About the job
The Squarespace Technical Program Management (TPM) team is on the lookout for a Senior Technical Program Manager to spearhead our compliance initiatives within the Security organization. In this pivotal role, you will serve as a strategic partner to both Security leadership and the Legal team, guiding the comprehensive execution of cross-functional programs that tackle intricate compliance, privacy, and technical security challenges.
This position requires a unique combination of extensive Governance, Risk, and Compliance (GRC) expertise alongside technical fluency, enabling you to collaborate effectively with engineering teams to drive remediation efforts. You will take charge of outlining a clear path forward, ensuring that high-priority security and compliance projects are executed with meticulous attention to detail and maintain consistent momentum.
This is a New York City-based role with a requirement to work from our office two days per week. You will report directly to the Manager of Technical Program Management.
Key Responsibilities:
- Developing clear and effective plans throughout the technical discovery and delivery phases (scope, milestones, tasks, roles and responsibilities, risk mitigation, etc.)
- Facilitating collaboration and communication across various teams (Security, Engineering, Legal, etc.) to break down silos
- Monitoring project status and providing updates to project stakeholders
- Identifying opportunities for process improvements and best practices at the team level
- Exhibiting excellent communication skills across diverse stakeholders
Ideal Candidate Profile:
- 4+ years of experience in a Technical Program Manager or similar role, managing engineering-driven projects throughout all phases of the software development lifecycle
- Expertise in GRC and Audit, specifically in leading complex compliance delivery for standards such as PCI, SOC 2, and SOX, with a proven ability to oversee the entire audit lifecycle with a proactive problem-solving approach
- Technical security fluency, capable of translating abstract security requirements and legal mandates (like GDPR, CCPA) into tangible, actionable technical tasks for engineering and infrastructure teams
- Demonstrated success in partnering with security leadership to build and maintain comprehensive department-wide roadmaps, lead planning meetings, and provide regular status reports
- Advanced organizational influence, able to drive alignment across diverse groups (Product, Engineering, Legal, and Finance) and impact outcomes without direct authority
- Proven expertise in operational excellence, particularly in Agile methodologies

