See how much of this job your resume covers, and what’s missing.
Want a recruiter to go through it line by line?
Get professional reviewQuestions interviewers often ask for this role, with sample answers.
Upload your resume and we draft a letter for this exact role, tailored to what it asks for.
The Principal Technical Program Manager will define and lead complex, high-risk cybersecurity programs by translating executive strategy into scalable operating models. They will orchestrate execution across diverse organizational boundaries while using AI and telemetry to drive outcomes and provide strategic advisory to senior leadership.
Team Overview
The mission of the Microsoft CISO Organization is to defend Microsoft, our customers, and our partners from cybersecurity threats. Our strategy is grounded in advanced threat intelligence, proactive threat hunting, resilient security operations, sustainable governance, and use of AI to anticipate, detect, and respond to even the most sophisticated attacks.
The CISO Operations Security Implementation & Capability (OSIC) team plays a critical role in turning the CISO strategy into reality. OSIC is responsible for scaling, systematizing, and operationalizing cybersecurity initiatives across the CISO Organization and across Microsoft. OSIC ensures that cybersecurity programs are well-designed, consistently executed, measurable, and sustainable at Microsoft’s global scale.
Role Overview
We are seeking a Principal Technical Program Manager to join our CISO Operations Security Implementation & Capability (OSIC) team. You will define direction and lead the CISO organization’s most complex, cross-cutting, and high-risk programs and portfolios from diagnosis and strategy through durable execution, adoption, transition, and sustained outcomes. Applying strategic insight, enterprise influence, technical and security judgment, and systems thinking, you will translate executive intent into scalable operating models and organizational capabilities; clarify outcomes, governance, decision rights, dependencies, sequencing, and risk-based tradeoffs; and orchestrate execution across teams with different incentives, cadences, and authorities. You will instrument outcomes, diagnose drift, and use AI, telemetry, and other evidence to course-correct priorities and investments. As a trusted advisor and force multiplier, you will enable senior leaders across engineering, security, operations, risk and compliance, and business organizations to make informed decisions, remove systemic barriers, drive adoption and change, and deliver long-term security impact across Microsoft.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Translate CISO strategy and executive intent into enterprise-scale programs and portfolios by framing ambiguous problems, defining target outcomes and success measures, establishing governance and decision rights, mapping dependencies, and creating executable multi-year roadmaps.
Architect durable operating models, automated workflows, and reusable capabilities that institutionalize effective practices, drive adoption across organizational boundaries, and scale beyond individual programs or leaders.
Orchestrate complex, high-risk initiatives across Microsoft by aligning senior leaders in engineering, security, operations, risk and compliance, and business organizations; establishing operating rhythms and accountability; resolving systemic blockers; and driving timely decisions and tradeoffs.
Use AI, telemetry, and qualitative and quantitative evidence to instrument outcomes, identify emerging risk and program drift, improve decision velocity and accuracy, and continuously optimize CISO operations and portfolio investments.
Serve as a trusted advisor to senior executives by synthesizing complex technical, operational, and organizational inputs into clear narratives, options, tradeoffs, and recommendations that shape strategy, investment, and execution decisions.
Required Qualifications:
Other Requirements:
Candidates must be able to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
Preferred Qualifications:
Demonstrated experience leading enterprise-scale, high-risk, and executive-visible programs through ambiguity, competing priorities, and evolving requirements, from problem definition and strategy through execution, adoption, and sustained outcomes.
Exceptional leadership and influence skills, with a demonstrated ability to align senior executives and diverse technical and business stakeholders, clarify decision rights, resolve conflict, and drive accountability across organizational boundaries without formal authority.
Executive-level communication and advisory capability, including experience framing complex technical and operational issues, presenting options and tradeoffs, constructively challenging assumptions, and influencing decisions with senior leaders.
Expertise in diagnosing unfamiliar, systemic problems and applying structured thinking, experimentation, and sound judgment to establish direction and make consequential decisions under uncertainty.
Advanced analytical and systems-thinking skills, with the ability to model complex organizational and technical systems, identify leverage points and unintended consequences, and translate qualitative and quantitative evidence into portfolio priorities and investment recommendations.
Deep technical fluency in cybersecurity or adjacent technical domains, with the ability to evaluate architecture and risk, challenge assumptions, and translate effectively between technical experts and executive leaders.
Product-oriented leadership, with experience shaping customer-centered strategy, prioritizing investments, driving adoption, and managing the lifecycle of enterprise platforms, services, or organizational capabilities.
#OSIC #CISO_Ops
Technical Program Management IC6 - The typical base pay range for this role across the U.S. is USD $165,600 - $296,400 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $220,800 - $331,200 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
Stop the endless job search. Our AI finds and applies to the best jobs for you.
Featuring 214,457+ Jobs in Technical Program Manager
Answer easy questions
214,457+ jobs across 15+ categories
Get your best job matches
Only hand-screened, legit jobs
Find a remote job faster
No ads, scams, or junk
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”