Senior Technical Program Manager II - Cloud Trust & Security

Axon Axon · Enterprise · Office, WA · 4901 Information Security

Senior Technical Program Manager II - Cloud Trust & Security at Axon. This role focuses on driving internal execution of security compliance and government authorization initiatives (FedRAMP, GovRAMP, CJIS, FIPS, etc.) by translating regulatory requirements into engineering roadmaps, coordinating control implementations, and scaling audit readiness through automation. The role requires partnering closely with Cloud Engineering, Infrastructure, Product Security, and Compliance teams to ensure secure and compliant cloud services.

What you'd actually do

  1. Lead planning and execution of large-scale security compliance programs (e.g., FedRAMP, GovRAMP, CJIS, FIPS), with an emphasis on internal delivery and operational execution.
  2. Translate regulatory frameworks (e.g., NIST 800-53) into actionable engineering roadmaps, backlogs, milestones, and measurable exit criteria.
  3. Drive cross-team delivery of control implementations, including remediation plans, dependency mapping, and release sequencing.
  4. Coordinate and improve the end-to-end evidence lifecycle (collection, validation, freshness, repeatability), partnering with engineering to scale compliance automation.
  5. Maintain integrated program plans and artifacts (roadmaps, schedules, risk registers, RAID logs) and proactively identify and mitigate technical and execution risks.

Skills

Required

  • Bachelor’s degree in Computer Science, Engineering, Data Science, or related technical field (or equivalent practical experience).
  • 8+ years of experience managing complex software and/or infrastructure programs; 4+ years in security and/or compliance-focused technical program management
  • Demonstrated experience delivering cloud solutions aligned with frameworks such as FedRAMP / NIST 800-53 / ISO 27001 / SOC 2 / DoD SRG.
  • Strong understanding of modern engineering delivery practices (Agile), dependency/risk management, and cross-functional collaboration.
  • Ability to go deep technically enough to partner credibly with engineering: breaking down controls into implementation work, sequencing, and validation.
  • Excellent communication skills—able to translate technical detail into clear status and executive narratives.
  • Experience with compliance/evidence automation (CI/CD controls, policy-as-code, SIEM/CSPM outputs, continuous monitoring).
  • Prior work with government authorizations and assessor engagement.

What the JD emphasized

  • security compliance
  • government authorization
  • FedRAMP
  • GovRAMP
  • CJIS
  • FIPS
  • regulatory efforts
  • security compliance
  • government authorization
  • cloud services
  • automation
  • security compliance
  • government authorization
  • FedRAMP
  • NIST 800-53
  • ISO 27001
  • SOC 2
  • DoD SRG
  • compliance automation