory activities.
-
Track audit findings, operational remediation activities, and follow issues through closure to improve the organization's overall security posture.
-
Own the security policy lifecycle: annual review, version control, approval, accessibility
-
Own the security awareness and training program including phishing simulations
-
Manage security-tool contracts, renewals, license utilization, and MSSP relationship logistics
-
Non-Manager: No oversight or accountability for others, an individual contributor.
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Program & Project Coordination
Metrics, Reporting & Dashboards
Security Operations & Security Program Coordination
Security Governance & Operational Enablement
This job description reflects management’s assignment of essential functions; and nothing in this herein restricts management’s right to assign or reassign duties and responsibilities to this job at any time.
Managerial Responsibilities
What You Need (Education/Licenses/Certifications, Experience, Knowledge, Technical Skills and Abilities)
- 5–8+ years of experience working within an Information Security or Cybersecurity organization, with increasing responsibility for leading security programs, coordinating cross-functional initiatives, and driving operational execution.
- Experience partnering closely with technical security teams such as Security Operations, Vulnerability Management, Cloud Security, Identity & Access Management, Security Engineering, or Incident Response.
- Experience working in close partnership with Engineering and Security teams to drive remediation efforts, operational improvements, and security program execution.
- Ability to translate operational security priorities, risks, and technical initiatives into executive reporting, program execution, and actionable plans for cross-functional stakeholders.
- Solid understanding of operational security concepts including vulnerability management, incident response, cloud security, identity and access management, and security monitoring.
- Working familiarity with security frameworks and standards such as NIST CSF, SOC 2, ISO 27001, and PCI-DSS, with the ability to apply them in support of operational security programs.
- Strong written and verbal communication skills with the ability to communicate effectively with technical teams, executives, and cross-functional stakeholders.
- Experience coordinating security audits by partnering with technical teams on evidence collection, remediation tracking, and driving findings through closure.
What Would be Nice (Preferred Skills & Experience)
- Experience in financial services, fintech, SaaS, or other highly regulated industries.
- Experience supporting or coordinating operational security programs within a mature Information Security organization.
- Familiarity with modern security and regulatory frameworks such as GDPR, NIS2, or DORA.
- Professional certifications such as CISSP, CISM, or PMP.
- Experience supporting executive cybersecurity reporting, SEC cybersecurity disclosures, or Audit Committee reporting.
- Experience partnering with Managed Security Service Providers (MSSPs) or other security technology vendors.
Success Metrics -First Year
- Roadmap documented, socialized, and tracked within 60 days.
- Security metrics dashboard established and reported monthly within 90 days.
- Build trusted partnerships across Security Operations, Engineering, IT, and other cross-functional teams while improving visibility into security program execution.
- Zero missed audit evidence deadlines during the first audit cycle.
- Improve visibility into operational security initiatives by ensuring remediation efforts, program milestones, and key security metrics are consistently tracked and communicated to leadership.
- VP time spent on day-to-day operational coordination materially reduced, enabling greater focus on strategic initiatives, customer engagement, and executive priorities.
We take pride in enabling career growth in an environment of innovation and teamwork. Our commitment to all Mitekians is to do meaningful work that matters. Our culture is defined by delivering our best to our customers by providing high value solutions and impactful outcomes, by continuously challenging convention, and by caring for each other through collaboration and celebrating our successes. We are committed to creating competitive, equitable compensation & benefits programs and career development opportunities.
Benefit offerings – may vary based on geographic location
Wellness: Universal, supplemental, and private healthcare plan choices based on country specifics
Financial future: retirement/pension plan contributions, MTK stock plan participation
Income protection: life event & disability coverage
Paid time off: generous annual leave, company holidays, volunteer time off
Learning: e-learning license, tuition reimbursement, hackathons
Home office setup allowance
Additional/optional benefits: pet insurance, identity theft protection, legal assistance
We sincerely appreciate your interest in Mitek. We know your time is valuable and look forward to the potential of speaking with you further!
Compensation (from employer):
130000–180000 USD per year
Summary
Coordinate security initiatives, metrics, and audits to support cybersecurity programs.
Job title
Sr. Security Program Manager
Experience level
5–8+ years
Minimum experience
5+ years exp
Industry
software
Location requirements
Remote work allowed in the United States.
Salary
$130k–$180k
Visa sponsorship
H-1B sponsor history
Management role
No
Required skills
Preferred skills
Specializations
Structured locations inferred from the posting.
United States