Find Jobs
Find Jobs Near You – Available Work in Your Location
Sr. Program Manager, Enterprise Product Security Incident Response Team (E-PSIRT)
Career Insights for Cyber Security Manager / Administrator
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on North Carolina data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Manager or Administrator monitors, controls, and maintains systems that protect the security of large databases, including databases with customer information and patient files. Manages and administers the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
$133,493 / year median in North Carolina
+6% projected growth
Job Description
WD00104873
Career area:Information Technology Country/Region:
United States of America State:
North Carolina City:
Morrisville Date:
Friday, September 4, 2026 Working time:Full-time Additional Locations :
- United States of America
- North Carolina
- Morrisville Why Work at Lenovo We are Lenovo.
HKSE:
992) (ADR:
LNVGY). This transformation together with Lenovo's world-changing innovation is building a more inclusive, trustworthy, and smarter future for everyone, everywhere. To find out more visit www.lenovo.com , and read about the latest news via our StoryHub . Description and Requirements The Sr. Enterprise Product Security Incident Response Program Manager will lead Lenovo's Global Enterprise PSIRT and serve as the central coordination authority for enterprise-wide incidents, including products, vulnerability management governance, and Cyber Resilience Act (CRA) readiness across all Lenovo business groups In this role, as a hands-on technical leader, you will establish a central coordination team for vulnerability intake, researcher engagement, issue triage, coordinated vulnerability disclosure, business unit coordination, reporting oversight, KPIs, playbook maintenance, executive escalation, briefings/meetings, and CRA reporting support This role will act as the primary orchestrator across a multitude of teams to ensure consistent vulnerability handling, incident response, threat intelligence and compliance with global regulatory requirements, including the EU Cyber Resilience Act (CRA).Key Responsibilities:
Product Security Governance:
Establish and manage Lenovo's Global Enterprise Product Security Governance framework Establish enterprise tools, standards, policies, procedures, KPIs, and reporting for Enterprise-level PSIRT Drive alignment across Product Security Offices within IDG, ISG, SSG, Motorola, CAIO, Legal, and other business groups Program Oversight Serve as the central orchestration lead for product security vulnerabilities, including AI and related security incidents Coordinate enterprise-wide vulnerability response activities across business group security and engineering teams Facilitate triage, prioritization, remediation, escalation, communication, and disclosure decision-making processes Oversee tooling, automation, and process improvements to support scale and efficiency Cyber Resilience Act Leadership Lead Lenovo's operational readiness and execution of CRA Article 14 requirements Maintain and Improve governance processes for: Actively Exploited Vulnerability Reporting Serve Incident Reporting ENISA notification workflows Regulatory evidence retention Coordinated Vulnerability Disclosure (CVD) requirements Lead CRA readiness including tabletop exercises Oversee Daily Operations Lead vulnerability disclosure and coordinated remediation efforts with internal stakeholders, suppliers, partners, and security researchers Drive end-to-end security advisory development, including vulnerability tirage, risk assessment, mitigation guidance, and customer communications Manage communications with third-party suppliers and researchers to facilitate timely vulnerability resolution and responsible disclosure Publish and maintain customer-facing security advisories, ensuring clear, accurate, and actionable remediation guidance Partner with engineering, legal, communications, and support organizations to coordinate response activities and ensure consistent stakeholder communications throughout the vulnerability lifecycleQualifications:
Bachelor's degree in Cybersecurity, Information Systems, Systems Engineering, or a highly related technical discipline preferred 10+ years of applied experience in cybersecurity, product security, incident response, threat intelligence, or related program management/functional roles Proven capability in establishing and leading a technical cybersecurity program in vulnerability management, incident response, or threat intelligence Hands-on technical leader with ability to manage complex, multi-stakeholder initiatives Exceptional written and verbal communication skills; Capable of bridging the lexicon gap between legal, engineering, and executive stakeholders Availability to support critical cycles during business hours with occasional off-hours engagement; Intermittent travel may be required for regulatory assessments and stakeholder alignment Previous PSIRT leadership experience Experience interacting with external researchers, CERTs, regulators, and industry consortiums Experience handling AI-related vulnerabilities and/or incidents Active professional credentials such as CISSP, CISM, CISA, or ISO related certificationsBasic Requirements:
Bachelor's degree or equivalent experience 10+ years of experience in cybersecurity, product security, incident response, threat intelligence, and/or program management #LI-MM5 We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, religion, sexual orientation, gender identity, national origin, status as a veteran, and basis of disability or any federal, state, or local protected class.Additional Locations :
- United States of America
- North Carolina
- Morrisville
- United States of America
- United States of America
- North Carolina
- United States of America
- North Carolina
- Morrisville