Senior Manager, Cybersecurity - US Federal

Workday Workday · Enterprise · USA.VA.Reston

This role is for a Senior Manager of Cybersecurity at Workday, focusing on US Federal contracts. The position involves leading security engineering teams, overseeing security tooling operations, ensuring alignment with government security standards (NIST, DISA), and recruiting top talent. The role requires experience in security platform engineering, vulnerability management, SIEM/SOAR, and working within highly regulated environments. A security clearance is also a requirement.

What you'd actually do

  1. Lead a dynamic team of security engineers who are passionate and dedicated to building our Platform Security products
  2. Recruit top talent to grow the team capacity with the ability to motivate and inspire the team
  3. Partner with Governance Risk & Compliance (GRC), Engineering, System Owners, and Product to deliver secure platform solutions
  4. Oversees the security tooling operations to include vulnerability scanners, SIEM/SOAR, logging, and observability platforms, and ensure high availability and lifecycle management
  5. Ensure alignment with NIST 800-53, NIST 800-218, DISA SRG, and internal audit requirements

Skills

Required

  • 5+ years of relevant security engineering experience
  • 3+ years experience leading technical teams in agile environments, or equivalent experience
  • Hands-on experience operating EDR/XDR, SIEM/SOAR, CSPM, vulnerability management, and secure pipelines.
  • Solid understanding of NIST 800-53, FedRAMP, RMF, and SSDF
  • Experience in growing a team by hiring and retaining talent at all levels of experience
  • BS in Computer Science or a related field

Nice to have

  • FedRAMP JAB or DOD IL experience
  • Certifications: CISSP, CISM, GCIH, or cloud security certs.
  • Previous experience in SaaS or large-scale security operations
  • An active TS/SCI w/CI Poly is preferred.

What the JD emphasized

  • mandates that all Workday personnel working on the contracts be United States citizens
  • deep familiarity with the design/architecture, build, tradeoffs, and processes involved in deploying and operating security platform engineering tools and shared services
  • proven track record of building and leading teams responsible for security platform architecture, build, and operations within highly regulated security compliance boundaries
  • This role may require a security clearance at the TS/SCI w/CI Poly level.
  • Applicants must have the ability to obtain and maintain a U.S. government issued security clearance.