Skip to content
The board
Job
ProductOperations

Strategic Program Manager, Information Security

Figma · Business Operations

Pay
$185,000–$296,000/yr
Where
San Francisco, CA • New York, NY • United States
Posted
Aug 19

Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!

Figma's Information Security team is growing and looking for a Strategic Program Manager to drive strategic initiatives and engagement across the organization.

What you'd do

  • Lead strategic security programs from planning through execution, coordinating priorities, dependencies, risks, and accountability across security and business teams
  • Partner with teams across Figma to identify and address security risks, align stakeholders, and translate security priorities into practical guidance and action plans
  • Define and track security program metrics, OKRs, risk registers, and reporting that give leadership visibility into program health, priorities, and risk posture
  • Identify and coordinate the remediation of security gaps by partnering with control owners, security specialists, and business stakeholders to drive issues to resolution
  • Design and implement scalable security practices, including policies, processes, operating models, and change management plans that support long-term adoption
  • Drive security awareness and engagement through company-wide training, communications, and educational initiatives in partnership with teams across Figma
  • Support security leadership with strategic planning and portfolio management, including preparing leadership briefings, coordinating decisions, and driving follow-through on key commitments
  • 5+ years of experience in security program management, security business partnership, or a related strategic role within information security
  • Demonstrated experience leading complex, cross-functional security programs from planning through execution, including developing program metrics, OKRs, risk registers, or dashboards that provide leadership visibility into performance and risk
  • Working knowledge of information security frameworks and practices, such as NIST CSF, SOC 2, ISO 27001, or equivalent frameworks