Demo

Principal Security Program Manager

Calance
Colorado, CO Contractor
POSTED ON 4/3/2026
AVAILABLE BEFORE 5/1/2026

Principal Security Program Manager (Fully Remote)

6-month contract with potential to convert

Industry: Healthcare

Rate Range: $70- $80/hr, W2 Benefits


  1. Tech they have in their environment: PAN, Cisco, Meraki, CrowdStrike, Reliaquest (MSP), Abnormal (email security), Commvault (backup), Imperva



Key Responsibilities

Security Program & Portfolio Leadership

· Own end-to-end delivery of multiple security initiatives and operational programs with clear outcomes (risk reduction, control maturity, resilience, compliance readiness).

· Translate security strategy into executable workstreams and sustained operational mechanisms.

Hands-On Security Engineering

· Partner with IT to engineer, implement, and continuously improve security controls across identity, endpoint, email, collaboration, cloud platforms, and core infrastructure (including Microsoft 365 and Azure where applicable).

· Develop and maintain secure configurations, baselines, and technical guardrails; drive continuous improvement through posture reviews and control validation as appropriate.

· Perform technical investigation and troubleshooting of security events, misconfigurations, and control gaps; implement corrective actions.

Cybersecurity Architecture & Defense Strategy

· Contribute to security architecture decisions and defense strategies using a layered, threat-informed approach.

· Assess emerging threats and recommend pragmatic technical and procedural improvements.

Incident Response & Operational Support (as needed)

· Support security incident response activities: triage, containment, eradication, recovery, and lessons learned.

· Improve readiness through playbooks, tabletop exercises, partner coordination, and continuous improvement actions.

Security Toolset Ownership & Partner Management

· Own the operational effectiveness of the security toolset (monitoring, detection, response, email security, vulnerability management, identity protection, logging/analytics, and related systems).

· Manage security partners including a managed SOC and other third-party security service providers: define outcomes, SLAs, escalation paths, and service quality expectations.

· Drive detection tuning and alert quality improvements with partners to reduce noise and improve response outcomes.

Security Awareness and Training

· Design and continuously improve security awareness initiatives that reduce human-risk and strengthen security culture.

· Design, execute, and optimize phishing simulations, including campaign planning, targeting strategies, and metrics (e.g., susceptibility and reporting behaviors) to inform training and reinforcement.

· Partner with HR/People Ops and business leaders to drive sustained behavior change and measurable improvements over time.

Audit Support & Control Evidence Readiness

· As they occur, support audits by coordinating evidence collection, validating control operation, and ensuring timely closure of findings and remediation actions.

· Maintain and improve documentation of security controls, technical configurations, procedures, and operating evidence to meet audit and compliance expectations.

· Translate audit requirements into actionable control improvements and sustainable operational practices.

Third-Party Risk Assessments (TPRM)

· Facilitate lean yet effective third-party risk assessments for new and existing vendors, including questionnaire review, evidence validation, risk summaries, and remediation tracking.

· Evaluate vendor security posture, data handling practices, access models, and incident response capabilities.


Required Qualifications

· Bachelor’s degree in Information Security, Computer Science, Engineering, or similar.

· 8 years of progressively responsible experience in cybersecurity, including hands-on engineering responsibilities and ownership of security outcomes.

· Demonstrated experience leading cross-functional initiatives with strong execution discipline.

· Experience managing and optimizing security toolsets and coordinating with external security partners (including a managed SOC).

· Strong written and verbal communication skills, including ability to communicate risk and recommendations to non-technical audiences.


Preferred Qualifications

· Experience in healthcare or highly regulated environments.

· Security certifications (CISSP, CISM, CCSP, Security , or equivalent).

· Familiarity with enterprise identity security, cloud security, monitoring/analytics, and audit/compliance support across modern environments (including Microsoft 365 and Azure).


Core Competencies

· Security engineering depth program leadership breadth

· Risk-based decision making and pragmatic security architecture

· Vendor/partner management with measurable outcomes

· Executive-ready communication and stakeholder influence

· Operational excellence and continuous improvement mindset

Salary : $70 - $80

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Principal Security Program Manager?

Sign up to receive alerts about other jobs on the Principal Security Program Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$220,784 - $286,649
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$220,784 - $286,649
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Calance

  • Calance Broomfield, CO
  • Position Overview We are seeking a highly experienced Senior PROS CPQ & Pricing Solutions Analyst to lead changes in the design, implementation, and optimi... more
  • 1 Day Ago

  • Calance Centennial, CO
  • M365 SME Looking for an SME in the entire M365 Suite: Exchange, OneDrive, SharePoint, Teams, OneNote, etc. 7 years of experience so mid level is fine Gover... more
  • 1 Day Ago

  • Calance Denver, CO
  • Salesforce Architect Description: The Salesforce Marketing Cloud (MCE) Solution Architect is a critical execution and stabilization role for the Mercury Di... more
  • 1 Day Ago

  • Calance Denver, CO
  • Applications Support Analyst Job Description Application Operations Lead End to End SaaS & Workflow Support Role Summary The l Application Operations Lead ... more
  • 1 Day Ago


Not the job you're looking for? Here are some other Principal Security Program Manager jobs in the Colorado, CO area that may be a better fit.

  • Principal Financial Group Des Moines, IA
  • What You'll Do We’re looking for a Program Manager to join our Retirement and Income Solutions (RIS) team. In this role, you'll drive complex and high-impa... more
  • 1 Month Ago

  • Jobs via Dice Denver, CO
  • Prinicpal Security Program Manager Position Summary Reporting to the CISO, the Principal Security Program Manager is the leader responsible for driving mea... more
  • 14 Days Ago

AI Assistant is available now!

Feel free to start your new journey!