LVT
Staff Technical Program Manager - Security & Compliance Programs
Seattle, Washington, United States · Staff+ · Full-time
No sponsorship$159k-$214kDetected 39 days ago
Cloud PlatformsCI/CDDevOpsMachine LearningAgentic AICybersecuritySIEMIncident ResponseComplianceStakeholder ManagementAuditingProcurementLeadershipCommunicationInternal Audit
About the role
- LVT is pursuing government and enterprise markets that demand rigorous security and compliance posture-including FedRAMP authorization, NIST 800-53 alignment, and continuous monitoring at scale.
- This role is the execution engine for those programs.
- This is a builder and executor role in equal measure.
Responsibilities
- Own end-to-end program execution for LVT's FedRAMP authorization effort and related regulatory initiatives (NIST 800-53, SOC 2, CJIS, or equivalent), from readiness assessment through Authorization to Operate (ATO).
- Drive cross-team delivery of control implementations, remediation plans, and release sequencing across Cloud Engineering, Security Engineering, DevOps, and Product teams.
- Proactively identify and surface technical dependencies, program risks, and cross-team blockers; drive mitigation strategies before they impact delivery timelines or compliance windows.
- Partner with external vendors, 3PAO assessors (e.g., Schellman or equivalent), cloud boundary/ATO providers, and government stakeholders to manage assessment readiness and evidence submission cycles.
- Build and maintain program dashboards, status reporting artifacts, and board-level summaries that communicate compliance trajectory, open risks, and remediation velocity in plain language.
- Champion a data-driven culture within the security and infrastructure programs-using metrics on control implementation velocity, open findings aging, and remediation SLA adherence to drive accountability.
- You build credibility with engineers by knowing enough to ask useful questions-and by knowing when to get out of the way.
Requirements
- You hold the details and the big picture simultaneously: you can navigate a NIST control family in the morning and present program risk to stakeholders.
- You are relentlessly organized but not rigid.
- Experience working in IoT, edge computing, or physical security product environments where the authorization boundary includes both cloud and edge/device components.
- Experience engaging with government procurement, agency authorization bodies, or contract manufacturing in regulated contexts.
Nice to have
- Experience coordinating with external compliance assessors (3PAOs, auditors, agency liaisons) and managing evidence lifecycle and submission readiness.
- Exceptional written and verbal communication skills-ability to translate technical control status into crisp executive narratives and to write clear, unambiguous program documentation suitable for audit review.
- Bachelor's degree in Computer Science, Engineering, Information Systems, or a related technical field
- equivalent practical experience accepted.
- Direct experience with FedRAMP authorization pathways, including system security plan (SSP) development, and ATO milestone management.
Compensation
- The beginning annual salary range for this role is $159,300.00 - $214,000 USD and is determined by location, job-related experience, and education/training.
Benefits
- We invest in our crew's health, families, and financial futures with a benefits package designed to support you inside and outside the office.
- Full-time benefits include, but not limited to: Comprehensive health, dental and vision coverage, retirement benefits (401k match up to 4%), and flexible PTO.
- All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
Company info
- Named one of the Financial Times' Fastest Growing Companies 2025 and #10 on the Inc.
- 5000 Rocky Mountain Regional list for 2025.
- Innovative Leadership: Our CEO, Ryan Porter, was named an EY Entrepreneur of the Year 2025, and our CTO, Steve Lindsey, was inducted into the Silicon Slopes CTO Hall of Fame in 2024.
- Product & Software Excellence: We were named one of The Software Report's Top 100 Software Companies of 2023 and are a winner of the Security Today Govies Award for 2025.
- As Staff TPM - Security & Compliance Programs, you will own the end-to-end program execution for LVT's most critical security and regulatory initiatives.
- You will sit at the intersection of Engineering, Security, Cloud Infrastructure, Product, and external compliance stakeholders-translating complex regulatory requirements into engineering-ready roadmaps, driving control implementations, and ensuring LVT's platform is audit-ready, operationally durable, and positioned to serve regulated customers.
- You will bring clarity to ambiguity, drive cross-functional alignment without authority, and ensure LVT can move fast in regulated environments without cutting corners.
- You will report to the Director of Technical Program Management and work in close partnership with the Product and Engineering leaders, Head of Security Engineering, and Cloud Infrastructure leadership.
- Security & Compliance Program Ownership
- Translate regulatory control frameworks (e.g., NIST 800-53 control families) into actionable engineering backlogs, implementation roadmaps, milestone schedules, and measurable exit criteria.
- Maintain integrated program plans, risk registers, RAID logs, and dependency maps that reflect real-time program health across multiple workstreams.
- Coordinate and improve the end-to-end evidence lifecycle-collection, validation, freshness, and repeatability-partnering with engineering to scale compliance automation and reduce manual burden over time.
- Cross-Functional Execution & Stakeholder Management
- Serve as the primary execution liaison between Engineering teams and compliance stakeholders (internal audit, external 3PAO assessors, and government agency reviewers), ensuring work is audit-ready and documentation is operationally durable.
- Coordinate integration between security/compliance work and LVT's broader product and infrastructure roadmaps-ensuring compliance is embedded in delivery rather than bolted on.
- Operational Rigor & Reporting
- Design and maintain lightweight but effective reporting cadences that give executive stakeholders real-time visibility into program health, compliance milestone status, and risk posture-without creating theater.
- Establish repeatable processes and tooling for evidence collection, continuous monitoring readiness, and audit cycle preparation that reduce per-cycle effort as the program matures.
- Technical Program Management Craft
- Engage credibly with engineering leads on architecture decisions related to cloud infrastructure, identity and access management, vulnerability management, CI/CD controls, observability, and incident response-understanding enough to ask the right questions and sequence the right work.
- Apply modern delivery practices (Agile, iterative milestone planning) to compliance program execution; adapt cadences as the program shifts from readiness to authorization to continuous monitoring.
Equal opportunity
- EQUAL OPPORTUNITY EMPLOYER.
- Must be authorized to work in the U.S. If reasonable accommodation is needed to participate in the job application or interview process, and/or to perform essential job functions, please reach out to your recruiter.
Visa & Work Authorization
- Must be authorized to work in the U.S. If reasonable accommodation is needed to participate in the job application or interview process, and/or to perform essential job functions, please reach out to your recruiter.
This listing is sourced directly from LVT's careers page and normalized into a canonical job model.