Technical Program Manager, Product Trust

Harvey Harvey · AI Frontier · San Francisco, CA · Security

Technical Program Manager role focused on AI security, compliance, and product trust for an enterprise-grade AI platform in the legal services sector. The role involves managing security and compliance review processes, collaborating with cross-functional teams, developing customer-facing content, and leading audit readiness projects. Requires experience in information security, program management, and AI Governance, Risk, and Safety (AI GRS).

What you'd actually do

  1. Manage the end-to-end security and compliance review process for new features, including intake / planning, resource engagement, performing risk analysis, documenting trade-off decisions, and ensuring critical requirements for information security and AI risks (model behavior, safety, regulatory exposure) are addressed.
  2. Act as a representative for the Security team to cross-functional teams and leadership, synthesizing risk reviews and threat models into formal security risk narratives, and reports before major launches.
  3. Collaborate with Product Security and Infrastructure Security teams to integrate new Product Trust requirements and drive improvements into engineering, release, and change management processes.
  4. Develop customer-facing security and privacy enablement content (e.g., materials, FAQs, positioning), attend customer security review calls, and manage technical security escalations from major customers.
  5. Lead audit and certification readiness projects for key features and teams.

Skills

Required

  • 7+ years in Information Security
  • significant program management experience in product or engineering contexts
  • defined and built programs
  • strong foundation across a broad range of AI Governance, Risk, and Safety (AI GRS) implications, security, and compliance topics
  • 1-2+ years experience leveraging AI models to drive program efficiencies
  • Proven ability to communicate complex technical and regulatory topics
  • write strong technical compliance requirements for diverse audiences
  • Excellent organizational skills
  • manage external contractors and vendors
  • customer-centric mindset
  • drive for process simplification
  • builder’s mindset
  • comfort with ambiguity

What the JD emphasized

  • critical requirements for information security and AI risks
  • AI Governance, Risk, and Safety (AI GRS) implications
  • customer security review calls
  • AI regulatory landscape is still being written
  • create structure where none yet exists