Senior Security Program Manager - Cloud Trust & Security

Axon Axon · Enterprise · Office, WA · 4901 Information Security

This role is for a Senior Security Program Manager focused on cloud trust and security, specifically external-facing leadership for cloud service authorization and compliance activities in the US State & Local market, including CJIS and potentially FedRAMP/GovRAMP. The role requires managing security compliance obligations, leading auditor readiness, owning documentation, and partnering with various teams to support customer security conversations and regulator interactions.

What you'd actually do

  1. Act as a primary point of contact and subject matter expert for government authorization and security compliance for Axon cloud services in the US State & Local market, including CJIS Security Policy compliance.
  2. Manage security compliance obligations across internal teams and external parties (customers, audit teams, authorizing bodies) to ensure commitments, timelines, and deliverables are met.
  3. Lead assessor/auditor readiness and coordination: evidence request intake, response SLAs, interview orchestration, stakeholder prep, and executive-level program updates.
  4. Own and maintain authorization and compliance documentation (policies, procedures, plans, and authorization packages as relevant), ensuring accuracy, clarity, and consistency.
  5. Execute and mature security assurance and compliance programs to ensure ongoing effectiveness and alignment with standards and external requirements.

Skills

Required

  • 8+ years of experience in information security or security compliance, including leadership responsibilities in a technical environment.
  • Strong organizational, communication, and program management skills; able to lead through influence across security, engineering, product, and go-to-market partners.
  • Working experience with one or more of: CJIS, FedRAMP, NIST 800-53, DISA SRG, or similar compliance/authorization processes.
  • Strong background in cloud security controls and experience implementing/operationalizing security requirements in cloud environments.
  • Excellent presentation and stakeholder management skills, including the ability to represent the program with customers and external assessors.
  • Experience with US state or local government security programs and/or continuous monitoring of cloud environments.
  • Experience with international data security and privacy standards.

Nice to have

  • Security certifications (e.g., CISSP, CISM, CCSP, or similar).

What the JD emphasized

  • external-facing leader
  • government authorization
  • security compliance
  • CJIS
  • FedRAMP
  • customer security conversations
  • regulator/authorizer interactions